Course Details
Course Outline
1 - Course Introduction
Introductions and course logisticsCourse objectives
2 - VMware Carbon Black App Control Administrator
Login Accounts and GroupsPoliciesComputer DetailsCustom RulesToolsEventsBaseline Drift
3 - VMware Carbon Black EDR
Planning and ArchitectureServer Installation & AdministrationProcess Search and AnalysisBinary Search and Banning BinariesSearch best practicesThreat IntelligenceWatchlistsAlerts / Investigations / Responses
4 - VMware Carbon Black Cloud Endpoint Standard
Data Flows and CommunicationSearching DataPolicy ComponentsPrevention Capabilities Using RulesProcessing AlertsResponse Capabilities
5 - VMware Carbon Black Cloud Enterprise EDR
Managing WatchlistsAlert ProcessingThreat Hunting in Enterprise EDRResponse Capabilities
6 - VMware Carbon Black Cloud Audit and Remediation
Query BasicsRecommended QueriesSQL BasicsFiltering ResultsBasic SQL QueriesAdvanced Search CapabilitiesResponse Capabilities
Actual course outline may vary depending on offering center. Contact your sales representative for more information.
Who is it For?
Target Audience
System administrators and security operations personnel (including analysts and managers)
Other Prerequisites
System administration experience on Microsoft Windows or Linux operating systems