This instructor led lab will walk attendees through a purple teaming exercise with Cisco XDR. Each attendee will be assigned a pod with test machines and Cisco Security tools pre-deployed. Starting with red team activities attendees will gain initial access to a victim machine using a phishing email and the proceed to launch payloads using a variety of MITRE TTP's. After running an attack attendees will start blue team activities to review the detections in Secure Endpoint, Secure Firewall, and Cisco XDR. Blue team activities entail sifting through device trajectory and investigating incidents using the XDR toolset. Attendees will experience running an attack and using Cisco Security tools to remediate the threats gaining hands on purple teaming experience.

 

Training Outline:

Introduction (15 mins)

Blind Eagle Attack Emulation (1 hour)

Blue Teaming for Blind Eagle Attack (1 hour)

Closing and Q&A (15 mins)

Location Map

AMER Temp Purple Teaming with Cisco XDR AMER

Event Information
Event Date 2026-01-15
Event Location Timezone America/Los_Angeles
Event Start Time 10:00 AM
Event End Time 1:00 PM
Capacity 40
Registered 0
Available Place 40
Created By Jamera
Geolocation: amer
Location Virtual