Committed to connecting the world

Incident Response with TheHive and Cortex

​​​​​​< Back to the main ITU 2020 Global CyberDrill page​

ONLINE TRAINING




Thursday 15 October 2020


14:30-17:00 CEST​​
12:30-15:00 GMT


Spe​akers​​​


Live
Captioning
Archive



Registration: Training Sessions


Remote participation Registered user only



DESCRIPTION OF THE TRAINING​

1. Introduction 
- HIVE – Central Case Management Platform
- Cortex –  Analyzer and Responders for automation 
- Case template – SOP steps analyst takes when attack happen
- Collaborate
- Elaborate
- Analysers & Responders – Create SOAR
2. Architecture 
- Explain Hive and Cortex Architect 
- Workflow for Case Templates
3. Demonstration 
- Creating workflows and case Templates for task automation
- SOC-Analyst working on task/case
- Identification
- Ticketing
- Incident Response
- Reports

TRAINERS


​Navin Kaul is Director with EY and has more than 13 years of experience large  projects for various Government clients in the area of Security Governance and crisis management, SIEM and CERT.  He has supported multiple  government organizations across multiple countries in implementation & administration of  Information Security ,Network Security, new cyber security initiative. 

Santhosh Kumar R is Consultant with EY and has hands on experience in Red Teaming/Incident Response and Security operation centre. He has led multiple incident response engagement and Red teaming with Open Source tools. He has performed various Incident Response and Forensic for multiple Global organizations and helped them contain and mitigate critical breaches, while he has also helped in early detection of advance threats. He is  Offensive Security Certified Professional(OSCP), Offensive Security Certified Expert(OSCE), CREST Registered Tester(CRT), Crest Security Analyst (CPSA) and, Certified Red Team Expert(CRTE).