 | 



|
 | | Duration: | | 2 Days |
|---|
| Delivery method: | | Classroom |
|---|
| Language: | | English |
|---|
| Geography: | | All |
|---|
| | | Product resources: | | Support information |
|---|
|
|
This course is a two day intensive training for level three administrators who need to install and maintain Netcool/NeuSecure 3.0 in a security operations environment. Subjects explored include installing, configuring security and component communications, as well as architecture and implementation. The main focus is on configuration, operations, everyday maintenance, and life-cycle management.
Over the training period of two days, practical exercises demonstrate how to perform the administrative tasks required. The administrator must know how to use command line tools and understand proper placement and function of different network security devices. Such devices include firewalls, NIDS, HIDS, vulnerability scanners, and antivirus. An intermediate understanding of databases is required as well.. |
|
Upon completion of this course, you will be able to:
- Perform a complete installation and configuration
- Identify key files and directories
- Resolve common installation issues
- Identify protocols in use and describe the communications requirements necessary to communicate over the network
- Work with various scenarios in different security domains
- Perform basic risk analysis to cultivate parameters in the statistical correlation engine
- Correlate vulnerability data with attack data
- Perform upgrades to support devices, and know why they should be done
- Prune and archive data according to specific data retention policy
- Maintain databases
- Patch and upgrade Netcool/NeuSecure
|
|
- Day 1
- Overall plan
- Preparation
- Configuration
- Security domains
- System tuning
- Statistical engine tuning
- Correlation engine configuration
- Filters
- Add networks and hosts
- Import vulnerability data
- Establish connection between the EAM and CMS
- Add devices
- Susceptibility
- Watchlists
- User management
- HIT tools
- Day 2
- Operational use case examples
- Locate a worm
- Analyze reams of logs
- Feedback into the statistical engine
- Insider Threat
- Locate a Bot-Net
- Locate a Low and Slow Scan
- Locate hacker in smoke screen
- Conserve threat data while away
- Remove host from top threats view
- Filter
- Using rules
- Basic maintenance / Lifecycle management
|
|
|
Systems administrators and advanced users of the Netcool Neusecure system.
|
|
The User course is a prerequisite to the Netcool Neusecure Administration and Advanced Administration courses. The advanced user will need to understand the proper placement and function of various network security devices such as firewalls, NIDS, HIDS, Vulnerability Scanners, Antivirus, and so on. |
|
If you are unable to locate a course at the time and location you desire, including
training for prior product releases, please feel free to contact your regional delivery
management team: |
|  |
|
 | Continuous file backup without scheduling, tapes or worries! |  |
 |
|
|
 |
|
|
|
|
|