<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="24655" language="en" source="https://portal.flane.ch/swisscom/en/xml-course/cisco-cbrcor" lastchanged="2026-03-20T04:22:31+01:00" parent="https://portal.flane.ch/swisscom/en/xml-courses"><title>Performing CyberOps Using Cisco Security Technologies</title><productcode>CBRCOR</productcode><vendorcode>CI</vendorcode><vendorname>Cisco</vendorname><fullproductcode>CI-CBRCOR</fullproductcode><version>1.1</version><objective>&lt;ul&gt;
&lt;li&gt;Describe the types of service coverage within a SOC and operational responsibilities associated with each&lt;/li&gt;&lt;li&gt;Compare security operations considerations of cloud platforms&lt;/li&gt;&lt;li&gt;Describe the general methodologies of SOC platforms development, management, and automation&lt;/li&gt;&lt;li&gt;Describe asset segmentation, segregation, network segmentation, microsegmentation, and approaches to each, as part of asset controls and protections&lt;/li&gt;&lt;li&gt;Describe Zero Trust and associated approaches, as part of asset controls and protections&lt;/li&gt;&lt;li&gt;Perform incident investigations using Security Information and Event Management (SIEM) and/or security orchestration and automation (SOAR) in the SOC&lt;/li&gt;&lt;li&gt;Use different types of core security technology platforms for security monitoring, investigation, and response&lt;/li&gt;&lt;li&gt;Describe the DevOps and SecDevOps processes&lt;/li&gt;&lt;li&gt;Describe the common data formats (e.g., JavaScript Object Notation (JSON), HTML, XML, and Comma-Separated Values (CSV))&lt;/li&gt;&lt;li&gt;Describe API authentication mechanisms&lt;/li&gt;&lt;li&gt;Analyze the approach and strategies of threat detection, during monitoring, investigation, and response&lt;/li&gt;&lt;li&gt;Determine known Indicators of Compromise (IOCs) and Indicators of Attack (IOAs)&lt;/li&gt;&lt;li&gt;Interpret the sequence of events during an attack based on analysis of traffic patterns&lt;/li&gt;&lt;li&gt;Describe the different security tools and their limitations for network analysis (e.g., packet capture tools, traffic analysis tools, and network log analysis tools)&lt;/li&gt;&lt;li&gt;Analyze anomalous user and entity behavior (UEBA)&lt;/li&gt;&lt;li&gt;Perform proactive threat hunting following best practices&lt;/li&gt;&lt;/ul&gt;</objective><essentials>&lt;p&gt;Although there are no mandatory prerequisites, to fully benefit from this course, you should have the following knowledge:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Familiarity with UNIX/Linux shells (bash, csh) and shell commands&lt;/li&gt;&lt;li&gt;Familiarity with the Splunk search and navigation functions&lt;/li&gt;&lt;li&gt;Basic understanding of scripting using one or more of Python, JavaScript, PHP or similar.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;Recommended Cisco offering that may help you prepare for this course:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;span class=&quot;cms-link-marked&quot;&gt;&lt;a class=&quot;fl-href-prod&quot; href=&quot;/swisscom/en/course/cisco-ccna&quot;&gt;&lt;svg role=&quot;img&quot; aria-hidden=&quot;true&quot; focusable=&quot;false&quot; data-nosnippet class=&quot;cms-linkmark&quot;&gt;&lt;use xlink:href=&quot;/css/img/icnset-linkmarks.svg#linkmark&quot;&gt;&lt;/use&gt;&lt;/svg&gt;Implementing and Administering Cisco Solutions &lt;span class=&quot;fl-prod-pcode&quot;&gt;(CCNA)&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span class=&quot;cms-link-marked&quot;&gt;&lt;a class=&quot;fl-href-prod&quot; href=&quot;/swisscom/en/course/cisco-cbrops&quot;&gt;&lt;svg role=&quot;img&quot; aria-hidden=&quot;true&quot; focusable=&quot;false&quot; data-nosnippet class=&quot;cms-linkmark&quot;&gt;&lt;use xlink:href=&quot;/css/img/icnset-linkmarks.svg#linkmark&quot;&gt;&lt;/use&gt;&lt;/svg&gt;Understanding Cisco Cybersecurity Operations Fundamentals &lt;span class=&quot;fl-prod-pcode&quot;&gt;(CBROPS)&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;</essentials><audience>&lt;p&gt;Although there are no mandatory prerequisites, the course is particularly suited for the following audiences:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Cybersecurity engineer&lt;/li&gt;&lt;li&gt;Cybersecurity investigator&lt;/li&gt;&lt;li&gt;Incident manager&lt;/li&gt;&lt;li&gt;Incident responder&lt;/li&gt;&lt;li&gt;Network engineer&lt;/li&gt;&lt;li&gt;SOC analysts currently functioning at entry level with a minimum of 1 year of experience&lt;/li&gt;&lt;/ul&gt;</audience><outline>&lt;ul&gt;
&lt;li&gt;Understanding Risk Management and SOC Operations&lt;/li&gt;&lt;li&gt;Understanding Analytical Processes and Playbooks&lt;/li&gt;&lt;li&gt;Understanding Cloud Service Model Security Responsibilities&lt;/li&gt;&lt;li&gt;Understanding Enterprise Environment Assets&lt;/li&gt;&lt;li&gt;Understanding APIs&lt;/li&gt;&lt;li&gt;Understanding SOC Development and Deployment Models&lt;/li&gt;&lt;li&gt;Investigating Packet Captures, Logs, and Traffic Analysis&lt;/li&gt;&lt;li&gt;Investigating Endpoint and Appliance Logs&lt;/li&gt;&lt;li&gt;Implementing Threat Tuning&lt;/li&gt;&lt;li&gt;Threat Research and Threat Intelligence Practices&lt;/li&gt;&lt;li&gt;Performing Security Analytics and Reports in a SOC&lt;/li&gt;&lt;li&gt;Malware Forensics Basics&lt;/li&gt;&lt;li&gt;Threat Hunting Basics&lt;/li&gt;&lt;li&gt;Performing Incident Investigation and Response&lt;/li&gt;&lt;/ul&gt;</outline><objective_plain>- Describe the types of service coverage within a SOC and operational responsibilities associated with each
- Compare security operations considerations of cloud platforms
- Describe the general methodologies of SOC platforms development, management, and automation
- Describe asset segmentation, segregation, network segmentation, microsegmentation, and approaches to each, as part of asset controls and protections
- Describe Zero Trust and associated approaches, as part of asset controls and protections
- Perform incident investigations using Security Information and Event Management (SIEM) and/or security orchestration and automation (SOAR) in the SOC
- Use different types of core security technology platforms for security monitoring, investigation, and response
- Describe the DevOps and SecDevOps processes
- Describe the common data formats (e.g., JavaScript Object Notation (JSON), HTML, XML, and Comma-Separated Values (CSV))
- Describe API authentication mechanisms
- Analyze the approach and strategies of threat detection, during monitoring, investigation, and response
- Determine known Indicators of Compromise (IOCs) and Indicators of Attack (IOAs)
- Interpret the sequence of events during an attack based on analysis of traffic patterns
- Describe the different security tools and their limitations for network analysis (e.g., packet capture tools, traffic analysis tools, and network log analysis tools)
- Analyze anomalous user and entity behavior (UEBA)
- Perform proactive threat hunting following best practices</objective_plain><essentials_plain>Although there are no mandatory prerequisites, to fully benefit from this course, you should have the following knowledge:



- Familiarity with UNIX/Linux shells (bash, csh) and shell commands
- Familiarity with the Splunk search and navigation functions
- Basic understanding of scripting using one or more of Python, JavaScript, PHP or similar.
Recommended Cisco offering that may help you prepare for this course:


- Implementing and Administering Cisco Solutions (CCNA)
- Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS)</essentials_plain><audience_plain>Although there are no mandatory prerequisites, the course is particularly suited for the following audiences:



- Cybersecurity engineer
- Cybersecurity investigator
- Incident manager
- Incident responder
- Network engineer
- SOC analysts currently functioning at entry level with a minimum of 1 year of experience</audience_plain><outline_plain>- Understanding Risk Management and SOC Operations
- Understanding Analytical Processes and Playbooks
- Understanding Cloud Service Model Security Responsibilities
- Understanding Enterprise Environment Assets
- Understanding APIs
- Understanding SOC Development and Deployment Models
- Investigating Packet Captures, Logs, and Traffic Analysis
- Investigating Endpoint and Appliance Logs
- Implementing Threat Tuning
- Threat Research and Threat Intelligence Practices
- Performing Security Analytics and Reports in a SOC
- Malware Forensics Basics
- Threat Hunting Basics
- Performing Incident Investigation and Response</outline_plain><duration unit="d" days="5">5 days</duration><pricelist><price country="SI" currency="EUR">2625.00</price><price country="IT" currency="EUR">3290.00</price><price country="GB" currency="GBP">3305.00</price><price country="UA" currency="USD">4000.00</price><price country="IL" currency="ILS">11760.00</price><price country="BE" currency="EUR">3495.00</price><price country="NL" currency="EUR">3495.00</price><price country="GR" currency="EUR">2625.00</price><price country="MK" currency="EUR">2625.00</price><price country="HU" currency="EUR">2625.00</price><price country="AU" currency="USD">4300.00</price><price country="SG" currency="USD">3440.00</price><price country="IN" currency="USD">2580.00</price><price country="PL" currency="EUR">2990.00</price><price country="DE" currency="EUR">3950.00</price><price country="SE" currency="EUR">3950.00</price><price country="CH" currency="CHF">4200.00</price><price country="FR" currency="EUR">4160.00</price><price country="US" currency="USD">3995.00</price><price country="CA" currency="CAD">5515.00</price><price country="AT" currency="EUR">3950.00</price></pricelist><miles><milesvalue country="GB" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="PL" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="PA" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="AR" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="CR" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="NL" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="AE" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="US" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="CO" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="P3" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="FR" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="S2" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="CA" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="ES" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="SG" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="BR" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="PE" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="IT" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="SI" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="SE" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="IL" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="EG" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="AT" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="UA" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="CH" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue><milesvalue country="DE" vendorcurrency="CLC" vendorcurrencyname="Cisco Learning Credits">40.00</milesvalue></miles></course>