Course Outline
Introduction and Course Orientation
- Course objectives, expected outcomes, and lab environment setup.
- Overview of EDR concepts and the OpenEDR platform architecture.
- Understanding endpoint telemetry and data sources.
OpenEDR Deployment
- Installing OpenEDR agents on Windows and Linux endpoints.
- Setting up the OpenEDR server and dashboards.
- Configuring basic telemetry and logging.
Basic Detection and Alerting
- Understanding event types and their significance.
- Configuring detection rules and thresholds.
- Monitoring alerts and notifications.
Event Analysis and Investigation
- Analyzing events for suspicious patterns.
- Mapping endpoint behaviors to common attack techniques.
- Using OpenEDR dashboards and search tools for investigation.
Response and Mitigation
- Responding to alerts and suspicious activity.
- Isolating endpoints and mitigating threats.
- Documenting actions and integrating them into incident response processes.
Integration and Reporting
- Integrating OpenEDR with SIEM or other security tools.
- Generating reports for management and stakeholders.
- Best practices for continuous monitoring and alert tuning.
Capstone Lab and Practical Exercises
- Hands-on lab simulating real-world endpoint threats.
- Applying detection, analysis, and response workflows.
- Review and discussion of lab results and lessons learned.
Summary and Next Steps
Requirements
- Understanding of fundamental cybersecurity concepts.
- Experience with Windows and/or Linux administration.
- Familiarity with endpoint protection or monitoring tools.
Target Audience
- IT and security professionals beginning with endpoint detection tools.
- Cybersecurity engineers.
- Security staff in small to mid-sized businesses.
Custom Corporate Training
Training solutions designed exclusively for businesses.
- Customized Content: We adapt the syllabus and practical exercises to the real goals and needs of your project.
- Flexible Schedule: Dates and times adapted to your team's agenda.
- Format: Online (live), In-company (at your offices), or Hybrid.
Price per private group, online live training, starting from 2600 € + VAT*
Contact us for an exact quote and to hear our latest promotions
Testimonials (2)
Clarity and pace of explanations
Federica Galeazzi - Aethra Telecomunications SRL
Course - AI-Powered Cybersecurity: Advanced Threat Detection & Response
It did give me the insight what I needed :) I am starting teaching on a BTEC Level 3 qualification and wanted to widen my knowledge in this area.