Close
Contact Us info@learnquest.com

??WelcomeName??
??WelcomeName??
« Important Announcement » Contact Us 877-206-0106 | USA Flag
Close
Close
Close
photo

Thank you for your interest in LearnQuest.

Your request is being processed and LearnQuest or a LearnQuest-Authorized Training Provider will be in touch with you shortly.

photo

Thank you for your interest in Private Training.

We look forward to helping you develop the perfect training solution to help you meet your company's goals.

For immediate assistance, speak with one of our representatives using the chat module below. Otherwise, LearnQuest or a LearnQuest-Authorized Training Provider will be in touch with you shortly.

Close
photo

Thank you for your interest in LearnQuest!

Now, you will be able to stay up-to-date on our latest course offerings, promotions, and training discounts. Watch your inbox for upcoming special offers.

title

Date: xxx

Location: xxx

Time: xxx

Price: xxx

Please take a moment to fill out this form. We will get back to you as soon as possible.

All fields marked with an asterisk (*) are mandatory.

Conducting Threat Hunting and Defending using Cisco Technologies for CyberOps

Price
4,500 USD
5 Days
CSC-CBRTHD
Classroom Training, Online Training
Cisco Training

AWS Training Pass

Take advantage of flexible training options with the AWS Training Pass and get Authorized AWS Training for a full year.

Learn More

Prices reflect a 22.5% discount for IBM employees (wherever applicable).
Prices reflect a 24% discount for Kyndryl employees (wherever applicable).
Prices reflect the Accenture employee discount.
Prices shown are the special AWS Partner Prices.
Prices reflect the Capgemini employee discount.
Prices reflect the UPS employee discount.
Prices reflect the ??democompanyname?? employee discount.
GSA Private/Onsite Price: ??gsa-private-price??
For GSA pricing, please go to GSA Advantage.
 

Class Schedule

Delivery Formats

Sort results

Filter Classes

Guaranteed to Run

Modality

Location

Language

Date

    Sorry, there are no public classes currently scheduled in your country.

    Please complete this form, and a Training Advisor will be in touch with you shortly to address your training needs.

View Global Schedule

Course Description

Overview

The Conducting Threat Hunting and Defending using Cisco Technologies for CyberOps (CBRTHD) training is a 5-day Cisco threat hunting training that introduces and guides you to a proactive security search through networks, endpoints, and datasets to hunt for malicious, suspicious, and risky activities that may have evaded detection by existing tools. In this training, you will learn the core concepts, methods, and processes used in threat hunting investigations. This training provides an environment for attack simulation and threat hunting skill development using a wide array of security products and platforms from Cisco and third-party vendors.

This training prepares you for the 300-220 CBRTHD v1.0 exam. If passed, you earn the Cisco Certified Specialist – Threat Hunting and Defending certification and satisfy the concentration exam requirement for the Cisco Certified CyberOps Professional certification. This training also earns you 40 credits towards recertification.
 

Objectives

This training will help you:
  • Learn how to perform a proactive security search through networks, endpoints, and datasets to hunt for malicious, suspicious, and risky activities that may have evaded detection by existing tools
  • Gain leading-edge career skills focused on cybersecurity
  • Prepare for the 300-220 CBRTHD v1.0 exam
  • Earn 40 CE credits toward recertification
After taking this training, you should be able to:
  • Define threat hunting and identify core concepts used to conduct threat hunting investigations
  • Examine threat hunting investigation concepts, frameworks, and threat models
  • Define cyber threat hunting process fundamentals
  • Define threat hunting methodologies and procedures
  • Describe network-based threat hunting
  • Identify and review endpoint-based threat hunting
  • Identify and review endpoint memory-based threats and develop endpoint-based threat detection
  • Define threat hunting methods, processes, and Cisco tools that can be utilized for threat hunting
  • Describe the process of threat hunting from a practical perspective
  • Describe the process of threat hunt reporting

Audience

  • Security Operations Center staff
  • Security Operations Center (SOC) Tier 2 Analysts
  • Threat Hunters
  • Cyber Threat Analysts
  • Threat Managers
  • Risk Managements

Prerequisites

    There are no prerequisites for this training. However, the knowledge and skills you are recommended to have before attending this training are:
    • General knowledge of networks and network security
    These skills can be found in the following Cisco Learning Offerings:
    • Implementing and Administering Cisco Solutions (CCNA)
    • Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS)
    • Performing CyberOps Using Cisco Security Technologies (CBRCOR)

