NSE5 – FortiSIEM

In this three-day course, you will learn how to use FortiSIEM, and how to integrate FortiSIEM into your network awareness infrastructure. You will learn about initial configurations, architecture, and the discovery of devices on the network.
You will also learn how to collect performance information and aggregate it with syslog data to enrich the overall view of the health of the environment.
Additionally, you will learn how you can use the configuration database to greatly facilitate compliance audits.

Virtual Training or e-Learning?

We offer flexibility. You can choose from our selection of in-class courses as well as online courses.

Try a live virtual course

Target group

The FortiSIEM course is designed for IT and security professionals responsible for the day-to-day operation, administration, and tuning of . It is particularly suitable for specialists involved in security monitoring, log management, incident management, and overall IT infrastructure health monitoring.

  • SOC Analyst / Security Analyst
  • SIEM Administrator
  • IT Operations / Monitoring Specialist
  • Security / Infrastructure Engineer
Target group

What will you learn

  • Identify business drivers for using SIEM tools
  • Describe SIEM and PAM concepts
  • Describe key features of FortiSIEM
  • Understand how collectors, workers, and supervisors work together
  • Work with multitenancy
  • Configure notifications
  • Create new users and custom roles
  • Describe the discovery process

Agenda

  • Introduction
  • SIEM and PAM Concepts
  • Discovery and FortiSIEM Agents
  • FortiSIEM Analytics
  • CMDB Lookups and Filters
  • Group By and Data Aggregation
  • Rules and MITRE ATT&CK
  • Incidents and Notification Policies
  • Reports and Dashboards
  • Maintaining and Tuning
  • Troubleshooting

The FortiSIEM course is a hands-on technical training that teaches you how to deploy, configure, and operate a SIEM solution in an enterprise environment. It focuses on monitoring, event correlation, incident management, reporting, and compliance support, with an emphasis on real-world operational scenarios.

  • Block duration 90 minutes
  • Hours 24 hours
  • Refreshments Yes
  • Exam No
  • Prerequisites

    Understanding of the topics covered in the FortiGate Administrator course, or have equivalent experience.

Certification

Price of the certification exam is not included in the price of the course.

  • Number of questions: 33
  • Exam time: 60 minutes
  • Language: English
  • Exam details: exam description
Certification

System requirements

If you take the online format of this class, you must use a computer that has the following:

  • A high-speed Internet connection
  • An up-to-date web browser
  • A PDF viewer
  • Speakers or headphones
  • One of the following:
    • HTML 5 support
    • An up-to-date Java Runtime Environment (JRE) with Java Plugin enabled on your web browser

You should use a wired Ethernet connection, not a WiFi connection. Firewalls, including Windows Firewall or FortiClient, must allow connections to the online labs.

System requirements

Graduate ratings

What makes our references exceptional? They are not one-off events. Clients come back to us regularly.

View the full list of reference clients.

Your rating
*****

Not sure if this is the right courese for you? Get in touch!

For assistance please give us a call.

We are available at +420 222 553 101 Always Monday to Friday: 9am - 5pm.

*items marked with an asterisk are mandatory

Would you like a gift for your birtday?