Google has the most amazing cybersecurity training modules and labs that give an organic and comprehensive look at Google Cloud infrastructure. Cloud infrastructure, to me, consist of a few basic principles : Cloud computing inside of the cloud environment ,understanding the relationship between and setting variables inside that environment to make using the CLI easier, eliminating the default settings that can be compromised and setting up least privilege for security, connecting VMs and instances thru service accounts and APIs and endpoints to further that Zero Trust model, which consist of using IAM to secure users and those service accounts that are connected, effectively using AI and automation not to become lazy but to further the depth in defense. Below are screenshots and my analysis of projects I completed on my GET CERTIFIED GOOGLE journey brought to you by the company itself.
During the CyberNOW, SOC Analyst NOW path, I created a TPOT in Azure Cloud using a VM and essentially left it open to be attacked. In the course of about 20 minutes. My TPOT was hit from all over the world about 180 times, as seen below.
I got splunked by attending Splunk4Rookies, a hands-on lab led by Solutions Engineer Ms. Lupe Bucio. In this lab, we worked as Splunk power user to pull data for IT Operations, DevOps, Business Analytics, Security and Fraud for the company Buttercup.
The agenda included:
💻 Creating a Splunk app
📈 Adding data
🧐 Searching and reporting
📈 Extracting a new field
🔍 Using lookups
📊 Creating a dashboard for multiple use cases
To do this we:
💻 Created an App and Add Data to Splunk.
🧐 IT Ops: Investigated successful vs unsuccessful web server requests over time.
📈 DevOps team: Showed the most common customer operating systems and which web browsers are experiencing the most failures.
📊 Business Analytics team: Showed lost revenue from the website.
🔍 Security and Fraud teams: Showed website activity by geographic location.
Splunk Enterprise is a software platform that helps businesses analyze and manage large amounts of data. It can be used to search, visualize, and analyze data from a variety of sources, including applications, devices, sensors, and websites.