Security Orchestration, Automation, and Response for Security Analysts: Learn the secrets of SOAR to improve MTTA and MTTR and strengthen your organization's security posture
Become a security automation expert and build solutions that save time while making your organization more secure

Key Features

  • What’s inside
  • An exploration of the SOAR platform’s full features to streamline your security operations
  • Lots of automation techniques to improve your investigative ability
  • Actionable advice on how to leverage the capabilities of SOAR technologies such as incident management and automation to improve security posture

Book Description

What your journey will look like With the help of this expert-led book, you’ll become well versed with SOAR, acquire new skills, and make your organization's security posture more robust. You’ll start with a refresher on the importance of understanding cyber security, diving into why traditional tools are no longer helpful and how SOAR can help. Next, you’ll learn how SOAR works and what its benefits are, including optimized threat intelligence, incident response, and utilizing threat hunting in investigations. You’ll also get to grips with advanced automated scenarios and explore useful tools such as Microsoft Sentinel, Splunk SOAR, and Google Chronicle SOAR. The final portion of this book will guide you through best practices and case studies that you can implement in real-world scenarios. By the end of this book, you will be able to successfully automate security tasks, overcome challenges, and stay ahead of threats.

What you will learn

  • Reap the general benefits of using the SOAR platform
  • Transform manual investigations into automated scenarios
  • Learn how to manage known false positives and low-severity incidents for faster resolution
  • Explore tips and tricks using various Microsoft Sentinel playbook actions
  • Get an overview of tools such as Palo Alto XSOAR, Microsoft Sentinel, and Splunk SOAR

Who this book is for

You'll get the most out of this book if You're a junior SOC engineer, junior SOC analyst, a DevSecOps professional, or anyone working in the security ecosystem who wants to upskill toward automating security tasks You often feel overwhelmed with security events and incidents You have general knowledge of SIEM and SOAR, which is a prerequisite You’re a beginner, in which case this book will give you a head start You’ve been working in the field for a while, in which case you’ll add new tools to your arsenal

1143708883
Security Orchestration, Automation, and Response for Security Analysts: Learn the secrets of SOAR to improve MTTA and MTTR and strengthen your organization's security posture
Become a security automation expert and build solutions that save time while making your organization more secure

Key Features

  • What’s inside
  • An exploration of the SOAR platform’s full features to streamline your security operations
  • Lots of automation techniques to improve your investigative ability
  • Actionable advice on how to leverage the capabilities of SOAR technologies such as incident management and automation to improve security posture

Book Description

What your journey will look like With the help of this expert-led book, you’ll become well versed with SOAR, acquire new skills, and make your organization's security posture more robust. You’ll start with a refresher on the importance of understanding cyber security, diving into why traditional tools are no longer helpful and how SOAR can help. Next, you’ll learn how SOAR works and what its benefits are, including optimized threat intelligence, incident response, and utilizing threat hunting in investigations. You’ll also get to grips with advanced automated scenarios and explore useful tools such as Microsoft Sentinel, Splunk SOAR, and Google Chronicle SOAR. The final portion of this book will guide you through best practices and case studies that you can implement in real-world scenarios. By the end of this book, you will be able to successfully automate security tasks, overcome challenges, and stay ahead of threats.

What you will learn

  • Reap the general benefits of using the SOAR platform
  • Transform manual investigations into automated scenarios
  • Learn how to manage known false positives and low-severity incidents for faster resolution
  • Explore tips and tricks using various Microsoft Sentinel playbook actions
  • Get an overview of tools such as Palo Alto XSOAR, Microsoft Sentinel, and Splunk SOAR

Who this book is for

You'll get the most out of this book if You're a junior SOC engineer, junior SOC analyst, a DevSecOps professional, or anyone working in the security ecosystem who wants to upskill toward automating security tasks You often feel overwhelmed with security events and incidents You have general knowledge of SIEM and SOAR, which is a prerequisite You’re a beginner, in which case this book will give you a head start You’ve been working in the field for a while, in which case you’ll add new tools to your arsenal

