HTB CDSA 防禦資安分析師認證- Hack the Box Certified Defensive Security Analyst
透過 HTB CDSA,你將從「監控、偵測、調查到報告」完整體驗 SOC 生命週期,實戰掌握 Splunk、Elastic 等主流 SIEM 工具,學會在真實企業網路中快速定位惡意行為。課程同步鍛鍊你對網路流量、事件日誌、記憶體鏡像及惡意程式的多源證據關聯分析能力,並以威脅獵捕與 DFIR 思維貫穿全程,讓你不只是找出攻擊,更能量化營運衝擊並呈現專業調查報告,成為企業即戰力的防禦型資安分析高手。
關於課程
課程內容
Day 1
-
Incident Handling Process
-
Security Monitoring & SIEM Fundamentals
-
Windows Event Logs & Finding Evil
-
Introduction to Threat Hunting & Hunting With Elastic
-
Understanding Log Sources & Investigating with Splunk
-
Windows Attacks & Defense
-
Intro to Network Traffic Analysis
-
Intermediate Network Traffic Analysis
Day 2
還沒有評論


