With this training, participants will analyze logs from different sources and perform intrusion detection by setting up Elastic Search within the scope of log management.
Who Should Participate?
Information Security Experts, System Experts, Network Experts, Forensic IT Experts, Cyber Incident Response Teams, Law Enforcement Agencies
Program
(Theoretical)
• Windows Event Logs Analysis
• Powershell Log Files Analysis
• IIS Log Files Analysis
• DHCP Log Files Analysis
• Analyzing FTP Log Files
• Syslog
(Practical)
• Log Enrichment with Sysmon
• Elastic Stack
• Elastic Stack Setup