SECOPS
WEEK 1 – Foundation Refresh (ITSM Core + SIR Basics)
Goal: strengthen ITSM and understand how SecOps fits in.
| Day | Topic | Key Steps | Output |
|---|---|---|---|
| 1 | ITSM Overview | Review Incident, Problem, Change, Request, Knowledge. | Summary doc of each module. |
| 2 | Incident Life-cycle | Configure sample incidents. Test states & assignment rules. | 5 demo incidents. |
| 3 | Problem & Change | Link Incident→Problem→Change. | 2 linked records. |
| 4 | Catalog & Flow Designer | Build one catalog item (Laptop Request). | Working flow. |
| 5 | Reporting | Create dashboards for open incidents. | 1 dashboard. |
| 6 | SIR Introduction | Read SIR module structure, incident types, phases. | Notes on SIR life-cycle. |
| 7 | Review + Quiz | Create quick quiz sheet & answer. | Self-assessment. |
WEEK 2 – SIR Configuration & Practice
Goal: learn SIR workflows and data structure.
| Day | Topic | Key Steps | Output |
|---|---|---|---|
| 8 | Security Incident Table | Study sn_si_incident schema. Create sample records. | 3 test records. |
| 9 | Detection Sources | Configure email or manual trigger for SIR. | 1 detection rule. |
| 10 | Assignment Rules | Auto-assign based on category or severity. | Business Rule. |
| 11 | Workflow Automation | Build Flow for new Security Incidents. | Flow executed. |
| 12 | Tasks & Child Incidents | Learn task relationship, containment & eradication tasks. | Linked tasks. |
| 13 | Closure Code & Reporting | Add closure conditions, make a security report. | 1 report. |
| 14 | Recap | Review all SIR components. | Consolidated notes. |
WEEK 3 – Integration & Advanced Practice
Goal: simulate realistic security workflows.
| Day | Topic | Key Steps | Output |
|---|---|---|---|
| 15 | Integrations overview | Understand connection to tools like Splunk or email. | Diagram of flow. |
| 16 | Notifications | Build notification on “Security Incident = Critical”. | Tested mail. |
| 17 | SLA / Priority Matrix | Create SLA for critical incidents. | SLA working. |
| 18 | Security Tasks | Automate follow-up tasks for analysis & recovery. | Task flow. |
| 19 | Knowledge Articles | Link RCA and best practice docs. | 2 KBs. |
| 20 | Dashboard & PA | Build PA widgets for SIR. | 1 dashboard. |
| 21 | Review | Mock walk-through of end-to-end case. | Documentation. |
WEEK 4 – Job Preparation
Goal: make profile and portfolio job-ready.
| Day | Topic | Key Steps | Output |
|---|---|---|---|
| 22 | Resume update | Add “ServiceNow ITSM + SIR Support Analyst”. | Final resume. |
| 23 | Mini-project | Create one complete “Phishing Incident” demo. | Project summary. |
| 24 | Portfolio | Capture screenshots, write-up steps. | PDF portfolio. |
| 25 | Interview prep | Prepare 20 Q&A for ITSM + SIR. | Study sheet. |
| 26 | Optimize headline & posts about your lab. | Updated profile. | |
| 27 | Mock Interview | Practice scenario answers aloud. | Feedback notes. |
| 28 | Apply | Send to ServiceNow partners, support vendors, MSSPs. | 10 applications/day. |
Comments
Post a Comment