ArcSight ESM 7.x Administrator and Analyst Certified Professional Exam

201951

Intermediate Certifications

Micro Focus | Micro Focus Community

This ArcSight Certified Professional exam tests user’s skill and knowledge on the ArcSight console and ArcSight Command Center to monitor security events, configure ESM, and manage users as well as ESM network intelligence resources.
Details

Share

Related products

Description

Exam Topics

  • Discuss what ArcSight ESM is and how it fits into a SOC
  • List the problems ESM can solve
  • Discuss basic processes to make an ESM installation successful
  • Describe the basic ArcSight components
  • Identify basic user roles within an ArcSight installation
  • Discuss how to navigate to the user interface
  • Identify the appropriate types of users for Command Center
  • Discuss what information can be obtained from Command Center
  • Discuss the help function
  • Use Command Center to gain information about the ESM deployment
  • Install the ESM console
  • Create a knowledge base article and view it in a browser
  • Create a new reference file
  • Customize the console
  • Define the purpose of a connector
  • Describe normalization
  • List functions of a SmartConnector
  • Describe the network mode
  • How to use marketplace packages/use cases
  • Describe the ArcSight event schema
  • Describe what a field set is•Describe an Active Channel
  • Define a filter
  • Describe the purpose of a filterModule8: Dashboards & Data Monitors
  • Identify Data Monitor types and functions
  • Access and use dashboards
  • Modify dashboard Data Monitor layouts
  • Create and validate rule behavior
  • Create and validate brute force login attempt and successful rules
  • Create and validate Active and Session List integration rules
  • Manage users from the console •Access and modify global users
  • Describe the operation of ArcSight notifications
  • Configure ArcSight notifications
  • Define a case
  • Access and manage cases
  • Define Query Viewers
  • Explain the advantages of using Query Viewers
  • Create drilldowns, baselines, reports & dashboard views
  • Describe a report
  • Run, view and save a report
  • Manage archived reports
  • Peer ESMs
  • Perform a search on a peer
  • Create a package and sync to a peer
  • Manually push a package
  • Verify successful distribution of a package
  • Describe how keyword, field-based and pipeline searches are performed
  • Describe how search results are displayed
  • Use the unified search page to initiate any type of search
  • Use search helper and search builder features
  • Load, modify, and save search filters and saved searches
  • Enable peer ESM and Logger instances

Details

Course
ESM200-700p1-ASP 7.0
More info Less info
Related products
Course outline

Audience:
ESM Security Analysts and Administrators

Delivery Type:
Certification Exam

Duration:
2 hour, 30 minutes

Languages
English

Resources

Unsubscribe from notifications

You are receiving release updates for this course because you have subscribed to the following products:
If you unsubscribe, you will no longer receive any notifications for these products.
Tip: to update your subscription preferences, go to Manage Subscriptions from your Dashboard, uncheck the products you no longer want to receive notifications for, and click 'Save'.

Marketplace Terms of Service

In order to continue, you must accept the Marketplace Terms of Service and Micro Focus Terms of Service
Since you are downloading an app from the Micro Focus unified Marketplace using an Access Manager account, you need to also accept the Micro Focus Marketplace Terms of Service before you can continue. Use the link to review the Marketplace Terms of Service. Once complete check the, "I accept the Marketplace Terms of Service and the Micro Focus Terms of Service" box below and click accept to continue your download.


Your download has begun...

Your download has begun

Related content and resources

Your browser is not supported!

Please upgrade to one of the following broswers: Internet Explorer 11 (or greater) or the latest version of Chrome or Firefox

release-rel-2020-7-1-2885 | Thu Jul 9 00:27:49 PDT 2020