|
所在平台: Coursera |
课程主页: https://www.coursera.org/learn/data-security
课程评论:没有评论
课程名称:数据安全 课程概述: 本课程专为在安全运营中心工作的初级网络安全分析师设计,旨在帮助学员探索与网络安全分析相关的数据类型类别。通过本课程,您将能够解释网络安全分析中可用的数据,描述监控网络安全时使用的各种数据类型,了解安全信息和事件管理(SIEM)系统的部署与使用。 课程学习目标: 1. 解释网络安全分析中可用的数据。 2. 描述监控网络安全所使用的各种数据类型。 3. 理解SIEM的收集、排序、处理、优先级设置、存储和报警报告功能。 4. 了解SOAR平台的功能及Cisco SecureX的特性。 5. 描述Security Onion开源安全监控工具。 6. 解释数据包捕获数据如何以PCAP格式存储及其存储要求。 7. 描述数据包捕获的应用和在安全事件调查中的好处。 8. 使用Tcpdump等工具进行数据包捕获分析。 9. 了解会话数据和交易数据的内容,并提供示例。 10. 解释警报数据及其他类型的网络安全监控(NSM)数据(提取内容、统计数据和元数据)。 11. 理解NSM数据相关的必要性,提供示例。 12. 描述信息安全CIA三角及与个人识别信息(PII)相关的内容。 13. 理解合规性法规及其对组织的影响。 14. 描述知识产权及其保护的重要性。 15. 使用Security Onion Linux发行版的各种工具能力。 课程要求: 为顺利完成本课程,学员需具备以下背景: 1. 相当于实施和管理Cisco解决方案(CCNA)v1.0课程所学的技能和知识。 2. 熟悉以太网和TCP/IP网络。 3. 拥有Windows和Linux操作系统的工作知识。 4. 熟悉网络安全概念基础。 通过本课程,学员将掌握全面的数据安全分析技能,为未来的网络安全工作打下坚实的基础。
Name:Exploring Data Type Categories
Description:If you are an associate-level cybersecurity analyst who is working in security operation centers, this course will help you explore data type categories in context to network security analytics. By the end of the course, you will be able to: • Explain the data that is available to the network security analysis •Describe the various types of data used in monitoring network security • Describe the deployment and use of SIEMs to collect, sort, process, prioritize, store, and report alarms • Describe the functions of SOAR platforms and features of Cisco SecureX • Describe the Security Onion Open Source security monitoring tool• Explain how packet capture data is stored in the PCAP format and the storage requirements for full packet capture.• Describe packet capture usage and benefits for investigating security incidents • Describe packet captures using tools such as Tcpdump • Describe session data content and provide an example of session data• Describe transaction data content and provide an example of transaction data • Describe alert data content and provide an example of alert data• Describe other types of NSM data (extracted content, statistical data, and metadata)• Explain the need to correlate NSM data and provide an example• Describe the Information Security CIA triad • Understand PII as it relates to information security • Describe compliance regulations and their effects on an organization • Describe intellectual property and the importance of protecting it • Use various tool capabilities of the Security Onion Linux distribution To be successful in this course, you should have the following background: 1. Skills and knowledge equivalent to those learned in Implementing and Administering Cisco Solutions (CCNA) v1.0 course 2. Familiarity with Ethernet and TCP/IP networking 3. Working knowledge of the Windows and Linux operating systems 4. Familiarity with basics of networking security concepts.
Name:Understanding Basic Cryptography Concepts
Description:If you are an associate-level cybersecurity analyst who is working in security operation centers, this course will help you understand Basic Cryptography Concepts By the end of the course, you will be able to: • Describe the impact of cryptography on security investigations • Describe cryptography concepts • Describe hashing mechanisms and algorithms • Describe encryption usage and features • Describe the use of cryptanalysis to break codes to decipher encrypted data • Describe the use of symmetric encryption algorithms • Describe the use of asymmetric cryptographic algorithms • Describe the Diffie-Hellman (DH) key agreement and DH groups• Describe the uses of the SSH protocol• Describe the basic security services offered with the use of digital signatures• Describe PKI components and use • Describe PKI operations • Describe a use case for SSL/TLS • Describe cipher suite concepts• Describe key management for the secure generation, verification, exchange, storage, and destruction of keys • Describe NSA Suite B cryptographic algorithms • Work with various cryptographic technologies such as public-key infrastructure (PKI), digital signatures, asymmetric encryption, and hashing • Describe the basic concepts and uses of cryptography. To be successful in this course, you should have the following background: 1. Skills and knowledge equivalent to those learned in Implementing and Administering Cisco Solutions (CCNA) v1.0 course 2. Familiarity with Ethernet and TCP/IP networking 3. Working knowledge of the Windows and Linux operating systems 4. Familiarity with basics of networking security concepts.
If you are an associate-level cybersecurity analyst who is working in security operation centers, this course will help you explore data type categories in context to network security analytics. By the end of the course, you will be able to: • Explain the data that is available to the network security analysis •Describe the various types of data used in monitoring network security • Describe the deployment and use of SIEMs to collect, sort, process, prioritize, store, and report alarms • De