Opleiding: Masterclass: Threat Hunting with AI [TAI]
OVERVIEW
OBJECTIVES
- Understand modern attack techniques and how they are executed and detected
- Identify and investigate privilege escalation and identity-based attacks
- Understand Windows authentication architecture and common exploitation paths
- Apply structured investigation methods using real-world case studies
- Use Microsoft Defender for Endpoint (EDR) for threat detection and hunting
- Detect and analyze attacks on identity infrastructure
- Perform basic network, memory, and disk forensic analysis
- Leverage Microsoft Sentinel and Security Copilot in threat detection and investigation
- Combine manual and AI-assisted methods to improve threat hunting and response
AUDIENCE
This course is designed for security professionals across offensive, defensive, and hybrid roles. Analysts, hunters, SOC teams, and incident responders will learn to enhance investigations with AI-driven workflows. Red and purple teamers will strengthen adversary emulation and detection validation, while engineers and developers gain hands-on experience building AI-powered tools, pipelines, and multi-agent systems. Security leaders and architects will benefit from practical insights into securing AI systems and addressing emerging vulnerabilities.CERTIFICATION
- After completing the course, participants will receive a CQURE Certificate of Completion and will also be eligible for CPE points.
CONTENT
- Module 1: Modern Attack Techniques and Tracing Them
- Module 2: Local Privilege Escalation Techniques and Tracing Them
- Module 3: Case Study – Investigating In-Place Attacks
- Module 4: Windows Authentication Architecture & Cryptography
- Module 5: Case Study – Investigating Identity Theft
- Module 6: Attacks on Identity Infrastructure and Tracing Them
- Module 7: Microsoft 365 Defender for Endpoint (EDR)
- Module 8: Security Operations with Microsoft EDR (Defender for Endpoint) – Advanced Threat Hunting with Defender
- Module 9: Microsoft Security Copilot
- Module 10: Case Study – Detecting a Complex Threat with Microsoft Sentinel and Microsoft Copilot for Security
- Module 11: Network Forensics and Monitoring
- Module 12: Memory Dumping and Analysis
- Module 13: Disk Dumping and Analysis
€2.575
ex. BTW
Aangeboden door
Global Knowledge Network Netherlands B.V.
Onderwerp
Threat intelligence
Niveau
Looptijd
3 dagen
Taal
nl
Type product
cursus
Lesvorm
Klassikaal
Aantal deelnemers
Max: 16
Tijdstip
Overdag
Tijden en locaties
CQure Virtual English
wo 16 sep. 2026
CQure Virtual English
wo 28 okt. 2026
CQure Virtual English
wo 16 dec. 2026
Keurmerken aanbieder
Cedeo
CRKBO en BTW-vrijstelling
VOI
EXIN
ISO register
Microsoft Learning Partner
VMWare Partner
Oracle Education Partner
AgilePM - Agile Project Management (APMG)
ASL