Rapid Incident ResponseiCAL Export

Cisco XDR Rapid Incident Response Workshop - Sweden

In today’s fast-paced threat landscape, organizations face sophisticated cyberattacks targeting endpoints, networks, and email systems. The ability to rapidly detect, investigate, and respond to incidents across multiple vectors is vital for maintaining a strong security posture.

This hands-on workshop is designed to empower security professionals with the practical knowledge and skills needed to orchestrate a rapid and effective incident response strategy using Cisco’s integrated security solutions, as well as Microsoft Defender for endpoint protection. The session emphasizes the importance of securing email as a primary attack vector, alongside endpoint and network security.

Participants will gain hands-on experience with a powerful ecosystem of tools, including Cisco XDR, Secure Endpoint, Umbrella, Secure Malware Analytics, Cisco Firewalls, Cisco Email Threat Defense, and Threat Intelligence. Additionally, we’ll explore how to seamlessly integrate these tools with Microsoft Defender to create a unified, robust security strategy.

Workshop Highlights:

This workshop will provide practical, hands-on experience with:

  • Cisco XDR: Consolidate and analyze telemetry from across your security ecosystem to enable faster detection and response.
  • Cisco Secure Endpoint: Detect and mitigate endpoint threats with advanced EDR capabilities powered by real-time analytics.
  • Cisco Umbrella: Protect users from malicious domains, phishing, and malware with DNS-layer security and secure web gateway features.
  • Cisco Secure Malware Analytics: Conduct in-depth malware analysis to uncover sophisticated threats and generate actionable intelligence.
  • Cisco Firewall: Strengthen perimeter defenses with comprehensive threat protection and policy enforcement.
  • Cisco Email Threat Defense: Secure email, the most targeted attack vector, by identifying and blocking phishing, business email compromise (BEC), and malicious attachments.
  • Threat Intelligence: Leverage actionable threat intelligence to enhance your ability to detect and respond to emerging threats.
  • Microsoft Defender for Endpoint: Integrate and utilize Microsoft Defender to ensure seamless endpoint protection across hybrid environments.

Key Takeaways:

  • Build a unified, streamlined incident response strategy across email, endpoint, network, and cloud environments.
  • Gain practical experience with Cisco XDR and its integration with endpoint, email, and network security tools.
  • Learn to operationalize threat intelligence to improve detection and accelerate response times.
  • Explore real-world workflows for detecting, analyzing, and neutralizing advanced threats, including ransomware, phishing, and malware.
  • Discover best practices for integrating Microsoft Defender with Cisco’s security solutions to create a multi-layered defense strategy.

Who Should Attend:

  • Security Operations Center (SOC) analysts
  • Incident response teams
  • Cybersecurity engineers and architects
  • IT professionals responsible for securing enterprise environments

Workshop Format:

  • Duration: 4-6 hours (customizable based on audience needs)
  • Structure:
    • Interactive presentations and demonstrations
    • Hands-on labs with guided exercises
    • Live threat simulations and response workflows

Prerequisites:

  • You will need to bring a laptop for this hands-on workshop
  • Basic understanding of cybersecurity concepts and frameworks.
  • Familiarity with endpoint, email, and network security tools is helpful but not required.
  • Ensure you are able to access https://ciscosecurityworkshop.com/ portal or else ask your IT Admin to allow this URL: https://ciscosecurityworkshop.com/ . If not possible, please bring your personal Laptop.
  • The workshop uses a Microsoft tenant (ciscothreathunting.ninja). This tenant should be allowed and tenant restrictions should not be applied.
  • A dual monitor / screen would be helpful for the workshop but not essential.

Why Attend?

This workshop provides a unique opportunity to strengthen your incident response capabilities by mastering the integration of Cisco and Microsoft security solutions. Learn how to secure your organization’s email systems, endpoints, and network infrastructure against today’s most sophisticated cyber threats. With actionable insights and guided hands-on labs, you’ll leave with the confidence to rapidly detect, investigate, and respond to threats across multiple attack surfaces.

Event Date 2026-01-20
Event Location Timezone Europe/Stockholm
Event Start Time 9:00 AM
Event End Time 5:00 PM
Capacity 40
Registered 18
Available Place 22
Created By Mark Pleunes
Geolocation: emea
Type of event: sales
Location Cisco Office Stockholm

Splunk + Cisco RIR

In today’s fast-paced threat landscape, organizations face sophisticated cyberattacks targeting endpoints, networks, and email systems. The ability to rapidly detect, investigate, and respond to incidents across multiple vectors is vital for maintaining a strong security posture.

This hands-on workshop is designed to empower security professionals with the practical knowledge and skills needed to orchestrate a rapid and effective incident response strategy using Cisco’s integrated security solutions, as well as Microsoft Defender for endpoint protection. The session emphasizes the importance of securing email as a primary attack vector, alongside endpoint and network security.

