К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
Network Traffic and Logs Using IDS and SIEM Tools · LearnSpace
Назад в каталог
courseraПрограммирование

Network Traffic and Logs Using IDS and SIEM Tools

Курс от Google
Начальный≈ 4.3 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

In this course, you will be provided with a conceptual overview of logs and their role in Intrusion Detection Systems (IDSs) and Security Information and Event Management tools (SIEMs). The course will discuss the general concept of an IDS and how it works to detect attacks before highlighting specific IDS and SIEM products, such as Suricata, Splunk and Google SecOps (Chronicle), respectively. You will then develop an understanding of how to access and navigate within Suricata and how basic rules are set up to provide alerts, events, and logs for malicious network traffic. This course will conclude with an introduction to Splunk and Google SecOps (Chronicle) and will showcase some of their features, including common commands. By the end of this course, you will be able to: - Discuss the importance of logs during incident investigation - Determine how to read and analyze logs during incident investigation - Describe how common intrusion detection system (IDS) tools provide security value - Interpret the basic syntax and components of signatures and logs in IDS and NIDS tools - Describe how SIEM tools collect, normalize, and analyze log data - Perform queries in SIEM tools to investigate an incident

Навыки, которые вы освоите

Network AnalysisAnomaly DetectionComputer Security Incident Management

Программа курса

4 модулей · 28 учебных материалов

01Overview of logs8 материалов

Overview of logs

Introduction to network traffic and logs using IDs and SIEM toolsВидеоThe importance of logs ВидеоBest practices for log collection and managementЧтениеTest your knowledge: Overview of logsЗадание

Учитесь у экспертов

Google Career Certificates

Преподаватель курса

Network Traffic and Logs Using IDS and SIEM Tools
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 4.3 ч

4 модулей

Язык: Английский

Субтитры: Арабский, Французский, Украинский, Бразильский португальский, Вьетнамский, Корейский, Немецкий, Индонезийский, Турецкий, Испанский, Японский

Часть программы вашего университета
Variations of logs Видео
Overview of log file formatsЧтение
Identify: Match log files to their file formatPLUGIN
Test your knowledge: Log components and formatsЗадание
02Overview of intrusion detection systems (IDS)12 материалов

Overview of intrusion detection systems (IDS)

Security monitoring with detection tools Видео Detection tools and techniquesЧтениеComponents of a detection signature ВидеоExamine signatures with SuricataВидеоExamine Suricata logsВидеоOverview of SuricataЧтениеResources for completing labsЧтениеLab tips and troubleshooting stepsЧтениеActivity: Explore signatures and logs with SuricataВнешний инструментOptional exemplar: Explore signatures and logs with SuricataВнешний инструментExemplar: Explore signatures with SuricataЧтениеTest your knowledge: Overview of intrusion detection systems (IDS) Задание
03Overview of security information event management (SIEM) tools6 материалов

Overview of security information event management (SIEM) tools

Reexamine SIEM toolsВидеоLog sources and log ingestionЧтениеQuery for events with SplunkВидеоQuery for events with Google SecOpsВидеоSearch methods with SIEM toolsЧтениеTest your knowledge: Overview of SIEM toolsЗадание
04Review: Network traffic and logs using IDs and SIEM tools2 материалов

Review: Network traffic and logs using IDS and SIEM tools

Wrap-upЧтениеCourse 7 challenge: Network traffic and logs using IDs and SIEM toolsЗадание