Free Trial

Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.

Overview

Analysis and Monitoring

Shon Harris

The fast, powerful way to prepare for your SSCP exam!

Get all the hands-on training you need to pass (ISC)²’s tough SSCP exam, get certified, and move forward in your IT security career! In this online video, the world’s #1 information security trainer walks you through every skill and concept you’ll need to master. This online video contains over three and a half hours of training adapted from Shon Harris’s legendary five-day SSCP boot camps–including realistic labs, scenarios, case studies, and animations designed to build and test your knowledge in real-world settings!

Comprehensive coverage of SSCP domains of knowledge:

     .    Security Auditing

     .    Control Checks

     .    Network Mapping

     .    Security Monitoring Issues

     .    Event Logging

     .    Responses to Attacks

About the Shon Harris Security Series

This online video is part of a complete library of books, online services, and videos designed to help security professionals enhance their skills and prepare for their certification exams. Every product in this series reflects Shon Harris’s unsurpassed experience in teaching IT security professionals.

Category: Security

System Requirements

OPERATING SYSTEM: Windows 2000, XP, or Vista; Mac OS X 10.4 (Tiger) or later
MULTIMEDIA: DVD drive; 1024 x 768 or higher display; sound card with speakers
COMPUTER: 500MHz or higher CPU; 128MB RAM or more

Subscriber Reviews

Average Rating: 0 out of 5 rating Based on 0 Ratings

No Subscribers have provided a review for this video.

Table of Contents

Chapter/Selection

Time

Course Introduction

Play Video

00:17:16

Domain 4 – Analysis and Monitoring

Preview

00:00:47

Security Auditing

Preview

00:00:33

What Are Security Audits?

Preview

00:00:52

Why Are Security Audits Performed?

Preview

00:03:07

Audit Participant’s Role

Preview

00:01:52

Defining the Audit Scope

Preview

00:02:20

Defining the Audit Plan

Preview

00:00:46

Audit Data Collection Methods

Preview

00:03:24

Post Audit Activities

Preview

00:02:17

Controls

Preview

00:01:53

Control Checks

Preview

00:01:48

Control Checks – User Access Control

Preview

00:00:38

Control Checks – Network Access

Preview

00:02:52

Network Configurations

Preview

00:00:42

DMZ Configurations

Preview

00:03:23

Firewall Comparisons

Preview

00:04:47

Network Devices – Firewalls

Preview

00:01:51

Host Isolation – Audit Questions

Preview

00:02:21

Firewalls – Audit Questions

Preview

00:01:25

Intrusion Detection System

Preview

00:01:54

IDS – Audit Questions

Preview

00:02:10

Network Monitoring

Preview

00:01:12

Control Checks – Monitoring

Preview

00:02:01

Monitoring – Audit Questions

Preview

00:01:40

Control Checks – System Hardening

Preview

00:03:14

Patching – Audit Questions

Preview

00:01:06

Control Checks – Anti-Virus

Preview

00:01:05

Control Checks – Encryption

Preview

00:01:52

Control Checks – Logging

Preview

00:01:14

Protecting Access to System Logs

Preview

00:01:07

Audit Process

Preview

00:03:24

Security Testing

Preview

00:00:47

Overview

Preview

00:01:17

Why?

Preview

00:00:58

When?

Preview

00:01:12

Who?

