Data and Event Analysis Course
21 minutes
Course description
Once you have the data, you need to analyze it. Explore the details of data and event analysis, including retrospective analysis, data normalization and threat analysis.Syllabus
Describe the relationship of SOC metrics to scope analysis (time to detect, time to contain, time to respond, time to control)
Video - 00:01:00
Compare rule-based detection vs. behavioral and statistical detection
Video - 00:03:00
Correlation Rules
Video - 00:05:00
Learn about correlation rules in FirePower.
Threat Analysis
Video - 00:04:00
Learn how to perform a threat analysis.
Retrospective Analysis
Video - 00:02:00
Learn about retrospective analysis with FirePower.
5-tuple
Video - 00:02:00
Learn about the five different values that comprise a network connection.
Interpret Common Data Values
Video - 00:02:00
Learn about interpreting information in a universal format.
Data Normalization
Video - 00:02:00
Learn about normalizing data so you can effectively analyze it.
Unlock 7 days of free training
- 1,400+ hands-on courses and labs
- Certification practice exams
- Skill assessments
Associated NICE Work Roles
All Infosec training maps directly to the NICE Workforce Framework for Cybersecurity to guide you from beginner to expert across 52 Work Roles.
- All-Source Analyst
- Mission Assessment Specialist
- Target Developer
Plans & pricing
Infosec Skills Personal
$299 / year
- 190+ role-guided learning paths (e.g., Ethical Hacking, Threat Hunting)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Custom certification practice exams (e.g., CISSP, Security+)
- Skill assessments
- Infosec peer community support
Infosec Skills Teams
$799 per license / year
- Team administration and reporting
- Dedicated client success manager
-
Single sign-on (SSO)
Easily authenticate and manage your learners by connecting to any identity provider that supports the SAML 2.0 standard.
-
Integrations via API
Retrieve training performance and engagement metrics and integrate learner data into your existing LMS or HRS.
- 190+ role-guided learning paths and assessments (e.g., Incident Response)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Create and assign custom learning paths
- Custom certification practice exams (e.g., CISSP, CISA)
- Optional upgrade: Guarantee team certification with live boot camps