FortiRecon Analyst

This course will help:
  • Gain proficiency in using FortiRecon to onboard clients and add seed data
  • Learn how to identify and analyze an organization’s internal and external attack surface
  • Learn methods for analyzing security incidents identified by Attack Surface Management (ASM), Brand Protection (BP), and Adversary Centric Intelligence (ACI) capabilities
  • Learn how to work with FortiRecon assets and threat reports and analyze them using various filters
  • Learn the principles of automating workflows using security orchestration and APIs

Course syllabus:

  • Introduction to FortiRecon
  • Product Overview and Initial Access
  • Modules
  • Intelligence Reports
  • Security Orchestration and APIs

You will learn:

  • Describe how to identify the attack surface
  • Differentiate between the surface web, deep web, and dark web
  • Describe the MITRE ATT&CK Matrix and Cyber Kill Chain for Enterprise
  • Describe FortiRecon use cases
  • Describe the FortiRecon license and initial access
  • Describe the FortiRecon provisioning form and seed data
  • Identify FortiRecon managed security service provider (MSSP) onboarding and prerequisites
  • Describe the FortiRecon overview page, digital risk posture, and ASM
  • Identify FortiRecon exposed services and technologies
  • Describe FortiRecon BP and ACI components
  • Describe FortiRecon reports, objectives, and data
  • Describe automation and FortiRecon Security Orchestration
  • Create and run playbooks
  • Explore APIs and examples

Pre-requisites:

This course assumes that participants have a basic understanding of network security principles and Security Operations Center (SOC) concepts.

Sign up for a course FortiRecon Analyst