To get the most out of this book
This book can apply to all types of SOC environments, and while no specific software is required, there are multiple examples that use Log Correlation or Security Information Event Management (SIEM) tools, as well as Search Orchestration Automation and Response (SOAR) tools. This book will also cover matrices for multiple operating systems such as Windows, Linux, macOS, network, mobile, and so on, so a base understanding of those types of operating systems and environments would be helpful but not necessary.
Software/hardware covered in the book |
Operating system requirements |
MITRE ATT&CK framework |
Windows, macOS, or Linux |
SOAR tools (Insight Connect) |
|
SIEM (Splunk) |
|
Amazon Web Services (AWS) |