Participants will gain hands-on experience with a powerful ecosystem of tools, including Cisco XDR, Secure Endpoint, Umbrella, Secure Malware Analytics, Cisco Firewalls, Cisco Email Threat Defense, and Threat Intelligence. Additionally, we’ll explore how to seamlessly integrate these tools with Microsoft Defender to create a unified, robust security strategy.

Workshop Highlights:

This workshop will provide practical, hands-on experience with:

  • Cisco XDR: Consolidate and analyze telemetry from across your security ecosystem to enable faster detection and response.
  • Cisco Secure Endpoint: Detect and mitigate endpoint threats with advanced EDR capabilities powered by real-time analytics.
  • Cisco Umbrella: Protect users from malicious domains, phishing, and malware with DNS-layer security and secure web gateway features.
  • Cisco Secure Malware Analytics: Conduct in-depth malware analysis to uncover sophisticated threats and generate actionable intelligence.
  • Cisco Firewall: Strengthen perimeter defenses with comprehensive threat protection and policy enforcement.
  • Cisco Email Threat Defense: Secure email, the most targeted attack vector, by identifying and blocking phishing, business email compromise (BEC), and malicious attachments.
  • Threat Intelligence: Leverage actionable threat intelligence to enhance your ability to detect and respond to emerging threats.
  • Microsoft Defender for Endpoint: Integrate and utilize Microsoft Defender to ensure seamless endpoint protection across hybrid environments.

Key Takeaways:

  • Build a unified, streamlined incident response strategy across email, endpoint, network, and cloud environments.
  • Gain practical experience with Cisco XDR and its integration with endpoint, email, and network security tools.
  • Learn to operationalize threat intelligence to improve detection and accelerate response times.
  • Explore real-world workflows for detecting, analyzing, and neutralizing advanced threats, including ransomware, phishing, and malware.
  • Discover best practices for integrating Microsoft Defender with Cisco’s security solutions to create a multi-layered defense strategy.

Who Should Attend:

  • Security Operations Center (SOC) analysts
  • Incident response teams
  • Cybersecurity engineers and architects
  • IT professionals responsible for securing enterprise environments

Workshop Format:

  • Duration: 4-6 hours (customizable based on audience needs)
  • Structure:
    • Interactive presentations and demonstrations
    • Hands-on labs with guided exercises
    • Live threat simulations and response workflows

Prerequisites:

  • You will need to bring a laptop for this hands-on workshop
  • Basic understanding of cybersecurity concepts and frameworks.
  • Familiarity with endpoint, email, and network security tools is helpful but not required.
  • Ensure you are able to access https://ciscosecurityworkshop.com/ portal or else ask your IT Admin to allow this URL: https://ciscosecurityworkshop.com/ . If not possible, please bring your personal Laptop.
  • The workshop uses a Microsoft tenant (ciscothreathunting.ninja). This tenant should be allowed and tenant restrictions should not be applied.
  • A dual monitor / screen would be helpful for the workshop but not essential.

Why Attend?

This workshop provides a unique opportunity to strengthen your incident response capabilities by mastering the integration of Cisco and Microsoft security solutions. Learn how to secure your organization’s email systems, endpoints, and network infrastructure against today’s most sophisticated cyber threats. With actionable insights and guided hands-on labs, you’ll leave with the confidence to rapidly detect, investigate, and respond to threats across multiple attack surfaces.

Event Date 2026-01-20
Event Location Timezone America/Los_Angeles
Event Start Time 10:00 AM
Event End Time 2:00 PM
Capacity 100
Registered 8
Available Place 92
Created By Mike Simone
Geolocation: amer
Type of event: cisco-internal
Location Virtual
Event Date 2026-01-21
Event Location Timezone Asia/Kolkata
Event Start Time 8:00 AM
Event End Time 10:00 PM
Capacity 40
Registered 6
Available Place 34
Created By Mitesh Patel
Event Date 2026-01-22
Event Location Timezone Asia/Kolkata
Event Start Time 9:00 AM
Event End Time 4:00 PM
Capacity 40
Registered 2
Available Place 38
Created By Surender Kumar
Geolocation: apjc
Type of event: sales
Location Cisco Office -GURGAON 01
Event Date 2026-01-27
Event Location Timezone Asia/Colombo
Event Start Time 10:00 AM
Event End Time 3:00 PM
Capacity Unlimited
Registered 0
Created By Abhishek Bedi
Geolocation: apjc
Type of event: sales
Location Cisco Office Bangalore - Building 11

