Return to Show your expertise in preventing cyber attacks, responding to incidents, and securing the cloud with a Cybersecurity Professional certification.
To earn your certification, you’ll take a core exam and one concentration exam of your choice.
Core Exam
Performing CyberOps Using Cisco Security Technologies.
Concentration Exam
Conducting Forensic Analysis and Incident Response Using Cisco Technologies for Cybersecurity.
Concentration Exam
Conducting Threat Hunting and Defending using Cisco Technologies for Cybersecurity.
The Performing CyberOps Using Cisco Security Technologies learning path guides you through cybersecurity fundamentals and prepares you for the role of Information Security Analyst on a Security Operations Center team.
You’ll learn to automate for security using cloud platforms and apply your knowledge to real-world scenarios.
Module 1: Threat Investigations
• Investigating Packet Captures, Logs, and Traffic Analysis
• Investigating Endpoint and Appliance Logs
• Implementing Threat Tuning
• Threat Research and Threat Intelligence Practices
• Performing Security Analytics and Reports in a SOC
• Malware Forensics Basics.
Module 2: SOC Operations and Processes
• Understanding Risk Management and SOC Operations
• Understanding Analytical Processes and Playbooks
• Understanding Cloud Service Model Security Responsibilities
• Understanding Enterprise Environment Assets
• Understanding APIs
• Understanding SOC Development and Deployment Models.
Module 3: Threat Hunting and Incident Response
• Threat Hunting Basics
• Performing Incident Investigation and Response.
By the end of this course, you should be able to:
Professional-level certifications expand on the foundations of associate-level certifications. They cover more advanced topics and allow candidates to hone in on a specific focus area of their choice. Many professional-level certification candidates are looking to prove they’re the best of the best in a specialised field.
Whilst there are no formal prerequisites, learners often have three to five years of experience implementing enterprise networking solutions.
The Conducting Forensic Analysis and Incident Response Using Cisco Technologies for CyberOps learning path builds cyber security knowledge and technical skills needed to conduct forensic analysis and appropriately respond to security incidents.
Module 1: Introduction to Incident Response
• Introducing Incident Response and Forensic Analysis
• Describing DFIR Guidelines and Associations
• Examining Threats and Vulnerability Frameworks
• Describing the Analytical Mindset.
Module 2: Preparing for Incident Response
• Preparing for Incident Response and Responding to Threats
• Identifying Sources of Evidence.
Module 3: Gathering and Examining Digital Intelligence
• Gathering Intelligence
• Examining Digital Forensics and Incident Response Tools.
Module 4: Describing Detection, Analysis, and Investigation Forensics
• Describing Detection and Analysis
• Describing Investigation and Detection
• Describing Digital Forensics
• Describing Breach Containment and Eradication
• Describing Post-incident Activities.
By the end of this course, you should be able to:
Professional-level certifications expand on the foundations of associate-level certifications. They cover more advanced topics and allow candidates to hone in on a specific focus area of their choice. Many professional-level certification candidates are looking to prove they’re the best of the best in a specialised field.
Whilst there are no formal prerequisites, learners often have three to five years of experience implementing enterprise networking solutions.
The Conducting Threat Hunting and Defending using Cisco Technologies for CyberOps (CBRTHD) Learning Path introduces and guides you to a proactive security search through networks, endpoints, and datasets to hunt for malicious, suspicious, and risky activities that may have evaded detection by existing tools.
In this Learning Path, you will learn the core concepts, methods, and processes used in threat hunting investigations.
This Learning Path provides an environment for attack simulation and threat hunting skill development using a wide array of security products and platforms from Cisco and third-party vendors.
This Learning Path prepares you for the 300-220 CBRTHD v1.0 exam. If passed, you earn the Cisco Certified Specialist – Threat Hunting and Defending certification and satisfy the concentration exam requirement for the Cisco Certified CyberOps Professional certification.
Module 1: Threat Hunting Foundations
• Threat Hunting Theory
• Threat Hunting Concepts, Frameworks, and Threat Models
• Threat Hunting Process Fundamentals
• Threat Hunting Methodologies and Procedures.
Module 2: Network and Endpoint Threat Hunting
• Network-Based Threat Hunting
• Endpoint-Based Threat Hunting
• Endpoint-Based Threat Detection Development
• Threat Hunting with Cisco Tools.
Module 3: Implementing, Analysing, and Reporting the Threat Hunt
• Threat Hunting Investigation Summary: A Practical Approach
• Aftermath of a Threat Hunt.
By the end of this course, you should be able to:
Professional-level certifications expand on the foundations of associate-level certifications. They cover more advanced topics and allow candidates to hone in on a specific focus area of their choice. Many professional-level certification candidates are looking to prove they’re the best of the best in a specialised field.
Whilst there are no formal prerequisites, learners often have three to five years of experience implementing enterprise networking solutions.