<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="36346" language="de" source="https://portal.flane.ch/swisscom/xml-course/opentext-2-7309" lastchanged="2025-09-19T02:17:49+02:00" parent="https://portal.flane.ch/swisscom/xml-courses"><title>ArcSight Enterprise Security Manager Advanced Analyst</title><productcode>2-7309</productcode><vendorcode>MF</vendorcode><vendorname>OpenText</vendorname><fullproductcode>MF-2-7309</fullproductcode><version>1.0</version><objective>&lt;p&gt;On completion of this course, you should be able to:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Navigate ArcSight ESM console and command center to correlate, investigate, analyze, and remediate both exposed and obscure threats.&lt;/li&gt;&lt;li&gt;Construct ArcSight variables to provide advanced analysis of the event stream.&lt;/li&gt;&lt;li&gt;Develop ArcSight lists and rules to allow advanced correlation activities.&lt;/li&gt;&lt;li&gt;Optimize event-based data monitors to provide real-time viewing of event traffic and anomalies.&lt;/li&gt;&lt;li&gt;Design new report templates and create functional reports.&lt;/li&gt;&lt;li&gt;Find events through the search tools.&lt;/li&gt;&lt;/ul&gt;</objective><audience>&lt;p&gt;This course is intended for Analysts and Content Engineers who:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Define their organization&amp;rsquo;s security objectives&lt;/li&gt;&lt;li&gt;Build or using advanced content to correlate, view and respond to those security objectives&lt;/li&gt;&lt;/ul&gt;</audience><contents>&lt;ul&gt;
&lt;li&gt;Create ArcSight Variables&lt;/li&gt;&lt;li&gt;Develop ArcSight Lists and Rules&lt;/li&gt;&lt;li&gt;Create Data Monitors and Dashboards&lt;/li&gt;&lt;/ul&gt;</contents><objective_plain>On completion of this course, you should be able to:


- Navigate ArcSight ESM console and command center to correlate, investigate, analyze, and remediate both exposed and obscure threats.
- Construct ArcSight variables to provide advanced analysis of the event stream.
- Develop ArcSight lists and rules to allow advanced correlation activities.
- Optimize event-based data monitors to provide real-time viewing of event traffic and anomalies.
- Design new report templates and create functional reports.
- Find events through the search tools.</objective_plain><audience_plain>This course is intended for Analysts and Content Engineers who:


- Define their organization’s security objectives
- Build or using advanced content to correlate, view and respond to those security objectives</audience_plain><contents_plain>- Create ArcSight Variables
- Develop ArcSight Lists and Rules
- Create Data Monitors and Dashboards</contents_plain><duration unit="d" days="4">4 Tage</duration><pricelist><price country="DE" currency="EUR">3200.00</price></pricelist><miles/></course>