12
4 hours2 hours lecture + 2 hours hands-on labs

Security Automation and Orchestration (SOAR)

This session focuses on security automation and orchestration to improve incident response and threat hunting at scale. Students learn to build automated security workflows, develop playbooks, integrate security tools, and leverage SOAR platforms for efficient security operations.

Learning Objectives

Build automated security response workflows

Develop and deploy security playbooks

Integrate diverse security tools into cohesive workflows

Implement automated threat hunting

Measure and optimize security automation effectiveness

Topics Covered

1

SOAR fundamentals and architecture

2

Security workflow automation

3

Playbook development and testing

4

Integration patterns for security tools

5

Automated incident response

6

Python scripting for security automation

7

API integration for security platforms

8

Metrics and KPIs for automation

9

Case management and ticketing integration

Skills You'll Gain

SOAR Platform UsagePython Security ScriptingWorkflow AutomationTool IntegrationPlaybook Development

Ready to Get Started?

Join this session and advance your DevSecOps and AI security skills