
Acquire essential knowledge and skills to become a successful online professional through a largely theoretical foundation, with practical threat hunting skills demonstrated via scenarios and lots of resources.
Pursue indications of compromise through threat hunting, a proactive, human-led cyber defense activity that intercepts attacks before damage and mitigates damage in progress, addressing APTs, with SolarWinds as an example.
Discover threat hunting as a proactive process with a clear primary objective, debunking misconceptions about SOC duties, log reviews, dashboards, and endpoint detection and response alerts.
Learn why threat hunting is proactive, improves productivity, offers retrospective insights, and a wide field of view; develop patient, detail-oriented, analytical, outside-the-box attributes to mitigate threats.
Develop the threat hunting skillset with cybersecurity experience, knowledge of network and endpoint security, data and intelligence analysis, forensics, malware reverse engineering, attack methods, operating systems, network protocols, and automation.
Learn key terms used in threat hunting, including anomaly, data loss prevention, indicators of compromise, insider threat, TDPs, threat hunter, threat intelligence, and SIEM, and how they guide incident response.
Apply the threat hunting loop to select a tactic using the Mighta attack framework, form a testable hypothesis, collect data, and draw conclusions for remediation.
Combine telemetry, data, tools, and processes to conduct successful threat hunting with Elasticsearch, Logstash, and Kibana for correlation, visualization, and instant investigation and response.
Explore threat hunting approaches and the pyramid of indicators of compromise, comparing IOC-based, tools-based, and TTP-based methods using telemetry data and detection rules.
Proactively hunt insider threats by forming testable hypotheses and testing them with data from the MITRE ATT&CK framework, threat intelligence reports, blogs, Twitter, and incident response.
Learn seven threat-hunting tips to detect adversaries: identify command-and-control indicators, scope data, bookmark first-pass findings, use visualization, filter noise, and spot service oddities to strengthen defenses.
Explore case-based threat hunting by building a lab with Windows audit events and an elastic stack to simulate phishing, backdoors, and C2, test hypotheses, and analyze IOCs with Kibana.
Explore threat hunting techniques on your device, identify indicators of compromise through unusual network traffic and login activity, and use the Windows security log and Task Manager to detect anomalies.
Build hands-on threat hunting skills with free tools, virtual labs, and open-source resources, then analyze logs with Elasticsearch and Kibana to identify IoC indicators.
Recap the threat hunting mindset, lifecycle, and the attributes of an effective threat hunter. Focus on hypothesis test concepts, indicators of compromise, and practical steps to start researching and practicing.
Develop the threat hunting mindset and practical skills, covering the threat hunting loop, attributes like patience and attention to detail, and IOC-based and hypothesis-driven approaches.
About this course
Learn to develop the skills & mindset required to become a professional cybersecurity threat hunter.
Description
Are you trying to pivot in your IT\cybersecurity career? Then this course is a great way to find an area of cybersecurity in which you can develop your skills.
This course is also valuable for those who are already in cybersecurity and want to get a high-level understanding of what is involved in threat hunting.
This course can help you improve your chances of landing your first cybersecurity job because you will learn the skills that can help an organization become more secure in its operations.
This course is designed for entry-level or aspiring cybersecurity professionals.
What you’ll learn
Section-1
What is Threat Hunting & Its Primary objective
Why conduct threat hunting
What threat hunting is not
Why Threat Hunt?
Attributes of an effective Threat Hunter
What is required for threat hunting
Terms associated with threat hunting
Threat Hunting Loop
What is Required for Successful Threat Hunting
Techniques for Successful Hunting
What makes Threat Hunting Effective
Threat Hunting approaches
Hypothesis Testing & Sources of Hypothesis.
7 Effective Threat Hunting Tips
SECTION-2
Threat Hunting Approaches.
Threat Hunting Tools & Products
Demo-Simulate a threat hunting hypothetical scenario
Indicators of threat attacks\IoC
Demo of basic threat hunt using system monitor & the event viewer
Section-3
Next steps to developing practical threat hunting skills