VMware Carbon Black Cloud: Advanced Operations and Troubleshooting

Price
$1,850.00 USD

Duration
2 Days

 

Delivery Methods
Virtual Instructor Led
Private Group

Course Objectives

  • Describe and determine use cases for integrating with VMware Carbon Black Cloud
  • Configure, automate, and troubleshoot the VMware Carbon Black Cloud Syslog Integration
  • Use VMware Carbon Black Cloud APIs to pull data with Postman
  • Install and use the VMware Carbon Black Cloud Python SDK
  • Automate operations using the VMware Carbon Black Cloud SDK and APIs
  • Identify and troubleshoot VMware Carbon Black Cloud sensor installations
  • Gather troubleshooting data within the browser to remediate or escalate problems
  • Identify and resolve sensor usage, networking, and performance problems with the VMware Carbon Black Cloud sensor

Who Should Attend?

Experienced security administrators and security analysts who are already familiar with VMware Carbon Black Cloud
  • Top-rated instructors: Our crew of subject matter experts have an average instructor rating of 4.8 out of 5 across thousands of reviews.
  • Authorized content: We maintain more than 35 Authorized Training Partnerships with the top players in tech, ensuring your course materials contain the most relevant and up-to date information.
  • Interactive classroom participation: Our virtual training includes live lectures, demonstrations and virtual labs that allow you to participate in discussions with your instructor and fellow classmates to get real-time feedback.
  • Post Class Resources: Review your class content, catch up on any material you may have missed or perfect your new skills with access to resources after your course is complete.
  • Private Group Training: Let our world-class instructors deliver exclusive training courses just for your employees. Our private group training is designed to promote your team’s shared growth and skill development.
  • Tailored Training Solutions: Our subject matter experts can customize the class to specifically address the unique goals of your team.

Course Prerequisites

Before taking this course, you should have completed the VMware Carbon Black Cloud: Plan and Deploy course.
You should also have the following understanding or knowledge:

  • Good understanding of managing and working with various Linux and Windows operating systems
  • Knowledge and working experience of security operations

Agenda

1 Course Introduction

  • Introductions and course logistics
  • Course objectives

2 VMware Carbon Black Cloud Integrations

  • Describe the integration capabilities with VMware Carbon Black Cloud
  • Determine integration use cases for VMware Carbon Black Cloud
  • Identify required components for integrating VMware Carbon Black Cloud
  • Differentiate VMware Carbon Black Cloud integration vendors

3 VMware Carbon Black Cloud Syslog Integration

  • Describe the function of the Syslog Connector
  • Generate API and SIEM keys from the Cloud console
  • Validate a successful Syslog integration
  • Describe how to automate the Syslog Connector
  • Troubleshoot problems with the Syslog integration

4 Using Postman

  • Explain the concept and purpose of an API
  • Interpret common REST API Status codes
  • Recognize the difference between platform and product APIs
  • Using the Postman Client to initiate API calls
  • Create a custom access level and respective API key
  • Create a valid API request

5 Using the VMware Carbon Black Cloud Python SDK

  • Install the VMware Carbon Black Cloud Python SDK
  • Describe the different authentication methods
  • Evaluate the best authentication method for a given task

6 Automating Operations

  • Automate basic Incident Response tasks using the VMware Carbon Black Cloud SDK and API
  • Automate basic watchlist interactions using the VMware carbon Black Cloud SDK and API

7 Sensor Installation Troubleshooting

  • Describe sensor install log collection process
  • Identify sensor install log parameters
  • Create a detailed sensor install log
  • Locate sensor install logs on an endpoint
  • Interpret sensor install success from an install log
  • Determine likely cause for install failure using sensor logs
  • Propose resolution steps for a given sensor install failure

8 VMware Carbon Black Cloud Console Troubleshooting

  • Identify sensor bypass status reasons
  • Simplify console data exports using search
  • Describe differences in Audit Log detail levels
  • Locate built-in browser tools
  • Gather console diagnostics logs from a browser
  • Review console diagnostics logs

9 Sensor Operations Troubleshooting

  • Identify available types of diagnostic logs
  • Gather appropriate diagnostic logs for a given issue
  • Identify steps for resolving software interoperability problems
  • Identify steps for resolving resource problems
  • Identify steps for resolving network problems
 

Get in touch to schedule training for your team
We can enroll multiple students in an upcoming class or schedule a dedicated private training event designed to meet your organization’s needs.

 



Do You Have Additional Questions? Please Contact Us Below.

contact us contact us 
Contact Us about Starting Your Business Training Strategy with New Horizons