SOC Analysts: Know your Event IDs!
Swipe to see the top Windows logs you can’t ignore.
Enroll Here: https://www.infosectrain.com/courses/soc-analyst-training/
2. www.infosectrain.com
Quick Glimpse of Critical Event IDs
🔍Top Event IDs to Watch (Quick Preview)
Event ID
4624
4625
4670
4688
4689
4768
Successful Logon
Failed Logon Attempt
Permissions on Object Changed
New Process Created
Process Ended
Kerberos TGT Request
Description
3. Want the Full PDF with
All 12 Event IDs + Use Cases?
📩 Comment “PDF” below and
we’ll DM you the complete guide.
To Get More Insights Through Our FREE
Courses | Workshops | eBooks | Checklists | Mock Tests
LIKE FOLLOW
SHARE