Scenario Based SOC Analyst Interview Questions and Answers | Part 1 | Security Analysts | SOC| Cyber

Поділитися
Вставка
  • Опубліковано 20 вер 2024

КОМЕНТАРІ • 27

  • @a.r.bentley61
    @a.r.bentley61 3 місяці тому +1

    This is good information. it does leave out one critical part in the beginning: whether the employee took action on the email. If the employee simply opened the email, and realized it was spam/phishing/etc, they could simply just report it, mark it as spam/phishing, allow a cyber review of the email, and then delete once in the clear. If they do take action shes giving good steps to take.

  • @sachin-tr4nc
    @sachin-tr4nc Рік тому +11

    Finally started, Thanks for starting this session, It will help alot, please include Real time SIEM Scenario questions & answer with use cases, Thanks in Advance & Have a great year ahead 🙂

  • @AI-InfoSec
    @AI-InfoSec 8 місяців тому +4

    How to start career as SOC what are the basic tools and knowledge to have while appearing for SOC Analyst

  • @sachin-tr4nc
    @sachin-tr4nc Рік тому +9

    Hi Mam,
    Can you make videos on below mentioned Topic, as in whole youtube No one has done till now,
    So i request to please make
    "How to create use cases & How to Develop use cases with correlation Rules for All SIEM"
    Thanks in Advance Have a Great year ahead.

  • @karthikmysari6526
    @karthikmysari6526 9 днів тому

    thankyou for this, have an interview tomorrow.

  • @corneliusdalton4644
    @corneliusdalton4644 21 день тому

    Very informative

  • @venkatachandrasrikanthredlam
    @venkatachandrasrikanthredlam 2 місяці тому

    Excellent session and very informative

  • @Aryan-ij3bx
    @Aryan-ij3bx 6 місяців тому +2

    Thanks for your help ❤

  • @maruthikumar9171
    @maruthikumar9171 9 місяців тому +2

    thank you help a lot of information sharing.

  • @ishwaryanarayan1010
    @ishwaryanarayan1010 10 місяців тому +2

    Thanks . Very informative videos

  • @aejazinamdar6226
    @aejazinamdar6226 10 місяців тому +2

    Hello madam, this video is really awesome. I have a question. If email is opened then it is fine. If user has accessed any attachment or links then it should be necessary to isolate. Pls confirm

  • @claudiamanta1943
    @claudiamanta1943 5 місяців тому

    Thank you. I am not an IT specialist, and all this is fascinating.
    I have a question. If that employee (who actually paid attention to the IT security training) had not opened that suspicious email, do you need to take all those steps that are hugely disruptive? Can you not contain the suspicious email and analyse it?
    I think it is more likely that you need to worry about the others in the organisation because the phishing attack might have been deployed at a larger scale and not all employees are as careful as the one who reported it. What would you do? Scan all network for that (and similar) email, isolate it, see on what devices it was open and quarantine those?
    PS- I love your Eastern European accent (is it Romanian? Hungarian?).
    Many thanks.

  • @alis518
    @alis518 4 місяці тому

    Informative video

  • @jitendraHati-x8j
    @jitendraHati-x8j 8 місяців тому +3

    These questions are relevant for which level..? L1 , L2 or L3.....

  • @ale.9479
    @ale.9479 9 місяців тому +2

    Do you guys offer classes?

  • @priyadharshini4519
    @priyadharshini4519 11 місяців тому +2

    Ma'am, If the user has not opened/accessed any contents of the email in the first question. Is it still necessary to perform the device isolation, disabling the user from AD.?

    • @cyberplatter8980
      @cyberplatter8980  10 місяців тому +1

      Hi, Priya, the user is the one who is reporting the email (so they have at least opened the email) and the analyst is sure is a malicious one in this scenario. So, the immediate action is isolation. But if the user has not opened the email at all, you don't have to consider this.

    • @vijaykala-w8f
      @vijaykala-w8f 8 місяців тому +1

      Opening email and opening attachments... Any different process for these two scenarios??

    • @abdulrameez1265
      @abdulrameez1265 7 місяців тому

      Hi Ma'am, I have googled this. "If you open an email from a scammer without interacting with it, it won’t infect your machine, but the scammer will be able to gather data to use for targeted cyber attacks. For example, the scammer may be able to gather your IP address, the Operating System (OS) that you use and your location"

  • @Praneethreddy-eg2tk
    @Praneethreddy-eg2tk Місяць тому

    can I get the introduction for secuirty anaylst

  • @saiteja2134
    @saiteja2134 2 місяці тому

    Its just like reading the text from chatgpt or google resources

  • @KrishnaKakade-g6k
    @KrishnaKakade-g6k 10 місяців тому

    Can we get pdf of these questions?

  • @sayoadeyemi5359
    @sayoadeyemi5359 4 місяці тому +1

    Very informative