From the course: AWS Certified Security - Specialty (SCS-C03) Cert Prep
Unlock this course with a free trial
Join today to access over 25,600 courses taught by industry experts.
Root Cause and Threat Detection - Amazon Web Services (AWS) Tutorial
From the course: AWS Certified Security - Specialty (SCS-C03) Cert Prep
Root Cause and Threat Detection
Hey guys, in this lesson, I'm going to cover root cause analysis and threat detection. So firstly, what is root cause analysis? Well, root cause analysis can refer generally to where we're trying to find the source of an issue. So it could be an application failure, it could be a network outage, it could be a variety of things. Now, in this case, the context is security. So root cause analysis in this context is the process of figuring out why a security event occurred, not just what the symptom looked like. So we know that there was something that happened, why did it happen? And so the goal is to understand the chain of events that led to the issue so we can see what caused it in the first place. And this approach will help to reveal any configurations, any settings, any controls, any actions that allowed the problem to occur in the first place. And then by finding the real cause, we can fix the underlying issue or the weakness and then try and stop it from happening again, which is…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
-
-
-
-
-
(Locked)
Section 11 - Introduction36s
-
(Locked)
AWS Incident Response Overview8m 40s
-
(Locked)
Root Cause and Threat Detection7m 35s
-
(Locked)
Automated Incident Remediation in AWS5m 24s
-
(Locked)
Security Management and Support1m 36s
-
(Locked)
Penetration Testing2m 30s
-
(Locked)
Compliance Services1m 47s
-
(Locked)
Incident Response Plans2m 43s
-
(Locked)
Detect and Respond2m 53s
-
(Locked)
Amazon Athena and AWS Glue3m 45s
-
(Locked)
Automating Security Runbooks with Amazon SageMaker AI5m 41s
-
(Locked)
Data Analysis and Incident Response Exam Cram2m 7s
-
(Locked)