Learning Objectives

  • Explore out-of-the-box Cloud SIEM detection rules
  • Detect and triage threats using Security Signals and the Signals Explorer
  • Investigate an attack using Cloud SIEM Investigator

Primary Audience

  • DevOps and security engineers interested in securing their cloud environments with a SIEM (Security and Incident and Event Management) tool
  • Cloud practitioners interested in threat detection in a public cloud environment

Prerequisites

Recommended: 

  • Completion of the Learning Environment course
  • Basic cloud computing knowledge (this course features a sandbox AWS environment)
  • Basic understanding of Datadog Log Management

Technical Requirements

In order to complete the course, you will need:

  • Google Chrome or Firefox
  • Third-party cookies must be enabled to access labs

Course Navigation

At the bottom of each lesson, click MARK LESSON COMPLETE AND CONTINUE so that you are marked complete for each lesson and can receive the certificate at the end of the course.

Course Enrollment Period

Please note that your enrollment in this course ends after 30 days. You can re-enroll at any time and pick up where you left off.

Course curriculum

    1. Introduction

    1. Cloud SIEM Content Packs

    2. Out-of-the-box Detection Rules

    3. Signals Explorer

    4. Cloud SIEM Investigator

    1. Lab: Detect and Investigate Threats with Cloud SIEM

    1. Summary

    2. Feedback Survey

Detect and Investigate Threats with Cloud SIEM

  • 1 hours to complete
  • 0 hours of video content
  • Beginner