Going deeper into SentinelOne: Advanced use of the Singularity environment for proactive identification of IOCs
SentinelOne is the first AI security platform designed to protect your entire business.
Sign up for our next in-person SentinelOne technical session in which we will address different topics with the interactive participation of attendees.
Agenda
- Welcome and introduction to the Training session
- Topics that will be addressed in the session, with interactive participation of attendees.
- Ranger Insights
- Requirements
- Initial configuration and customization of ports to detect
- How does Ranger deploy new agents centrally?
- Configuration of deployment keys for Windows and Linux
- Identification of unprotected devices
- Expanded capabilities
- Extended vulnerability scanning (OS)
- Maturity of CVEs exploit code
- Creation of alerts when new devices appear on the network
- Singularity Identity Security
- How can we increase the security of our Active Directory and the identities of the users present in it?
- Mitigation of weaknesses at the configuration level through scripts generated by the tool
- How can Singularity identity Security help us proactively against attacks directed against Active Directory?
- Singularity Data Lake
- How can we detect and identify Indicators of Compromise (IOC) by carrying out Advanced Threat Hunting tasks?
- Advanced custom dashboards
- STAR Custom Rules
- PurpleAI: An intelligent assistant
- Cloud Native Security
- What security capabilities does Cloud Native Security offer?
- How can we increase the security level of our Cloud environments using CNS?
- End of session
- Ranger Insights
Who is this training for?
People who already know the SentinelOne solution and want to know the new features and features in depth to get the most out of the tool