К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
Introduction to Google Security Operations (SIEM) · LearnSpace
Назад в каталог
courseraПрограммирование

Introduction to Google Security Operations (SIEM)

Курс от Google Cloud
Начальный≈ 6.4 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

This course provides a comprehensive, end-to-end exploration of Google SecOps SIEM, guiding learners from foundational concepts to advanced investigation and detection engineering. Participants will gain hands-on experience with data ingestion, normalization, RBAC configuration, searching, and dashboarding using both legacy and native capabilities. Through structured modules, demos, and curated examples, the course emphasizes real-world investigation workflows, UDM-based analytics, and YARA-L rule development. By the end of the course, learners will be equipped to operationalize SIEM effectively within their environment and build scalable processes for detection, investigation, and reporting.

Навыки, которые вы освоите

Security Information and Event Management (SIEM)Role-Based Access Control (RBAC)Threat DetectionDashboard CreationData Import/ExportCyber Threat HuntingIncident ResponseData PipelinesData MappingSecurity ControlsData ModelingData IntegrationComputer Security Incident ManagementIdentity and Access Management

Программа курса

5 модулей · 58 учебных материалов

01Intro to SIEM9 материалов

Intro to SIEM

Intro to SIEM: SIEM OverviewВидеоIntro to SIEM: SIEM Supported Data Ingestion Methods (Overview)ВидеоIntro to SIEM: Configuring RBAC (SIEM) - RBAC OverviewВидеоIntro to SIEM: UDM OverviewВидеоIntro to SIEM: Pipeline & Normalization

Учитесь у экспертов

Google Cloud Training

Преподаватель курса

Introduction to Google Security Operations (SIEM)
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 6.4 ч

5 модулей

Язык: Английский

Субтитры: Арабский, Французский, Итальянский, Корейский, Индонезийский, Испанский, Японский

Часть программы вашего университета
Видео
Intro to SIEM: Methods of Searching (SIEM) OverviewВидео
Intro to SIEM: Visualizations OverviewВидео
Intro to SIEM: Detection Engine OverviewВидео
Intro to SIEM: Knowledge CheckЗадание
02SIEM Setup20 материалов

Overview

SIEM Setup: SIEM Data Ingestion - Data Collection using Direct IngestionВидеоSIEM Setup: SIEM Data Ingestion - Collecting Logs Using Third Party APIsВидеоSIEM Setup: SIEM Data Ingestion - Collecting Logs Using Cloud Storage BucketsВидеоSIEM Setup: SIEM Data Ingestion - Cloud Ingestion - Streaming ServicesВидеоSIEM Setup: SIEM Data Ingestion - Cloud Ingestion - Feed ManagementВидеоSIEM Setup: SIEM Data Ingestion - On-Prem Data Collection: OverviewВидеоSIEM Setup: SIEM Data Ingestion - On-Prem Data Collection: BindPlane Deployment PatternsВидеоSIEM Setup: SIEM Data Ingestion - On-Prem Data Collection: BindPlane ConfigurationВидеоSIEM Setup: Configuring RBAC (SIEM) - Feature RBACВидеоSIEM Setup: Configuring RBAC (SIEM) - Configuring Feature RBACВидеоSIEM Setup: Configuring RBAC (SIEM) - Data RBACВидеоSIEM Setup: Configuring RBAC (SIEM) - Scopes & LabelsВидеоSIEM Setup: Configuring RBAC (SIEM) - Implementing & Managing Data RBACВидеоSIEM Setup: Normalization - Configuration-based Normalization (parsing flow, structure, functions)ВидеоSIEM Setup: Normalization - Data extraction (formatted & grok)ВидеоSIEM Setup: Normalization - Data manipulationВидеоSIEM Setup: Normalization - Completed Parser ReviewВидеоSIEM Setup: Normalization - Parser Management & Types of ParsersВидеоSIEM Setup: Normalization - Parser Extension DemoВидеоSIEM Setup: Knowledge CheckЗадание
03SIEM Investigation7 материалов

Overview

SIEM Investigation: Raw Log SearchВидеоSIEM Investigation: UDM Schema & Field FamiliesВидеоSIEM Investigation: UDM SearchВидеоSIEM Investigation: Data Tables IntroductionВидеоSIEM Investigation: UDM Statistical Search & AggregationВидеоSIEM Investigation: UDM Search DemoВидеоSIEM Investigation: Knowledge CheckЗадание
04SIEM Dashboards6 материалов

Overview

SIEM Dashboards: Dashboards Introduction & Curated ContentВидеоSIEM Dashboards: Building a Yara-L queryВидеоSIEM Dashboards: Dashboard FilteringВидеоSIEM Dashboards: Native Dashboards Advanced functionalitiesВидеоSIEM Dashboards: SIEM Legacy DashboardsВидеоSIEM Dashboards: Knowledge CheckЗадание
05SIEM Detections16 материалов

Overview

SIEM Detections: Curated Detection Categories, Rule Sets, DependenciesВидеоSIEM Detections: YARA-L Rule Construction, Structure, & VariablesВидеоSIEM Detections: Regex string matching, Reference Lists, repeated fieldsВидеоSIEM Detections: YARA-L FunctionsВидеоSIEM Detections: Optional Sections (Match, Outcome, Options)ВидеоSIEM Detections: Single event ruleВидеоSIEM Detections: Multiple event ruleВидеоSIEM Detections: Single vs Multi-event rulesВидеоSIEM Detections: Composite rules OverviewВидеоSIEM Detections: Entity ContextВидеоSIEM Detections: Leveraging the Entity Graph in RulesВидеоSIEM Detections: Rule TestingВидеоSIEM Detections: From Events to AlertsВидеоSIEM Detections: Methods for Optimizing YARA-LВидеоSIEM Detections: Knowledge CheckЗаданиеAdditional resources document (Course hyperlinks)Чтение