After you press "Request Registration" near the bottom of this form, within 30 seconds, status will be provided at the bottom of the form, you will also be contacted by phone for credit card information.

    Tech Now is pleased to have the opportunity to provide you training for "Windows Security Automation and Threat Hunting with PowerShell” at CheddarCon 2018!

    Scroll down to see the course description.

    First Name*

    Last Name*

    Your Email*

    Your Organization*

    Phone*

    Questions:

    After you press "Request Registration" on this form, within 30 seconds, status will be provided at the bottom of the form, you will also be contacted by phone for credit card information.

    Windows Security Automation and Threat Hunting with PowerShell Seminar

    Location: 400 W Wisconsin Ave, Milwaukee, WI 53203, USA

    Date: October 10, 2018 8:00am – 4:00pm

    Duration: 8 hours

    Audience: Cyber Security professionals and Windows administrators

    Attendees Environment: Laptops not required, but suggested to have better hands-on absorption of subject matter.

    Description:
    PowerShell is both a command-line shell and scripting language. Fight fires quickly using existing or custom PowerShell commands or scripts at the shell. PowerShell is made for Security Operations (SecOps) automation on Windows. This seminar does not require prior programming skills. The seminar focuses on PowerShell programming, giving a beginner skills to be productive in windows scripting to automate tasks and also remediate problems.

    Cyber Security is the objective of this seminar, and the PowerShell examples will demonstrate PowerShell capabilities that help lock down a Windows system and also report security status.

    Objectives:

    PowerShell Overview

    • Getting started running commands
    • Security cmdlets
    • Using and updating the built-in help
    • Execution policies
    • Fun tricks with the ISE graphical editor
    • Piping .NET and COM objects, not text
    • Using properties and methods of objects
    • Helping Linux admins feel more at home
    • Aliases, cmdlets, functions, modules, etc.

    PowerShell Utilities and Tips

    • Customizing your profile script
    • PowerShell remote command execution
    • Security setting across the network
    • File copy via PowerShell remoting
    • Capturing the output of commands
    • Parsing text files and logs with regex patterns
    • Parsing Security Logs
    • Searching remote event logs
    • Mounting the registry as a drive
    • Security settings in the Registry
    • Exporting data to CSV, HTML and JSON files
    • Running scripts as scheduled jobs
    • Continued Security Compliance
    • Pushing out scripts through Group Policy
    • Importing modules and dot-sourcing functions
    • http://www.PowerShellGallery.com

    PowerShell Scripting

    • PowerShell Scripting to implement Security Practices
    • Writing your own functions to automate security status and settings
    • Passing arguments into your scripts
    • Function parameters and returning output
    • Flow control: if-then, foreach, that make security decisions
    • How to pipe data in/out of your scripts for security compliance and reporting

    Attendees to this seminar, Windows Security Automation and Threat Hunting with PowerShell, will receive TechNow approved course materials and expert instruction.[/wr_text][/wr_column][/wr_row]

    Course Overview:

    This course delivers the technical knowledge, insight, and hands-on training to receive in-depth knowledge on Wireshark® and TCP/IP communications analysis. You will learn to use Wireshark to identify the most common causes of performance problems in TCP/IP communications. You will learn about the underlying theory of TCP/IP and the most used application protocols, so that you can intelligently examine network traffic for performance issues or possible Indicators of Compromise (IoC).

    Duration: 5 Days

    Audience:

    Anyone interested in learning to troubleshoot and optimize TCP/IP networks and analyze network traffic with Wireshark, especially network engineers, information technology specialists, and security analysts.

    Course Prerequisites:

    We recommend that attendees of this course have the following prerequisite:
    • Network+

    Dates/Locations:

    No Events

    Course Outline:

    DAY ONE

    Course Set Up and Analyzer Testing

    Network Analysis Overview
    Wireshark Functionality Overview
    Capturing Wired and Wireless Traffic
    Define Global and Personal Preferences for Faster Analysis
    Defined Time Values and Interpret Summaries
    Interpret Basic Trace File Statistics to Identify Trends
    Create and Apply Display Filters for Efficient Analysis

    DAY TWO

    Follow Streams and Reassemble Data
    Use Wireshark’s Expert System to Identify Anomalies
    TCP/IP Analysis Overview
    Analyze Common TCP/IP Traffic Patterns

