Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Constructing Your Playbook within Security Onion

Security Onion via YouTube

Overview

Explore the process of building an effective security playbook within Security Onion in this conference talk from Security Onion Conference 2019. Learn how to integrate host data, manage sensitive shared resources, and import detections. Discover techniques for creating templates, executing queries, and pivoting through data. Gain insights into leveraging Elastic Search for enhanced security monitoring and response capabilities. Equip yourself with practical knowledge to construct a robust playbook tailored to your organization's security needs using Security Onion's powerful features.

Syllabus

Intro
Integration with host data
Sensitive shared resources
The PlayBook
Importing Detections
Templates
Query
Pivot
Elastic Search

Taught by

Security Onion

Reviews

Start your review of Constructing Your Playbook within Security Onion

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.