54.99 In Stock
Security Orchestration, Automation, and Response for Security Analysts: Learn the secrets of SOAR to improve MTTA and MTTR and strengthen your organization's security posture

Security Orchestration, Automation, and Response for Security Analysts: Learn the secrets of SOAR to improve MTTA and MTTR and strengthen your organization's security posture

by Benjamin Kovacevic
Security Orchestration, Automation, and Response for Security Analysts: Learn the secrets of SOAR to improve MTTA and MTTR and strengthen your organization's security posture

Security Orchestration, Automation, and Response for Security Analysts: Learn the secrets of SOAR to improve MTTA and MTTR and strengthen your organization's security posture

by Benjamin Kovacevic

Paperback

$54.99 
  • SHIP THIS ITEM
    In stock. Ships in 1-2 days.
  • PICK UP IN STORE

    Your local store may have stock of this item.

Related collections and offers


Overview

Become a security automation expert and build solutions that save time while making your organization more secure

Key Features

  • What’s inside
  • An exploration of the SOAR platform’s full features to streamline your security operations
  • Lots of automation techniques to improve your investigative ability
  • Actionable advice on how to leverage the capabilities of SOAR technologies such as incident management and automation to improve security posture

Book Description

What your journey will look like With the help of this expert-led book, you’ll become well versed with SOAR, acquire new skills, and make your organization's security posture more robust. You’ll start with a refresher on the importance of understanding cyber security, diving into why traditional tools are no longer helpful and how SOAR can help. Next, you’ll learn how SOAR works and what its benefits are, including optimized threat intelligence, incident response, and utilizing threat hunting in investigations. You’ll also get to grips with advanced automated scenarios and explore useful tools such as Microsoft Sentinel, Splunk SOAR, and Google Chronicle SOAR. The final portion of this book will guide you through best practices and case studies that you can implement in real-world scenarios. By the end of this book, you will be able to successfully automate security tasks, overcome challenges, and stay ahead of threats.

What you will learn

  • Reap the general benefits of using the SOAR platform
  • Transform manual investigations into automated scenarios
  • Learn how to manage known false positives and low-severity incidents for faster resolution
  • Explore tips and tricks using various Microsoft Sentinel playbook actions
  • Get an overview of tools such as Palo Alto XSOAR, Microsoft Sentinel, and Splunk SOAR

Who this book is for

You'll get the most out of this book if You're a junior SOC engineer, junior SOC analyst, a DevSecOps professional, or anyone working in the security ecosystem who wants to upskill toward automating security tasks You often feel overwhelmed with security events and incidents You have general knowledge of SIEM and SOAR, which is a prerequisite You’re a beginner, in which case this book will give you a head start You’ve been working in the field for a while, in which case you’ll add new tools to your arsenal


Product Details

ISBN-13: 9781803242910
Publisher: Packt Publishing
Publication date: 07/21/2023
Pages: 338
Product dimensions: 7.50(w) x 9.25(h) x 0.70(d)

About the Author

Benjamin Kovacevic is a cyber-security enthusiast with hands-on experience with Microsoft XDR and SIEM platforms. Currently working with Microsoft Sentinel as a Product Manager, he is focusing on the SOAR component of the solution and working on new capabilities that will help SOCs improve their investigation and response. Benjamin is constantly working to improve his knowledge about cyber-security, as well as to share knowledge about Microsoft SOAR. He is the author of Microsoft Sentinel Automation training, as well as blog posts around tips and tricks to jump-start with Microsoft Sentinel Automation. Benjamin is originally from Bosnia and Herzegovina but currently resides in Ireland with his wife and son.

Table of Contents

Table of Contents

  1. The Current State of Cybersecurity and the Role of SOAR
  2. A Deep Dive into Incident Management and Investigation
  3. A Deep Dive into Automation and Reporting
  4. Quick Dig into SOAR Tools
  5. Introducing Microsoft Sentinel Automation
  6. Enriching Incidents Using Automation
  7. Managing Incidents with Automation
  8. Responding to Incidents Using Automation
  9. Mastering Microsoft Sentinel Automation: Tips and Tricks
From the B&N Reads Blog

Customer Reviews