Live Online & Classroom Enterprise Certification Training
Creating Advanced ESM Content for Security Use Cases covers ArcSight security problem solving methodology within the ESM context
Powered By
Looking for a private batch ?
Need help finding the right training?
Training For*
Your Message
REQUEST A CALLBACK
Certified Trainer
Authorized Courseware
Completion Certificate from ATP
Enterprise Reporting
Lifetime Access
CloudLabs
24x7 Support
Real-time code analysis and feedback
In this course, you will learn advanced techniques to use ArcSight ESM content to find, track and remediate security incidents specifically identified in the course use cases.
During the training, you will learn to:
• Use variables and correlation activities
• Customize report templates to use dynamic content
• Customize notification templates to send the appropriate notification based upon specific attributes of an event
Upon successful completion of this course, you should be able to:
• In an ArcSight ESM context, define a Use Case
• Use the Use Case worksheet from an initial problem statement, generate requirement statements and prioritize objectives
• Identify data sources and ESM resources required to fulfil the objectives of the use case
• To fulfil use case requirements, create identified ESM content
• Construct ArcSight Variables to provide advanced analysis of the event stream
• Develop ArcSight Rules to allow advanced correlation activities
• Build event-based data monitors to provide real-time views of event traffic and anomalies
• Implement custom velocity macros for notification
• Package formulated ESM contents for the Use Case into ArcSight Resource Bundle
This course is intended for:
• Defining organization’s security objectives
• Building ArcSight ESM content to adhere to those objectives
To be successful in this course, you should have the following prerequisites or knowledge:
• 12 months experience creating ArcSight ESM content (recommended)
• Computer desktop, browser, and file system navigation skills
• Basic understanding of TCP/IP networking and database concepts
• Enterprise security experience [highly advantageous] Plus, an understanding of:
▪ Network device functions and capabilities, such as routers, switches, etc.
▪ Security device functions and capabilities, such as IDS/IPS, firewalls, etc.
▪ TCP/IP networking, file system, and database concepts
▪ SOC Organizational structure and workflow hierarchy
▪ SIEM terminology, such as asset, threat, vulnerability, safeguard, etc.
Live Online Training
Classroom Training
The Trainer is Micro Focus certified Instructor with extensive domain experience, including years of experience training & mentoring professionals in the industry.
My outlook on training changed completely after attending SpringPeople BPC training. The content, the trainer and infrastructure at SpringPeople were top notch and perfectly in tune with the industry requirements. Regardless to say, training is now something that I look forward to to. Kudos to everyone at SpringPeople!
I attended the 3-day AngularJs training at SpringPeople. The trainer was an industry veteran with vast experience in the subject. Notably, the hands-on training, and the Q&A session stood out. Overall, I found SpringPeople a great place to learn with excellent facilities and great trainers. Would recommend SpringPeople to my colleagues and friends.
I attended the training on API Design for Mulesoft. The sessions were well planned and value-laden. I benefited immensely from the hands-on experience enabled through virtual labs. I would like to specifically commend the efficiency of the support team who were always available to resolve my concerns.
I attended the jQuery training batch, conducted by Mr. Vijay, an SME who did a thorough coverage of all the essentials. He took us through concepts such as jQuery animations, event handlers, plugins, and jQuery-UI by small programs, very easily. The sessions were useful and well structured. By the end of the training, I was well equipped to develop a SPA on Product Management System. Overall, the learning experience at SpringPeople was great!
We use cookies to improve your experience. You can manage your preferences below.
Your request has been sent. Thank you for getting in touch. We will get back to you shortly.
CLOSE
Your request could not be submitted. Please try again later.
Thank for registering to LnDCloud Digital Learning Subscription. You'll soon receive an email with login credentials
Your registration could not be processed. Please try again later or contact lndcloud@springpeople.com
,
This class if full now. You can register on the wait list to be notified when a seat becomes available.
Looking for Training Room?
Details of training room requirement
Book a Training Room