    DAY THREE

    Graph I/O Rates and TCP Trends
    802.11 (WLAN) Analysis Fundamentals
    Voice over IP (VoIP) Analysis Fundamentals
    Network Forensics Fundamentals

    DAY FOUR

    Detect Scanning and Discovery Processes
    Analyze Suspect Traffic

    DAY FIVE

    Use Command‐Line Tools

    Next/Related Courses:

     

     

    Course Overview:

    This course, TN-385: TCP/IP Analysis & Implementation, provides students with a comprehensive technical introduction to TCP/IP & the interworkings of TCP/IP application to UNIX, Linux and Windows in a network environment.  This course begins by providing a comprehensive protocol stack analysis.  It continues with extensive hands-on exercises needed to configure TCP/IP on UNIX and Windows based networks.

    Attendees to TN-385: TCP/IP Analysis & Implementation will receive TechNow approved course materials and expert instruction.

    Dates/Locations:

    No Events

    Duration: 5 Days

    Course Objectives:

    • A thorough comprehension of each level of the protocol stack
    • Configuring UNIX & Windows to access internetworks
    • Configuring & setting up a Cisco router
    • Properly implementing subnets to avoid ongoing maintenance headaches
    • Routing & routing protocols, RIP, OSPF, and IGRP
    • How to troubleshoot a wide range of routing problems
    • All major TCP/IP application services including: FTP, TELNET, SNMP, NFS, DNS, DHCP, & WINS
    • How to avoid common internetworking problems
    • How to troubleshoot TCP/IP networks using protocol analysis techniques – snoop on Sun Workstation & Network Monitor on Windows.
    • How to design, build, configure, & manage TCP/IP internetworks
    • Applying a structured methodology for troubleshooting TCP/IP internetworks
    • ACL's on Cisco routers

    Prerequisites:

    • Students should have good end-user skills in TCP/IP (FTP, TELNET, RLOGON,  & MAIL).

    Comments

    Latest comments from students


    Liked the class?  Then let everyone know!

      

     

    Course Overview: PA-212: Palo Alto Networks Firewall Configure Extended Features (EDU-205) Training Class is a two-day course that teaches students to configure and manage the entire line of Palo Alto Networks next-generation firewalls. Students also will be instructed on the basics of implementing and managing GlobalProtect™ and active/ active high availability. Students will gain an in-depth knowledge of how to optimize their visibility and control of applications, users, and content.  This course prepares the student for Palo Alto Networks Certified Network Security Engineer (PCNSE).  Through hands-on training, students learn high end skills of how to integrate Palo Alto next-generation firewalls into their network infrastructure.  This is not a virtualized theoretical course.  This is hands-on, real world instruction, directly relevant to the DoD and Commercial implementations of Palo Alto Networks next-generation firewalls.

    Each student is issued a physical Palo Alto firewall and a Cisco layer 3 switch at their desk.  Real hardware per student for real experience and real skill development.  TechNow provides a very comprehensive client infrastructure that includes Windows, Linux, and multiple packet sniffer agents.

    This course sets up the foundation for the three day course PA-243: Palo Alto Networks Firewall Debug and Troubleshoot (EDU-311). The instructor for this course has been a lead in Unix kernel development to implement firewall and intrusion detection technologies.  Additionally, the instructor has taught several security appliance products and carries several SANS, ISC2, ISACA, Cisco, Unix, and Windows certifications.  Attendees to the PA-212: Palo Alto Networks Firewall Configure Extended Features (EDU-205) Training Course will receive TechNow approved course materials and expert instruction.

     

    Dates/Locations:

    No Events

    Duration: 2 days

    Course Objectives:   Students attending this foundational-level training course will gain an in-depth knowledge of how to configure and manage their Palo Alto Networks firewall.  Students also will be instructed on the basics of implementing and managing GlobalProtect™ and active/ active high availability. Students will gain an in-depth knowledge of how to optimize their visibility and control of applications, users, and content.

