Security Orchestration, Automation, and Response for Security Analysts : Learn the secrets of SOAR to improve MTTA and MTTR and strengthen your organization's security posture

個数:

Security Orchestration, Automation, and Response for Security Analysts : Learn the secrets of SOAR to improve MTTA and MTTR and strengthen your organization's security posture

  • オンデマンド(OD/POD)版です。キャンセルは承れません。
  • 【入荷遅延について】
    世界情勢の影響により、海外からお取り寄せとなる洋書・洋古書の入荷が、表示している標準的な納期よりも遅延する場合がございます。
    おそれいりますが、あらかじめご了承くださいますようお願い申し上げます。
  • ◆画像の表紙や帯等は実物とは異なる場合があります。
  • ◆ウェブストアでの洋書販売価格は、弊社店舗等での販売価格とは異なります。
    また、洋書販売価格は、ご注文確定時点での日本円価格となります。
    ご注文確定後に、同じ洋書の販売価格が変動しても、それは反映されません。
  • 製本 Paperback:紙装版/ペーパーバック版/ページ数 338 p.
  • 言語 ENG
  • 商品コード 9781803242910
  • DDC分類 005.8

Full Description

Become a security automation expert and build solutions that save time while making your organization more secure

Key Features

What's inside
An exploration of the SOAR platform's full features to streamline your security operations
Lots of automation techniques to improve your investigative ability
Actionable advice on how to leverage the capabilities of SOAR technologies such as incident management and automation to improve security posture

Book DescriptionWhat your journey will look like
With the help of this expert-led book, you'll become well versed with SOAR, acquire new skills, and make your organization's security posture more robust.
You'll start with a refresher on the importance of understanding cyber security, diving into why traditional tools are no longer helpful and how SOAR can help.
Next, you'll learn how SOAR works and what its benefits are, including optimized threat intelligence, incident response, and utilizing threat hunting in investigations.
You'll also get to grips with advanced automated scenarios and explore useful tools such as Microsoft Sentinel, Splunk SOAR, and Google Chronicle SOAR.
The final portion of this book will guide you through best practices and case studies that you can implement in real-world scenarios.
By the end of this book, you will be able to successfully automate security tasks, overcome challenges, and stay ahead of threats.What you will learn

Reap the general benefits of using the SOAR platform
Transform manual investigations into automated scenarios
Learn how to manage known false positives and low-severity incidents for faster resolution
Explore tips and tricks using various Microsoft Sentinel playbook actions
Get an overview of tools such as Palo Alto XSOAR, Microsoft Sentinel, and Splunk SOAR

Who this book is forYou'll get the most out of this book if
You're a junior SOC engineer, junior SOC analyst, a DevSecOps professional, or anyone working in the security ecosystem who wants to upskill toward automating security tasks
You often feel overwhelmed with security events and incidents
You have general knowledge of SIEM and SOAR, which is a prerequisite
You're a beginner, in which case this book will give you a head start
You've been working in the field for a while, in which case you'll add new tools to your arsenal

Contents

Table of Contents

The Current State of Cybersecurity and the Role of SOAR
A Deep Dive into Incident Management and Investigation
A Deep Dive into Automation and Reporting
Quick Dig into SOAR Tools
Introducing Microsoft Sentinel Automation
Enriching Incidents Using Automation
Managing Incidents with Automation
Responding to Incidents Using Automation
Mastering Microsoft Sentinel Automation: Tips and Tricks

最近チェックした商品