Who should attend
IT network or security professionals who want to master the use of Blue Coat Security Analytics and who have completed the Blue Coat Security Analytics Administrator course.
Prerequisites
Participants should have a sound understanding of the OSI reference model and common networking protocols, and how those protocols make connections, keep state, and transfer data, along with basic experience with network packet and BLUE COAT CERTIFIED SECURITY ANALYTICS PROFESSIONAL BlueTouch Training Services flow analysis, including the use of PCAP files, tcpdump, and Wireshark. Basic to advanced knowledge of best practices for incident response and continuous monitoring will provide a significant advantage.
Course Objectives
The Blue Coat Certified Security Analytics Professional (BCSAP) course designed for participants who want to learn how to use the Blue Coat Security Analytics platform to perform virtually any type of network-based monitoring and forensic analysis, including incident-response investigation, real-time situational awareness, and continuous monitoring for indicators of compromise (IOCs) and advanced persistent threats (APTs).
Course Content
- Theory of Operation
- File Extraction
- Data Enrichment
- Threat BLADES
- Kill Chain Analysis
- To Look for Indicators of Compromise (IOCs)
- Integration
- The Virtual File System (VFS)