Topics

Course Outline 1. Threat Hunting Theory 2. Threat Hunting Concepts, Frameworks, and Threat Models 3. Threat Hunting Process Fundamentals 4. Threat Hunting Methodologies and Procedures 5. Network-Based Threat Hunting 6. Endpoint-Based Threat Hunting 7. Endpoint-Based Threat Detection Development 8. Threat Hunting with Cisco Tools 9. Threat Hunting Investigation Summary: A Practical Approach 10. Reporting the Aftermath of a Threat Hunt Investigation Lab Outline 1. Categorize Threats with MITRE ATTACK Tactics and Techniques 2. Compare Techniques Used by Different APTs with MITRE ATTACK Navigator 3. Model Threats Using MITRE ATTACK and D3FEND 4. Prioritize Threat Hunting Using the MITRE ATTACK Framework and Cyber Kill Chain 5. Determine the Priority Level of Attacks Using MITRE CAPEC 6. Explore the TaHiTI Methodology 7. Perform Threat Analysis Searches Using OSINT 8. Attribute Threats to Adversary Groups and Software with MITRE ATTACK 9. Emulate Adversaries with MITRE Caldera 10. Find Evidence of Compromise Using Native Windows Tools 11. Hunt for Suspicious Activities Using Open-Source Tools and SIEM 12. Capturing of Network Traffic 13. Extraction of IOC from Network Packets 14. Usage of ELK Stack for Hunting Large Volumes of Network Data 15. Analyzing Windows Event Logs and Mapping Them with MITRE Matrix 16. Endpoint Data Acquisition 17. Inspect Endpoints with PowerShell 18. Perform Memory Forensics with Velociraptor 19. Detect Malicious Processes on Endpoints 20. Identify Suspicious Files Using Threat Analysis 21. Conduct Threat Hunting Using Cisco Secure Firewall, Cisco Secure Network Analytics, and Splunk 22. Conduct Threat Hunt Using Cisco XDR Control Center and Investigate 23. Initiate, Conduct, and Conclude a Threat Hunt
 
2023 Top 20 Training Industry Company - IT Training

Need Help?

Call us at 877-206-0106 or e-mail us at info@learnquest.com

Personalized Solutions

Need a personalized solution for your Training? Contact us, and one of our training advisors will help you find the best solution.

Contact Us

Need Help?

Do you have a question about the courses, instruction, or materials covered? Do you need help finding which course is best for you? We are here to help!

Talk to us

Cybersecurity Awareness Month 2024

Get Ahead of Online Threats with 20% Off Security Training.

Use SECURITY20 at checkout. Valid through October 31, 2024.

Browse Training Courses

IBM TechXchange Conference 2024

October 21-24 | Mandalay Bay, Las Vegas

Join us for four action-packed days to immerse yourself in innovation and learning. Gain practical skills in Generative AI, harness IBM technology, and engage with tech industry experts.

Self-Paced Training Info

Learn at your own pace with anytime, anywhere training

  • Same in-demand topics as instructor-led public and private classes.
  • Standalone learning or supplemental reinforcement.
  • e-Learning content varies by course and technology.
  • View the Self-Paced version of this outline and what is included in the SPVC course.
  • Learn more about e-Learning

Course Added To Shopping Cart

bla

bla

bla

bla

bla

bla

Self-Paced Training Terms & Conditions

??spvc-wbt-warning??

Exam Terms & Conditions

??exam-warning??
??group-training-form-area??
??how-can-we-help-you-area??
??personalized-form-area??
??request-quote-area??

Sorry, there are no classes that meet your criteria.

Please contact us to schedule a class.
Close

self-paced
STOP! Before You Leave

Save 0% on this course!

Take advantage of our online-only offer & save 0% on any course !

Promo Code skip0 will be applied to your registration

Close
Nothing yet
here's the message from the cart

To view the cart, you can click "View Cart" on the right side of the heading on each page
Add to cart clicker.

Purchase Information

??elearning-coursenumber?? ??coursename??
View Cart

title

Date: xxx

Location: xxx

Time: xxx

Price: xxx

Please take a moment to fill out this form. We will get back to you as soon as possible.

All fields marked with an asterisk (*) are mandatory.

If you would like to request a quote for 5 or more students, please contact CustomerService@learnquest.com to be assigned an account representative.

Need more Information?

Speak with our training specialists to continue your learning journey.

 

Delivery Formats

Close

By submitting this form, I agree to LearnQuest's Terms and Conditions

heres the new schedule
This website uses third-party profiling cookies to provide services in line with the preferences you reveal while browsing the Website. By continuing to browse this Website, you consent to the use of these cookies. If you wish to object such processing, please read the instructions described in our Privacy Policy.
Your use of this LearnQuest site affirms your consent to our use of session and persistent cookies to track how you use our website.