    Day 1

    • Module 0 – Introduction & Overview
    • Mod 1: Advanced Interface
      • Configuration
      • Advanced NAT
      • Policy-Based
      • Forwarding
      • Routing Protocols (OSPF)
    • Mod 2: App-ID™ –
      • Custom Applications
      • Defining New Application Signatures
      • Application Override
    • Mod 3: Advanced Content-ID™
      • Custom Threat Signatures
      • Data Filtering
      • DoS Protection
      • Botnet Report
    • Mod 4: Advanced User-ID™
      • Terminal Server Agent
      • Captive Portal
      • XML API

    Day 2

    • Mod 5: Quality of Service
      • Configuring Quality of Service
    • Mod 6: GlobalProtect™
      • Implementation of GlobalProtect
      • Install and Configure Portal, Gateway, and Agents
    • Mod 7: Monitoring and Reporting
      • Log Forwarding
      • SNMP
      • Reporting
    • Mod 8: Active/Active High Availability
      • Configuring Active/Active HA

     

    Prerequisites:

    This course is in no way associated with Palo Alto Networks, Inc.

    Comments

    Latest comments from students


    Like the class?  Then let everyone know!

    Course Overview:

    What a great course that is slightly misnamed!  This course may be labeled Security Essentials, but covers much of the subject matter of CISSP!  This course does more than just cover the basics.  TechNow takes the time to give the student hands on labs to exemplify an objective.  Security Essentials Prep Training Course sets the foundation for your security career and sets the expectation of comprehension with more detail than Security+ and more on par with CISSP.

    This course provides students skills to take courses that prepare for higher level certifications.

    Attendees to TN-929: Security Essentials  Training Course will receive TechNow approved course materials and expert instruction.

    Date/Locations:

    No Events

    Duration: 9 days

    Course Objectives:

    • 802.11 Suite of Protocols
    • Access Control Theory
    • Alternate Network Mapping Techniques
    • Authentication and Password Management
    • Contingency Planning
    • Crypto Concepts
    • Crypto Fundamentals
    • Defense-in-Depth
    • DNS
    • Firewall Subversion
    • Firewalls
    • HIDS Overview
    • Honeypots
    • ICMP
    • IDS Overview
    • Incident Handling Fundamentals
    • Information Warfare
    • Introduction to OPSEC
    • IP Packets
    • IPS Overview
    • IPv6
    • Legal Aspects of Incident Handling
    • Linux/Unix Configuration Fundamentals
    • Linux/Unix Logging and Log Management
    • Linux/Unix OS Security Tools and Utilities
    • Linux/Unix Overview
    • Linux/Unix Patch Management
    • Linux/Unix Process and Service Management
    • Mitnick-Shimomura
    • Network Addressing
    • Network Design
    • Network Hardware
    • Network Mapping and Scanning
    • Network Plumbing
    • Network Protocol
    • NIDS
    • OverviewPhysical Security
    • Policy Framework
    • Protecting Data at Rest
    • Public Key Infrastructure
    • PKI
    • Reading Packets
    • Risk Management
    • Safety Threats
    • Securing Windows Server Services
    • Steganography
    • OverviewTCPUDP
    • Virtual Machines
    • Virtual Private Networks VPNs
    • Viruses and Malicious Code
    • VoIP
    • Vulnerability Management Overview
    • Vulnerability Scanning
    • Web Application Security
    • Windows Auditing
    • Windows Automation and Configuration
    • Windows Family of Products
    • Windows Network Security Overview
    • Windows Permissions & User Rights
    • Windows Security Templates & Group Policy
    • Windows Service Packs, Hotfixes and Backups
    • Windows Workgroups, Active Directory and Group Policy Overview
    • Wireless Overview

    Prerequisites:

     

    Comments

    Latest comments from students


    User: sjsmith2262

    Instructor comments: without question, Dave Askey knows his material!!! great instructor that gave a personalized approach.

    Facilities comments: class was taught in a hotel reception area, very nice, quiet and convenient for all people


    User: synistry

    Instructor comments: Dave was great! (as always). Wealth of knowledge and a master at customizing course content to match the education level of his students. The class kept entirely in pace with where we were at as a group overall on a day to day basis.

    Facilities comments: Facilities were overall really nice. The only complaint is that the hotel / conference center had us move rooms on one occasion, and kicked us out early on two others. I would assume this is due to the last minute location change, so I don't think there is anything anyone could have done better in the situation.


    Liked the class?  Then let everyone know!