This course explores the role of detection in identifying and managing security threats through events, alerts, and incidents. You'll dive into endpoint, network, and application log sources, learn how to work with Windows and Linux logging, and understand centralized log collection using tools like Splunk and the ELK Stack. By developing detection rules, analyzing indicators of compromise, and managing alert noise, you’ll build the skills needed to identify real threats effectively. This course lays the technical foundation for the next step: Incident Response Analysis.
AI, Data Science & Cloud Certificates from Google, IBM & Meta
Learn Backend Development Part-Time, Online
Overview
Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Taught by
Alexis Ahmed