Kibertəhlükəsizlik — Blue Team (Defensive Security)

Kibertəhlükəsizlik — Blue Team (Defensive Security)

Cybersecurity Blue Team kursu informasiya sistemlərinin müdafiəsi, təhlükələrin aşkarlanması və insidentlərə cavab proseslərini öyrədən praktiki proqramdır. Kurs çərçivəsində təhlükəsizlik əsasları, log analizi, SIEM anlayışı, endpoint və şəbəkə monitorinqi, zəifliklərin aşkarlanması, təhlükəsizlik hadisələrinin araşdırılması (incident response) və əsas “hardening” yanaşmaları real ssenarilər üzərində tətbiq olunur. Təlim SOC Analyst, Blue Team Analyst və Junior Cybersecurity Specialist kimi rollara hazırlıq məqsədi daşıyır və praktiki laboratoriya tapşırıqları ilə aparılır.

Tədris müddəti4 ay
Başlama tarixi2026-02-22
Tədris günləriHəftədə 2 dəfə
Tədris formatıHYBRID

Üstünlüklərimiz

Peşəkar Mentorlar

Təcrübəli mütəxəssislərdən dəstək və istiqamət

Praktiki Tədris

Yalnız nəzəriyyə deyil, real layihələr üzərində öyrənmə imkanı

Müasir Texnologiyalar

Python, AI, web proqramlaşdırma və digər aktual sahələr

Karyera Dəstəyi

CV hazırlığı, müsahibə simulyasiyaları və iş imkanlarına çıxış

Tədris proqramı

0

Module 1 — Security Fundamentals & Blue Team Architecture

  • 1.• Computer network basics — network types & topologies, devices, TCP/IP stack, core protocols (ICMP/ARP/DHCP/DNS, HTTP/HTTPS), IPv4/IPv6, subnetting • Operating systems overview — Linux fundamentals (CLI, filesystem, permissions & ownership, user/group management, package management) and Windows fundamentals • Programming & scripting essentials — foundations for tooling and automation • Cybersecurity basics & Blue Team overview — core security concepts, SOC structure and the Blue Team's role
0

Module 2 — Security Engineering

  • 1.• Blue Team lab setup & network monitoring — directory/identity services (domain environment), firewall & network segmentation • Web & perimeter defense (WAF, IDS/IPS) — web application security & common vulnerabilities, web application firewalls, intrusion detection/prevention (signature-based detection, rule creation, threat-feed integration) • SIEM deployment & log management — log collection, normalization, centralized storage, retention • Endpoint monitoring & IR tooling (EDR/XDR) — endpoint agents/sensors, endpoint detection & response capabilities • Blue Team workflows & ticketing — case management and workflow orchestration
0

Module 3 — Incident Response

  • 1.• Incident response fundamentals • IR process & phases deep dive — preparation → detection → containment → eradication → recovery → lessons learned • Network traffic & packet analysis (×2 lessons) • SIEM log analysis & attack simulation (×2 lessons) — event correlation, pattern/anomaly detection, real-time investigation • Malicious email & phishing analysis • Malicious office document analysis • Malicious PDF analysis • Threat hunting fundamentals — hypothesis-driven and indicator/TTP-based hunting • Introduction to digital forensics — evidence types (volatile/non-volatile), chain of custody, acquisition • Memory forensics & analysis • Disk forensics & DLP — file-system analysis (FAT/NTFS/EXT) and Data Loss Prevention fundamentals
0

Module 4 — Threat Detection & Automation.Threat Intelligence

  • 1.• Threat detection planning & attack simulation • Detection engineering (×3 lessons) — writing and tuning detection rules, reducing false positives • Introduction to SOAR & automation — SOAR vs. SIEM vs. EDR, key components, use cases & benefits • Automation basics & playbook design • Response workflows — automated response, integrating automation with threat-intelligence feeds • Full-cycle detection & response • Threat intelligence fundamentals & threat-actor analysis — TI types (strategic/tactical/operational), TTP mapping • OSINT techniques & threat-intelligence platforms — OSINT/HUMINT/TECHINT collection, platform & feed integration, applying intel to detection, IR and recovery

Qabaqcıl məzunlarımız

Bu kurs üçün hələ məzun məlumatı əlavə olunmayıb.

Müəllimlərimiz

Bu kateqoriyada müəllim tapılmadı.

Bazarda əməkhaqqı

1500 AZN

Junior
0–1 il təcrübə

2600 AZN

Middle
1-3 il təcrübə

4200+

Salary Plus Icon
Senior
3+ il təcrübə

Ən çox verilən suallar

  • idtech texnologiya, proqramlaşdırma və rəqəmsal bacarıqlar sahəsində təhsil verən müasir bir öyrənmə ekosistemidir.

  • Saytımızdakı 'Müraciət et' bölməsindən formu doldurmaqla qeydiyyatdan keçə bilərsiniz.

  • Dərslər həm yeni başlayanlar, həm də təcrübəsini dərinləşdirmək istəyənlər üçün uyğundur.

  • Bəli, dərslər həm onlayn, həm də sinif şəraitində keçirilir.

Kibertəhlükəsizlik — Blue Team (Defensive Security) | Kibertəhlükəsizlik Kursu — IDTECH