This module will introduce you to the foundations of security operations, including logging activity and events, identifying threats and intrusions, and responding to incidents.
Labs: Configure Azure Sentinel, configure workload protection for Microsoft Defender for the Cloud, configure Guard Duty on AWS, and configure Security Hub on AWS.
Module Objectives:
- Students will learn the importance of logging and monitoring activity within the cloud environment as a proactive security strategy.
- Students will be introduced to logging and monitoring solutions and how automation can be used to identify and respond to threats.
- After completing this module, students will understand the foundational concepts and techniques for security operations.
Topics Covered:
- Cloud Logging
- Cloud Security Monitoring
- SIEM and SOAR
- Cloud-native Monitoring Solutions
- Continuous Security Monitoring Strategies
- Cloud Security Monitoring Best Practices
- Incident Response in Cloud