
Effective Threat Investigation for SOC Analysts
COMING SOON! Publishing on 25 August 2023
Try out Packt Subscription
Subscription
FREE
What do you get with a Packt Subscription?
What do you get with a Packt Subscription?
What do you get with eBook + Subscription?
What do you get with a Packt Subscription?
What do you get with eBook?
What do I get with Print?
What do you get with video?
What do you get with Audiobook?
Subscription
FREE
What do you get with a Packt Subscription?
What do you get with a Packt Subscription?
What do you get with eBook + Subscription?
What do you get with a Packt Subscription?
What do you get with eBook?
What do I get with Print?
What do you get with video?
What do you get with Audiobook?
About this book
Effective threat investigation requires strong technical knowledge, analytical skills, and a deep understanding of cyber threats and attacker techniques. It's a crucial skill for SOC analysts to have, as it enables them to investigate different threats and identify the root cause of a security incident. This book helps to you know the most common cyber threats and various attacker techniques which will hone your incident investigation skills.
This book starts with explaining the phishing and email attack types and how to investigate them along with exploring Microsoft log types such as Security, System, Custom logs, PowerShell, and their events. Then, you will learn how to investigate attackers' techniques and malicious activities within Windows environments. As you progress, you will learn how to analyze the firewalls, flows, and proxy logs and explore security solutions alerts such as EDR, IPS, IDS, and more to investigate cyber threats. You will also explore some popular Threat Intelligence platforms such as Virus Total, AbuseIPDB, and X-force to investigate cyber threats and successfully build your own sandbox environment for effective malware analysis.
By the end of this book, you will learn how to analyze the most common systems and security appliance logs that exist in any environment and explore various attackers' techniques to investigate them with ease.
- Publication date:
- 25 August 2023
- Publisher
- Packt
- ISBN
- 9781837634781