AI-Powered Security Operations for Threat Defense
Now available worldwide at Fast Lane: Google Chronicle Training
Click the youtube logo to play the video.
April 2024 - Fast Lane, a global Google Cloud Partner, has developed a new three-day Chronicle training offering that teaches the fundamentals and features of Chronicle, a powerful SIEM solution in the cloud. The new course will familiarize participants with Chronicle's key functionalities, data analysis capabilities and security aspects.
Chronicle is a Security Information & Event Management (SIEM) solution offered as a cloud service on the robust Google Cloud infrastructure. Chronicle enables the collection, storage, search and analysis of security data from multiple sources to detect and combat threats. Compared to legacy SIEM solutions, Chronicle offers maximum scalability, speed and efficiency.
The new Chronicle SIEM Fundamentals course is bookable worldwide with Fast Lane and covers the following topics with comprehensive hands-on exercises:
- Chronicle Access – Role-Based Access Control (RBAC) in Chronicle. Why Audit logging is important and how to implement it in your Chronicle instance.
- Learn about Raw Log Search and UDM Search, how to use Search for investigation.
- Chronicle Data on Boarding: forwarders, feed management, ingestion API, and direct ingestion.
- Introduction to Chronicle Parsers – What is a parser, versioning, and parser extension.
- Walkthrough of Chronicle Curated Detection rules.
- Navigating Alerts using the Alert Graph: Entity data, related alerts, alert context.
- Learn about Entity data – Data enrichment in Chronicle, Entity types (Users & Assets), Resources, Geo IP Enrichment.
- Advanced Search Capabilities: Reference Lists, Group Fields, Pivot, Search for Alerts.
- Parsing data in Chronicle – What are parsers and how can we manage them: Parser update, versioning, parser extensions.
- Building rules for Chronicle: YARA-L 2.0 syntax, Rules UI, Single event rules, multi-event rules, using entity data in rules, Outcomes, Functions & Lists, best practice.
- Building dashboards in Chronicle.
The complete Google Cloud training portfolio is available at www.flane.de/google-cloud.