Preview

00:02:29

Security Testing Goals

Preview

00:01:48

Security Testing – Tools

Preview

00:01:24

Before Carrying Out Vulnerability Testing

Preview

00:01:43

Testing for Vulnerabilities

Preview

00:01:05

Vulnerability Assessments

Preview

00:02:23

Security Testing Issues

Preview

00:05:31

Vulnerability Scanning

Preview

00:00:51

Vulnerability Scans

Preview

00:01:04

Penetration Testing (1)

Preview

00:02:27

Penetration Testing Variations

Preview

00:01:40

Types of Testing

Preview

00:03:11

Step In Attack Chart

Preview

00:04:52

Testing Steps

Preview

00:02:14

Automated Pen Testing Tools Canvasâ„¢ Operation

Preview

00:01:42

Penetration Testing (2)

Preview

00:03:15

Automated Pen Testing Tools Core Impactâ„¢ Operation

Preview

00:01:07

Test Type Chart

Preview

00:03:34

Reconnaissance

Preview

00:00:53

Reconnaissance – Social Engineering

Preview

00:00:46

Reconnaissance – WHOIS Information

Preview

00:00:42

Reconnaissance – DNS Zone Transfer

Preview

00:03:11

Network Mapping

Preview

00:01:51

Network Mapping – Host/Port Mapping

Preview

00:00:55

Vulnerability Assessment

Preview

00:01:04

Security Gateway Testing

Preview

00:00:38

Security Monitoring Testing

Preview

00:02:10

Weeding Out False Positives

Preview

00:01:17

Security Monitoring

Preview

00:00:50

Post-Testing and Assessment Steps

Preview

00:01:01

Motivation Behind Attacks

Preview

00:00:50

Intrusions

Preview

00:01:19

What Is Acceptable?

Preview

00:01:07

Security Monitoring for Everyday Life

Preview

00:00:47

Security Monitoring for Computing Systems

Preview

00:01:46

Security Monitoring Issues

Preview

00:02:47

Monitoring Terminologies

Preview

00:04:34

Intrusion Detection Systems

Preview

00:01:12

IDS Categories

Preview

00:00:55

Network-based IDS

Preview

00:01:20

Host-based IDS

Preview

00:02:33

Anomaly Detection

Preview

00:01:22

Signature-based IDS

Preview

00:01:43

IDS as a Patch for Firewall

Preview

00:01:23

Event Logging

Preview

00:01:45

Event Logging – Usefulness

Preview

00:00:53

Log Sources

Preview

00:01:24

Centralized Logging infrastructure

Preview

00:01:19

Log Reviews

Preview

00:00:47

Logging Priority

Preview

00:01:08

Secure Logging

Preview

00:01:39

Event Alerting and Interpretation

Preview

00:01:31

Accountability = Auditing Events

Preview

00:01:42

Security Monitoring Evasion

Preview

00:03:12

Obfuscation

Preview

00:01:03

Fragmentation

Preview

00:00:34

Encryption

Preview

00:02:08

Overloading

Preview

00:00:43

Slow Scans

Preview

00:00:47

Log Alteration

Preview

00:01:25

Security Monitoring Implementation Issues

Preview

00:00:47

Criticality Based Deployment

Preview

00:02:07

Maintenance and Tuning

Preview

00:00:50

Data Collection for Incident Response

Preview

00:00:59

Monitoring Response Techniques

Preview

00:01:32

Active Response Pitfalls

Preview

00:01:13

IDS

Preview

00:02:11

IDS Steps

Preview

00:01:25

Network IDS Sensors

Preview

00:02:00

Host IDS

Preview

00:01:31

Combination

Preview

00:01:37

Types of IDSs

Preview

00:02:31

Signature-Based Example

Preview

00:02:28

Behavior-Based IDS

Preview

00:03:32

Statistical Anomaly

Preview

00:01:04

Statistical IDS

Preview

00:00:45

Protocol Anomaly

Preview

00:01:44

What Is a Protocol Anomaly?

Preview

00:01:30

Protocol Anomaly Issues

Preview

00:00:48

Traffic Anomaly

Preview

00:03:47

IDS Response Mechanisms

Preview

00:01:09

Responses to Attacks

Preview

00:01:37

IDS Issues

Preview

00:01:54

Intrusion Prevention System

Preview

00:02:43

Vulnerable IDS

Preview

00:00:46

Trapping an Intruder

Preview

00:01:42

Domain 4 Review

Preview

00:01:30