XDR Automation 101: A Beginner's Guide to Using SecOps Playbooks

preview_player
Показать описание
In the Cisco XDR environment, playbooks are critical for managing incidents, providing a structured approach to effectively detect, contain, eliminate, and recover from security threats. These playbooks encompass a series of steps covering all stages of the incident response lifecycle, along with capabilities for documenting observations and actions taken during the incident handling process. Customizable playbooks facilitate seamless integration of Cisco XDR with existing security operations workflows, offering a cohesive and flexible collection of playbooks that assist SOC Analysts in achieving proficient threat detection and response.

Lesson 1: XDR and Incident Response
Lesson 2: Understanding SecOps Playbooks
Lesson 3: Building Effective Workflows for Incident Response
Lesson 4: Implementing Playbook Automation Rules
Lesson 5: Demonstration of Playbook Automation in Action

✨ Subscribe for more tech videos! @CiscoUtube ✨

FOLLOW US ON SOCIAL
Рекомендации по теме
Комментарии
Автор

Awesome Overview and Demo!! Thank you@

carolynmcintosh