The Complete Kaspersky For Business Technical Training

所在平台: Udemy

课程主页: https://www.udemy.com/course/giant-lab-kaspersky-bootcamp-ksc-with-kes-for-windows/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:商业技术培训的完整卡巴斯基 课程概述:本课程将指导学生学习卡巴斯基安全中心(KSC)和卡巴斯基终端安全(KES)的主要功能,结合一个模拟真实世界组织的巨大实验室,该实验室集成了多个供应商的安全解决方案。 首先,本课程将介绍卡巴斯基终端安全(KES)针对Windows的应用。课程内容包括: 1. 通过一本小书介绍KSC和KES,概要说明实验室部分的内容。 2. 本地和远程方法的KSC与KES安装过程。 3. 安装完成后需执行的必要任务。 4. 配置安全策略及其主要功能。 5. 通过Kali Linux进行渗透测试的快速示例,验证已安装KES的机器的安全性。 6. 报告和监控技术。 通过本课程,学生将能够通过KSC(MMC控制台)安装KES,并配置适当的安全规则,以适应实际环境中的防火墙设置。 第二部分课程聚焦于卡巴斯基混合云安全(Kaspersky Hybrid Cloud Security)针对虚拟化的应用。学生将学习: 1. 定义卡巴斯基混合云安全的主要特性。 2. 了解解决方案的主要组成部分(集成服务器、保护服务器“ SVM”、轻量代理、网络代理)。 3. 区分轻量代理与无代理,解析为何选择轻量代理。 4. 安装卡巴斯基混合云安全用于虚拟环境的各个组件(KSC、vCenter、保护服务器、将轻量代理推送至Windows机器)。 5. 配置SVM和轻量代理的主要策略及其组成部分和特性。 6. 比较卡巴斯基轻量代理与卡巴斯基终端安全的差异。 7. 在启用轻量代理的设备上进行快速渗透测试,并观察其对特定攻击和恶意软件的防御效果,同时学习如何通过Kaspersky Security Center监控事件。 第三部分课程探讨如何在Windows上配置最佳的EDR(事件响应)与KES。内容包括: 1. 安装卡巴斯基终端检测与响应最佳版(EDR Optimum),并探索其主要功能。 2. 对比终端保护平台与终端检测与响应,阐述后者的主要优势。 3. 探索EDR Optimum的两个主要应用(终端代理和卡巴斯基终端安全)。 4. 学习通过Web控制台安装解决方案的两种方法(更改应用组件或直接编辑应用设置)。 5. 发现EDR Optimum的功能,包括检测威胁可以在机器上创建的所有文件、网络连接和注册表项。 6. 讨论应对措施,如主机隔离(将PC完全隔离于网络)、执行预防(从一开始防止威胁执行)、IOC扫描(在网络中搜索特定md5哈希)。 7. 有关卡巴斯基Windows服务器的专门内容,以满足Windows服务器服务的需求。 本课程将帮助学生全面掌握卡巴斯基的技术并能有效应用于实际工作环境中的安全管理。

课程评论(0条)

课程详情

In This Course Student Will Learn The Main Features Of KSC & KES By Working On Giant Lab Which simulates a real world organization integrated with multiple vendors security solutions. First course will be about kaspersky endpoint security for windows -> First section will be an introduction to KSC and KES via a mini-book describing all the things will be explained in the labs sections , Second section will be the installation process of both KSC and KES via local method and remote method , Third section will be about the needed tasks after the installation finsihed , Fourth section will be about configuring the policy and discovering it's main features , Fifth section will be a quick example of penetration testing using kali linux on our machines have KES installed on them , Lastly some reports and monitoring techniques. With this course , student will be able to install KES via KSC ( MMC Console ) and configure the proper security rules on firewalls on it's path which happens in each real world environment.Second course will about kaspersky hybrid cloud security for virtualization. During This Course Student Will Able To Define The Main Features Of Kaspersky Hybrid Cloud Security For Virtualization , See The Main Components Of Solution ( Integration Server , Protection Server "SVM" , Light Agent , Network Agent ) , Differentiate Between Light Agent & Agentless. Why We Choose Light Agent! , Install Kaspersky Hybrid Cloud Security For Virtual Environments ( KSC , vCenter , Protection Sever , Pushing Light Agent To Windows Machines ) , Configuring The Main Policies Of SVM And Light Agents And See The Main Components And Feature Of Each Policy , Configuring The Main Needed Tasks For Each Application , Comparing Kaspersky Light Agent With Kaspersky Endpoint Security For Windows , What's The Difference Between Both , Launching A Quick Pen Testing On Our Device Has Kaspersky Light Agent On it And See It Will Defend Against Some Attacks And Malwares and See How To Monitor What Happened From Kaspersky Security Center. Third course will about configuring EDR optimum with KES for windows. During This Course Student will be able to install Kaspersky Endpoint Detection & Response Optimum and dicover it's main features. Endpoint Protection Platform will be compared to endpoint detection and response and the main advantages of the last will be discovered.Endpoint detection and response optimum is a solution consisting of two main applications ( endpoint agent & kaspersky endpoint security "below version 11.6" or kaspersky hybrid cloud or kaspersky for windows server ).In new versions of kaspersky endpoint security form version 11.7 and above , endpoint agent became part of the platform and user doesn't have to install both applications seperately and intergrate between them.During this course we will use kaspersky security center "Web console" since we are using EDR and results will not be shown except in web console.We will also see how to install the solution via the two methods ( Change application components OR Edit the application settings directly ).Then we will discover all the features of EDR optimum like discovering all the files , network connections , registery that threat can create on the machine.Responses also will be discussed like ( Host isolation ; to completely isolate the pc from the network.. Execution prevention ;to prevent the execution of the threat form begining.. IOC Scan ; To search for specific md5 hash on other pcs in the network.. Finally , there is a whole section about kaspersky for windows server , made specially to target needs for windows server services without affecting it's needed services.

课程标签

0人关注该课程

主题相关的课程