Summary
Keywords
Full Transcript
In this full series we will talk about Incident Response and it will be a Free Training for everyone. Today is Day-7 and we are going to show you how can you install SIEM Labs at home and start doing Incident Response Pratically. We will install QRadar Community Edition, QRadar Cloud Edition and Elastic SIEM aka. ELK by the Fastest and Easiest way possible. For better visibility I will suggest you should go for installing Community edition. You have the option to install it like the way you want either in your VM or in any Cloud Platform like Azure, AWS etc. You will get a lot of flexibility to play around. But if you don't wanna make the admin stuffs and just want to learn about the tool, use the IBM Cloud edition where you don't need to install much, just create IBM Account and ready to ROCK! And if you wanna choose to install ELK, more awesome!! Follow along my steps and you will done in 10-15 mins. There is huge amount of information, training available on internet which talks about the same and at times you become overwhelmed and can't decide what is the right choice for me if I want to start my career in Security Operations Centre and want a role in Incident Response. So I have developed this full series to stay focused on the basic areas someone must be aware of to kick of SOC journey! Hence I recommend you to visit the full list one by one to have a solid idea of SOC Beginner level skills and requirements. ------------------------------------------------------------------------------------------------------------------------- đ Check out Incident Response Full Training Courseđ https://bit.ly/2OKQaFP đLINKS FOR YOUR REQUIREMENTS- ------------------------------------------------------------------------------------------------------------------------- đQRadar Community Edition- https://www.ibm.com/community/qradar/ce/ đQRadar Cloud Edition- https://ibm.co/3z8rzgy đLog File Samples- https://bit.ly/3gaxVTK đVagrant Tool for ELK- https://www.vagrantup.com/downloads.html đVagrant ELK Archieve- https://bit.ly/3uTMHnh đDFIR Tools Repo- https://github.com/archanchoudhury/DFIR-Tools đ„đ„đ„đ„đ„ Check-out my Free InfoSec Resource Fusion- https://bit.ly/3vOFarG đ„đ„đ„đ„đ„ WATCH BELOW AS WELL đ„đ„đ„đ„đ„ ------------------------------------------------------------------------------------------------------------------------- IR Flash đ https://youtu.be/6kOinwAB-BY Linux Memory Forensics đ https://youtu.be/eK-Y6MyMKVE Check out Malware Investigation Part1đ https://youtu.be/E86wyomzDjs Check out Malware Investigation Part2đ https://youtu.be/D3inDM8kM-Y BlackPerl Forensics Episodesđ https://bit.ly/3pgpqsG How do I prepare my timelineđ https://youtu.be/KJpWxbNoWp8 Decoding JavaScript codes for Incident Responseđ https://youtu.be/rot9cDW9SYA Lean Yara Here đ https://youtu.be/DI5zV_vGJC0 â Timelines ------------------------------------------------------------------------------------------------------------------------- 0:00 â© Intro 1:42 â© Download QRadar OVA 2:40 â© Install QRadar CE Version 10:07 â© Install ELK SIEM 19:12 â© Install QRadar Cloud 24:00 â© Summarize & Whatâs NEXT ? đđČ FOLLOW ME EVERYWHERE- ------------------------------------------------------------------------------------------------------------------------- â LinkedIn: https://www.linkedin.com/company/blackperl â You can reach out to me personally in LinkedIn as well- https://bit.ly/38ze4L5 â Twitter: @blackperl_dfir â Insta: (blackperl_dfir)https://www.instagram.com/blackperl_dfir/ â Can be reached via [email protected] SUPPORT BLACKPERL ------------------------------------------------------------------------------------------------------------------------- âââŠâââŠââââŠââŠâŠâŠâŠââââ âââŁâââââŁââŁââŁââŁâââŁâ⣠â âââââââ ââââŁââââââ⣠âââ©âââ©ââ©ââ©ââ©âââ©ââ©ââ âĄïž SUBSCRIBE, Share, Like, Comment â Buy me a Coffee đ https://www.buymeacoffee.com/BlackPerl đ§ Sponsorship Inquiries: [email protected] ------------------------------------------------------------------------------------------------------------------------- đ Thanks for watching!! Be CyberAware!! đ€
