Download Interent ExplorerDownload Apple SafariDownload OperaDownload FirefoxDownload Google Chrome

Palo Alto Cortex XDR 2: Prevention, Analysis, and Response Training (EDU-260)

Palo Alto Cortex XDR 2: Prevention, Analysis, and Response Training (EDU-260)

Introduction:

Palo Alto Cortex XDR 2: Prevention, Analysis, and Response Training (EDU-260) Course – Hands-on

This Palo Alto Cortex XDR 2: Prevention, Analysis, and Response Training (EDU-260) course is three days of instructor-led training that will help you to:

  • Differentiate the architecture and components of the Cortex XDR family
  • Describe Cortex, Cortex Data Lake, the Customer Support Portal, and the hub
  • Activate Cortex XDR, deploy the agents, and work with the management console
  • Work with the Cortex XDR management console, describe a typical management page, and work with the tables and filters
  • Create Cortex XDR agent installation packages, endpoint groups, policies, and profiles
  • Create and manage exploit and malware profiles, and perform response actions
  • Describe detection challenges with behavioral threats
  • Differentiate the Cortex XDR rules BIOC and IOC, and create and manage them
  • Describe the Cortex XDR causality analysis and analytics concepts
  • Triage and investigate alerts and incidents, and create alert starring and exclusion policies
  • Work with the Causality and Timeline Views and investigate threats in the Query Center

The technical curriculum developed and authorized by Palo Alto Networks and delivered by Palo Alto Networks Authorized Training Partners helps provide the knowledge and expertise that prepare you to protect our digital way of life. Our trusted certifications validate your knowledge of the Palo Alto Networks product portfolio and your ability to help prevent successful cyberattacks and safely enable applications.

WHAT’S INCLUDED?
  • 3 days of Palo Alto Cortex XDR 2: Prevention, Analysis, and Response Training (EDU-260) with an expert instructor
  • Palo Alto Cortex XDR 2: Prevention, Analysis, and Response Training Guide
  • Certificate of Completion
  • 100% Satisfaction Guarantee
RESOURCES
RELATED COURSES
CUSTOMIZE It:
  • We can adapt this Palo Alto Cortex XDR 2: Prevention, Analysis, and Response (EDU-260) course to your group’s background and work requirements at little to no added cost.
  • If you are familiar with some aspects of this Palo Alto Cortex XDR 2: Prevention, Analysis, and Response (EDU-260) course, we can omit or shorten their discussion.
  • We can adjust the emphasis placed on the various topics or build the Palo Alto Cortex XDR 2: Prevention, Analysis, and Response (EDU-260) around the mix of technologies of interest to you (including technologies other than those included in this outline).
  • If your background is nontechnical, we can exclude the more technical topics, include the topics that may be of special interest to you (e.g., as a manager or policy-maker), and present the Palo Alto Cortex XDR 2: Prevention, Analysis, and Response (EDU-260) course in manner understandable to lay audiences.
AUDIENCE/TARGET GROUP:

The target audience for this Palo Alto Cortex XDR 2: Prevention, Analysis, and Response (EDU-260) course:

  • Cybersecurity Analysts
  • Cybersecurity Engineers
  • Security Operations Specialists
Palo Alto Cortex XDR 2: Prevention, Analysis, and Response (EDU-260) – PREREQUISITES:

Before attending this course, you should also understand the following:

  • Participants must be familiar with enterprise security concepts.
Palo Alto Cortex XDR 2: Prevention, Analysis, and Response (EDU-260) – OBJECTIVES:

Successful completion of this instructor-led course with hands-on lab activities should enhance the student’s understanding of:

  • How to activate a Cortex XDR instance
  • Create agent installation packages to install the Cortex XDR agents
  • Create security policies and profiles to protect endpoints against multi-stage, fileless attacks built using malware and exploits; respond to attacks using response actions
  • Understand behavioral threat analysis, log stitching, agent-provided enhanced endpoint data, and causality analysis
  • Investigate and triage attacks using the incident management page of Cortex XDR and analyze alerts using the Causality and Timeline analysis views; use API to insert alerts
  • Create BIOC rules
  • Search a lead in raw data sets in Cortex Data Lake using Cortex XDR Query Builder
Palo Alto Cortex XDR 2: Prevention, Analysis, and Response (EDU-260) – COURSE SYLLABUS:
Course Modules:
  • Cortex XDR Family Overview
  • Working with the Cortex Apps
  • Getting Started with Endpoint Protection
  • Malware Protection
  • Exploit Protection
  • Exceptions and Response Actions
  • Behavioral Threat Analysis
  • Cortex XDR Rules
  • Incident Management
  • Alert Analysis Views
  • Search and Investigate
  • Basic Troubleshooting

Request More Information

    Time frame: