<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="36446" language="fr" source="https://portal.flane.ch/swisscom/fr/xml-course/fortinet-secop-arch" lastchanged="2026-02-06T11:01:31+01:00" parent="https://portal.flane.ch/swisscom/fr/xml-courses"><title>Security Operations Architect</title><productcode>SECOP-ARCH</productcode><vendorcode>FO</vendorcode><vendorname>Fortinet</vendorname><fullproductcode>FO-SECOP-ARCH</fullproductcode><version>7.6</version><objective>&lt;p&gt;After completing this course, you will be able to:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Describe the main functions and roles within a SOC&lt;/li&gt;&lt;li&gt;Identify the challenges that can be solved by the Fortinet SOC&lt;/li&gt;&lt;li&gt;Describe the MITRE ATT&amp;amp;CK Enterprise Matrix and the Cyber Kill Chain&lt;/li&gt;&lt;li&gt;Describe how to identify and reduce the attack surface&lt;/li&gt;&lt;li&gt;Describe common attack vectors&lt;/li&gt;&lt;li&gt;Describe the benefits of using FortiSIEM and FortiSOAR&lt;/li&gt;&lt;li&gt;Describe different Fortinet SOC deployment architectures&lt;/li&gt;&lt;li&gt;Describe the FortiSOAR Content Hub and connectors&lt;/li&gt;&lt;li&gt;Describe FortiAI features&lt;/li&gt;&lt;li&gt;Describe FortiAI in FortiSIEM and FortiSOAR&lt;/li&gt;&lt;li&gt;Describe reactive and proactive threat hunting processes&lt;/li&gt;&lt;li&gt;Generate threat hunting hypotheses&lt;/li&gt;&lt;li&gt;Identify and configure data sources&lt;/li&gt;&lt;li&gt;Configure data ingestion&lt;/li&gt;&lt;li&gt;Configure FortiSIEM rules&lt;/li&gt;&lt;li&gt;Execute attack vectors&lt;/li&gt;&lt;li&gt;Describe the NIST SP 800-61 incident handling process&lt;/li&gt;&lt;li&gt;Describe the incident handling workflow with FortiSIEM and FortiSOAR&lt;/li&gt;&lt;li&gt;Analyze, handle, and tune incidents on FortiSIEM&lt;/li&gt;&lt;li&gt;Ingest FortiSIEM incidents into FortiSOAR for incident handling&lt;/li&gt;&lt;li&gt;Escalate FortiSOAR alerts into incidents&lt;/li&gt;&lt;li&gt;Describe automation requirements&lt;/li&gt;&lt;li&gt;Describe FortiSOAR playbook steps&lt;/li&gt;&lt;li&gt;Run playbooks to enrich indicators&lt;/li&gt;&lt;li&gt;Configure a playbook to retrieve a hash rating from FortiSandbox&lt;/li&gt;&lt;li&gt;Perform containment on FortiGate, Windows Active Directory, and FortiClient EMS using FortiSOAR connectors&lt;/li&gt;&lt;li&gt;Eradicate artifacts from a compromised host&lt;/li&gt;&lt;li&gt;Release a compromised host from quarantine after recovery&lt;/li&gt;&lt;li&gt;Manage playbook history logs&lt;/li&gt;&lt;/ul&gt;</objective><essentials>&lt;p&gt;You must have an understanding of the topics covered in the FortiSIEM Analyst course, or have equivalent experience.&lt;/p&gt;</essentials><audience>&lt;p&gt;Security professionals involved in the design, implementation, operation, and monitoring of Fortinet SOC solutions using FortiSIEM and FortiSOAR should attend this course.&lt;/p&gt;</audience><outline>&lt;ul&gt;
&lt;li&gt;SOC Concepts and Security Frameworks&lt;/li&gt;&lt;li&gt;Fortinet SOC with FortiSIEM and FortiSOAR&lt;/li&gt;&lt;li&gt;Incident Handling and FortiSIEM&lt;/li&gt;&lt;li&gt;Incident Handling and FortiSOAR&lt;/li&gt;&lt;li&gt;SOC Playbook Development&lt;/li&gt;&lt;li&gt;Threat Hunting&lt;/li&gt;&lt;/ul&gt;</outline><objective_plain>After completing this course, you will be able to:



- Describe the main functions and roles within a SOC
- Identify the challenges that can be solved by the Fortinet SOC
- Describe the MITRE ATT&amp;CK Enterprise Matrix and the Cyber Kill Chain
- Describe how to identify and reduce the attack surface
- Describe common attack vectors
- Describe the benefits of using FortiSIEM and FortiSOAR
- Describe different Fortinet SOC deployment architectures
- Describe the FortiSOAR Content Hub and connectors
- Describe FortiAI features
- Describe FortiAI in FortiSIEM and FortiSOAR
- Describe reactive and proactive threat hunting processes
- Generate threat hunting hypotheses
- Identify and configure data sources
- Configure data ingestion
- Configure FortiSIEM rules
- Execute attack vectors
- Describe the NIST SP 800-61 incident handling process
- Describe the incident handling workflow with FortiSIEM and FortiSOAR
- Analyze, handle, and tune incidents on FortiSIEM
- Ingest FortiSIEM incidents into FortiSOAR for incident handling
- Escalate FortiSOAR alerts into incidents
- Describe automation requirements
- Describe FortiSOAR playbook steps
- Run playbooks to enrich indicators
- Configure a playbook to retrieve a hash rating from FortiSandbox
- Perform containment on FortiGate, Windows Active Directory, and FortiClient EMS using FortiSOAR connectors
- Eradicate artifacts from a compromised host
- Release a compromised host from quarantine after recovery
- Manage playbook history logs</objective_plain><essentials_plain>You must have an understanding of the topics covered in the FortiSIEM Analyst course, or have equivalent experience.</essentials_plain><audience_plain>Security professionals involved in the design, implementation, operation, and monitoring of Fortinet SOC solutions using FortiSIEM and FortiSOAR should attend this course.</audience_plain><outline_plain>- SOC Concepts and Security Frameworks
- Fortinet SOC with FortiSIEM and FortiSOAR
- Incident Handling and FortiSIEM
- Incident Handling and FortiSOAR
- SOC Playbook Development
- Threat Hunting</outline_plain><duration unit="d" days="2">2 jours</duration><pricelist><price country="US" currency="USD">1900.00</price><price country="CA" currency="CAD">2620.00</price><price country="GB" currency="USD">1900.00</price><price country="IL" currency="USD">1900.00</price><price country="AT" currency="USD">1900.00</price><price country="EG" currency="USD">1900.00</price><price country="SE" currency="USD">1900.00</price><price country="DE" currency="USD">1900.00</price><price country="AE" currency="USD">1900.00</price><price country="SI" currency="USD">1900.00</price><price country="CH" currency="USD">1900.00</price><price country="IT" currency="EUR">1900.00</price></pricelist><miles/></course>