Vendors

In this course, you will learn how to design, deploy, and manage a Fortinet SOC solution using FortiSIEM and FortiSOAR. You will learn how to analyze and respond to security incidents according to industry best practices for incident handling. You will also learn about SOC playbook development, threat hunting, and how to incorporate FortiAI in your workflow.

img-course-overview.jpg

What You'll Learn

  • Describe the main functions and roles within a SOC
  • Identify the challenges that can be solved by the Fortinet SOC
  • Describe the MITRE ATT&CK Enterprise Matrix and the Cyber Kill Chain
  • Describe how to identify and reduce the attack surface
  • Describe common attack vectors
  • Describe the benefits of using FortiSIEM and FortiSOAR
  • Describe different Fortinet SOC deployment architectures
  • Describe the FortiSOAR Content Hub and connectors
  • Describe FortiAI features
  • Describe FortiAI in FortiSIEM and FortiSOAR
  • Describe reactive and proactive threat hunting processes
  • Generate threat hunting hypotheses
  • Identify and configure data sources
  • Configure data ingestion
  • Configure FortiSIEM rules
  • Execute attack vectors
  • Describe the NIST SP 800-61 incident handling process
  • Describe the incident handling workflow with FortiSIEM and FortiSOAR
  • Analyze, handle, and tune incidents on FortiSIEM
  • Ingest FortiSIEM incidents into FortiSOAR for incident handling
  • Escalate FortiSOAR alerts into incidents
  • Describe automation requirements
  • Describe FortiSOAR playbook steps
  • Run playbooks to enrich indicators
  • Configure a playbook to retrieve a hash rating from FortiSandbox
  • Perform containment on FortiGate, Windows Active Directory, and FortiClient EMS using FortiSOAR connectors
  • Eradicate artifacts from a compromised host
  • Release a compromised host from quarantine after recovery
  • Manage playbook history logs

Who Should Attend

Security professionals involved in the design, implementation, operation, and monitoring of Fortinet SOC solutions using FortiSIEM and FortiSOAR should attend this course.

img-who-should-learn.png

Prerequisites

You must have an understanding of the topics covered in the FortiSIEM Analyst course, or have equivalent experience.

Learning Journey

Coming Soon...

  • SOC Concepts and Security Frameworks
  • Fortinet SOC with FortiSIEM and FortiSOAR
  • Incident Handling and FortiSIEM
  • Incident Handling and FortiSOAR
  • SOC Playbook Development
  • Threat Hunting

img-exam-cert

Frequently Asked Questions (FAQs)

  • Why get Fortinet certified?

    Fortinet certifications validate your expertise in network security and your ability to implement and manage Fortinet's comprehensive Security Fabric.

    These certifications are highly valued by employers and demonstrate your commitment to staying ahead of the ever-evolving threat landscape.

    A Fortinet certification can open doors to new career opportunities, increase your earning potential, and make you a sought-after cybersecurity professional.

  • What to expect for the examination?

    Fortinet offers a variety of certification exams at different levels (NSE 1 - 8) and specializations (security, cloud, cybersecurity).

    Exams typically consist of multiple-choice and scenario-based questions that assess your knowledge and problem-solving skills in real-world security situations.

    Depending on the level and specialization, you will be required to pass/complete the core and/or elective exam(s), while the expert tier has written and practical exam.

    Note: Certification requirements and policies may be updated by Fortinet from time to time. We apologize for any discrepancies; do get in touch with us if you have any questions.

  • How long is Fortinet certification valid for?

    As of 1 October 2023, all Fortinet certifications have an expiration date:

    NSE 1 - 4 (FCF, FCA, FCP, FCSS): Valid for two years.

    NSE 5 - 8 (FCX): Valid for three years.

    To maintain your certification, you must recertify before it expires. Recertification options include passing the same exam again or earning a higher-level certification.

    Note: Certification requirements and policies may be updated by Fortinet from time to time. We apologize for any discrepancies; do get in touch with us if you have any questions.

  • Why take this course with Trainocate?

    Here’s what sets us apart:

    - Global Reach, Localized Accessibility: Benefit from our geographically diverse training hubs in 24 countries (and counting!).

    - Top-Rated Instructors: Our team of subject matter experts (with high average CSAT and MTM scores) are passionate to help you accelerate your digital transformation.

    - Customized Training Solutions: Choose from on-site, virtual classrooms, or self-paced learning to fit your organization and individual needs.

    - Experiential Learning: Dive into interactive training with our curated lesson plans. Participate in hands-on labs, solve real-world challenges, and take on comprehensive assessments.

    - Learn From The Best: With 30+ authorized training partnerships and countless awards from Microsoft, AWS, Google – you're guaranteed learning from the industry's elite.

    - Your Bridge To Success: We provide up-to-date course materials, helpful exam guides, and dedicated support to validate your expertise and elevate your career.

Keep Exploring

Course Curriculum

Course Curriculum

Training Schedule

Training Schedule

Exam & Certification

Exam & Certification

FAQs

Frequently Asked Questions

img-improve-career.jpg

Improve yourself and your career by taking this course.

img-get-info.jpg

Ready to Take Your Business from Great to Awesome?

Level-up by partnering with Trainocate. Get in touch today.

Name
Email
Phone
I'm inquiring for
Inquiry Details

By submitting this form, you consent to Trainocate processing your data to respond to your inquiry and provide you with relevant information about our training programs, including occasional emails with the latest news, exclusive events, and special offers.

You can unsubscribe from our marketing emails at any time. Our data handling practices are in accordance with our Privacy Policy.