Attacks & Threat Detection Learning Path
Follow this curated learning path to effectively detect, investigate, and respond to threats using Datadog.
These courses guide you through using Datadog App & API Protection, Datadog Cloud SIEM, and Datadog Workload Protection to detect attacks in real time. Engage in hands-on practice within live cloud sandbox environments to gain experience responding to application and infrastructure attacks. You will investigate and respond to real attacks in live cloud environments using a free Datadog trial account.
This path is designed for Security Engineers, Cloud Engineers, and DevOps Engineers who will detect, investigate, and respond to threats using Datadog.
You’ll learn how to do the following:
Block Application Attacks with Application & API Protection
Block application attacks using Datadog Application & API Protection. Use the In-App WAF and Denylist to block suspicious IP addresses and requests. Add user information and custom business logic to traces and block malicious users.
Detect Host and Container Compromises with Workload Protection
Monitor file, network, process, and kernel activity with Workload Protection. Detect and investigate intrusions and running malware in real-time. Secure containerized and host-based workloads.
Detect and Investigate Threats with Cloud SIEM
Secure your cloud environments with Datadog Cloud SIEM and cloud provider Content Packs. Explore out-of-the-box threat detection rules. Investigate incoming threats using Security Signals, Signals Explorer, and Cloud SIEM Investigator.
Detect Web Application Attacks with App & API Protection
Detect common attacks against a vulnerable web application using Datadog Application & API Protection. Configure App & API Protection for your services and create a custom detection rule to enhance your defenses.