category
Conducting Threat Hunting and Defending using Cisco Technologies for Cybersecurity
Type
Skill Level
Available dates
Learning Path
Virtual
Duration
1 Day
LEARNING PATH
SKILL LEVEL
DURATION
AVAILABLE DATES
Choose date
R19 200,00
Price excluding VAT
Introduction
The Conducting Threat Hunting and Defending using Cisco Technologies for Cybersecurity (CBRTHD) Learning Path introduces and guides you to a proactive security search through networks, endpoints, and datasets to hunt for malicious, suspicious, and risky activities that may have evaded detection by existing tools. In this Learning Path, you will learn the core concepts, methods, and processes used in threat hunting investigations. Threat hunting involves going beyond what Security Operations Center (SOC) analysts already know or have been alerted to. Traditional cyber detection technologies will only identify malicious risks and behaviours. The art of threat hunting is about venturing into the unknown. In this Learning Path, you will learn the core concepts, methods, and processes used in threat hunting investigations. This Learning Path provides an environment for attack simulation and threat hunting skill development using a wide array of security products and platforms from Cisco and third-party vendors. You will perform genuine threat hunting exercises within simulated network environments. This Learning Path prepares you for the 300-220 CBRTHD v1.0 exam. If passed, you earn the Cisco Certified Specialist – Threat Hunting and Defending certification and satisfy the concentration exam requirement for the Cisco Certified Network Professional (CCNP) Cybersecurity certification.
Audience Profile
|
|
|
|
|
|
Pre-requisites
There are no prerequisites for this training. However, the knowledge and skills you are recommended to have before attending this training are:
- General knowledge of networks and network security
- Recommended prerequisites:
- CCNA – Implementing and Administering Cisco Solutions
- CBROPS – Understanding Cisco Cybersecurity Operations Fundamentals
- CBRCOR – Performing CyberOps Using Cisco Security Technologies
Course Objectives
After taking this course, you should be able to:
- Conduct security searches across networks, endpoints, and datasets to identify hidden malicious activities that evade traditional detection tools
- Utilize MITRE ATT&CK, D3FEND, and the Cyber Kill Chain to model, prioritize, and attribute threats to specific adversary groups
- Perform network traffic analysis, endpoint data acquisition, and memory forensics using tools like PowerShell and Velociraptor
- Gain an understanding of threat hunting using Cisco-specific technologies, including Cisco Secure Firewall, Cisco XDR, and Cisco Secure Network Analytics
- Execute the end-to-end threat hunting lifecycle, from adversary emulation and OSINT research to professional reporting and aftermath analysis
Course Content
| Session 1: Threat Hunting Theory |
| Session 2: Threat Hunting Concepts, Frameworks, and Threat Models |
| Session 3: Threat Hunting Process Fundamentals |
| Session 4: Threat Hunting Methodologies and Procedures |
| Session 5: Network-Based Threat Hunting |
| Session 6: Endpoint-Based Threat Hunting |
| Session 7: Endpoint-Based Threat Detection Development |
| Session 8: Threat Hunting with Cisco Tools |
| Session 9: Threat Hunting Investigation Summary: A Practical Approach |
| Session 10: Aftermath of a Threat Hunt |
Associated Certifications and Exam
This training prepares you for the 300-220 CBRTHD v1.0 exam. If passed, you earn the Cisco Certified Specialist – Threat Hunting and Defending certification and satisfy the concentration exam requirement for the Cisco Certified Network Professional (CCNP) Cybersecurity certification.
Cisco Overview
Torque IT is one South Africa’s larger and more experienced providers of Authorized Cisco training. We run more courses more often, than any other training provider in South Africa and we guarantee that you will receive the most up to date and relevant technical course information available when you attend Cisco training courses at Torque IT.
Our standard and customized Cisco training courses are hands-on. When you attend training at Torque IT, you will implement the concepts that you learn using current Cisco equipment or Cisco Learning Labs (CLL), in real-world scenarios, to prepare you for real networking environments and the associated Cisco Certification examinations. Our authorized Cisco training and associated certification solutions empower you to design, sell, implement, troubleshoot and maintain Cisco implementations of any size.
The above serves to illustrate our commitment to providing you with high quality skills development, enablement, training and certification solutions that demonstrate exceptional depth, breadth, and expertise across Routing & Switching, Network Security, Cyber Security, Wireless LAN, Industrial (IoT), Unified Communications, Cloud, Data Center Unified Fabric, Unified Computing Systems, Service Provider, Network Programmability, Software Defined Networking and IP NGN technologies.