The event was cancelled. We are not longer accepting registration

Event Date 2026-01-27
Event Location Timezone Asia/Colombo
Event Start Time 10:00 AM
Event End Time 3:00 PM
Capacity Unlimited
Registered 0
Created By Abhishek Bedi
Geolocation: apjc
Type of event: sales
Location Cisco Office Bangalore - Building 11

The event was cancelled. We are not longer accepting registration

Event Date 2026-02-04
Event Location Timezone UTC
Event Start Time 10:00 AM
Event End Time 2:00 PM
Capacity 15
Registered 0
Available Place 15
Created By Phil Wood
Geolocation: emea
Type of event: pov-trial-augment
Location Virtual

Harman XDR Workshop - India

In today’s fast-paced threat landscape, organizations face sophisticated cyberattacks targeting endpoints, networks, and email systems. The ability to rapidly detect, investigate, and respond to incidents across multiple vectors is vital for maintaining a strong security posture.

This hands-on workshop is designed to empower security professionals with the practical knowledge and skills needed to orchestrate a rapid and effective incident response strategy using Cisco’s integrated security solutions, as well as Microsoft Defender for endpoint protection. The session emphasizes the importance of securing email as a primary attack vector, alongside endpoint and network security.

Participants will gain hands-on experience with a powerful ecosystem of tools, including Cisco XDR, Secure Endpoint, Umbrella, Secure Malware Analytics, Cisco Firewalls, Cisco Email Threat Defense, and Threat Intelligence. Additionally, we’ll explore how to seamlessly integrate these tools with Microsoft Defender to create a unified, robust security strategy.

Workshop Highlights:

This workshop will provide practical, hands-on experience with:

  • Cisco XDR: Consolidate and analyze telemetry from across your security ecosystem to enable faster detection and response.
  • Cisco Secure Endpoint: Detect and mitigate endpoint threats with advanced EDR capabilities powered by real-time analytics.
  • Cisco Umbrella: Protect users from malicious domains, phishing, and malware with DNS-layer security and secure web gateway features.
  • Cisco Secure Malware Analytics: Conduct in-depth malware analysis to uncover sophisticated threats and generate actionable intelligence.
  • Cisco Firewall: Strengthen perimeter defenses with comprehensive threat protection and policy enforcement.
  • Cisco Email Threat Defense: Secure email, the most targeted attack vector, by identifying and blocking phishing, business email compromise (BEC), and malicious attachments.
  • Threat Intelligence: Leverage actionable threat intelligence to enhance your ability to detect and respond to emerging threats.
  • Microsoft Defender for Endpoint: Integrate and utilize Microsoft Defender to ensure seamless endpoint protection across hybrid environments.

Key Takeaways:

  • Build a unified, streamlined incident response strategy across email, endpoint, network, and cloud environments.
  • Gain practical experience with Cisco XDR and its integration with endpoint, email, and network security tools.
  • Learn to operationalize threat intelligence to improve detection and accelerate response times.
  • Explore real-world workflows for detecting, analyzing, and neutralizing advanced threats, including ransomware, phishing, and malware.
  • Discover best practices for integrating Microsoft Defender with Cisco’s security solutions to create a multi-layered defense strategy.

Who Should Attend:

  • Security Operations Center (SOC) analysts
  • Incident response teams
  • Cybersecurity engineers and architects
  • IT professionals responsible for securing enterprise environments

Workshop Format:

  • Duration: 4-6 hours (customizable based on audience needs)
  • Structure:
    • Interactive presentations and demonstrations
    • Hands-on labs with guided exercises
    • Live threat simulations and response workflows

Prerequisites:

  • You will need to bring a laptop for this hands-on workshop
  • Basic understanding of cybersecurity concepts and frameworks.
  • Familiarity with endpoint, email, and network security tools is helpful but not required.
  • Ensure you are able to access https://ciscosecurityworkshop.com/ portal or else ask your IT Admin to allow this URL: https://ciscosecurityworkshop.com/ . If not possible, please bring your personal Laptop.
  • The workshop uses a Microsoft tenant (ciscothreathunting.ninja). This tenant should be allowed and tenant restrictions should not be applied.
  • A dual monitor / screen would be helpful for the workshop but not essential.

Why Attend?

This workshop provides a unique opportunity to strengthen your incident response capabilities by mastering the integration of Cisco and Microsoft security solutions. Learn how to secure your organization’s email systems, endpoints, and network infrastructure against today’s most sophisticated cyber threats. With actionable insights and guided hands-on labs, you’ll leave with the confidence to rapidly detect, investigate, and respond to threats across multiple attack surfaces.

Event Date 2026-02-10
Event Location Timezone Asia/Colombo
Event Start Time 8:00 AM
Event End Time 3:00 PM
Capacity 12
Registered 0
Available Place 12
Created By Abhishek Bedi
Geolocation: apjc
Type of event: sales
Location Cisco Bangalore Office