QRadar SOAR: Integrating with SIEM
Code: BQ430GOverview
In this couse, you learn about the IBM Security® QRadar® SIEM and QRadar SOAR apps that automate data exchange and improve the security incident investigation. You gain knowledge on how to integrate QRadar SOAR and SIEM. You improve incident response by using the SOAR Plug-in App on SIEM and analyzing SIEM's offense in SOAR's QRadar Offense Details tab. You build a playbook and run a query by configuring the QRadar Integration app in a set of useful functions.
Audience
Security Operations Center (SOC) AdministratorSOC AnalystSecurity AnalystIncident ResponderManaged Service Security Provider (MSSP)
Prerequisites
nullObjective
In this course, you learn the following skills:
- Improve response by analyzing QRadar SIEM Offense details
- Configure QRadar Integration Apps from X-Force Exchange
- Build a table and run a query
- Develop a playbook
Course Outline
QRadar SOAR Integrating with SIEM
- Installation of SIEM and SOAR apps from the X-Force Exchange
- Configuring access to SOAR server on QRadar SIEM
- Analyzing the QRadar Offense Details tab
- Building a playbook and analyzing results
Price (ex. VAT)
Duration
Schedule
Please send us a message with the form below
Delivery methods
- Classroom
- On-site (at your location)
- Virtual (instructor online)
Inquire
We will contact you to discuss your requirements