Learning Path

Attacks & Threat Detection Learning Path

Follow this curated learning path to effectively detect, investigate, and respond to threats using Datadog.

These courses guide you through using Datadog App & API Protection, Datadog Cloud SIEM, and Datadog Workload Protection to detect attacks in real time. Engage in hands-on practice within live cloud sandbox environments to gain experience responding to application and infrastructure attacks. You will investigate and respond to real attacks in live cloud environments using a free Datadog trial account.

This path is designed for Security Engineers, Cloud Engineers, and DevOps Engineers who will detect, investigate, and respond to threats using Datadog.

You’ll learn how to do the following:

Use Datadog security traces and security signals to investigate application attacks
Automate blocking and use the Datadog In-App WAF to slow down attackers in real-time
Detect cloud threats and attacks with Cloud SIEM Content Packs and out-of-the-box detection rules
Investigate attacks with security signals, log queries, and the Cloud SIEM Investigator graph
Detect suspicious process, network, kernel-level, and file activity with Workload Protection

Block Application Attacks with Application & API Protection

Block application attacks using Datadog Application & API Protection. Use the In-App WAF and Denylist to block suspicious IP addresses and requests. Add user information and custom business logic to traces and block malicious users.

View Course

Detect Host and Container Compromises with Workload Protection

Monitor file, network, process, and kernel activity with Workload Protection. Detect and investigate intrusions and running malware in real-time. Secure containerized and host-based workloads.

View Course

Detect and Investigate Threats with Cloud SIEM

Secure your cloud environments with Datadog Cloud SIEM and cloud provider Content Packs. Explore out-of-the-box threat detection rules. Investigate incoming threats using Security Signals, Signals Explorer, and Cloud SIEM Investigator.

View Course

Detect Web Application Attacks with App & API Protection

Detect common attacks against a vulnerable web application using Datadog Application & API Protection. Configure App & API Protection for your services and create a custom detection rule to enhance your defenses.

View Course

Leave feedback about your experience in our Learning Path Survey.

Complete all courses in the path to earn your Credly badge