Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Introduction to Incident Handling
- Nature of cybersecurity incidents
- Objectives and advantages of effective incident handling
- Incident response standards and frameworks (NIST, ISO, etc.)
Incident Response Process
- Preparation and strategic planning
- Detection and analytical processes
- Categorization and prioritization
Containment Strategies
- Distinction between short-term and long-term containment
- Network segmentation and isolation methods
- Stakeholder coordination and notification protocols
Eradication and Recovery
- Root cause identification
- System restoration and patching procedures
- Post-recovery monitoring
Documentation and Reporting
- Best practices for documenting incidents
- Creation of actionable post-mortem reports
- Extracting lessons learned and metrics for improvement
Incident Response Tools and Technologies
- SIEM systems and log analysis utilities
- Endpoint detection and response (EDR)
- Automation and orchestration within IR
Tabletop Exercises and Simulations
- Engaging incident scenarios
- Team coordination drills
- Assessment of response effectiveness
Summary and Next Steps
Requirements
- Foundational knowledge of IT security principles
- Proficiency with network protocols and system administration
- Recognition of common cybersecurity threats and vulnerabilities
Target Audience
- IT security analysts
- Members of incident response teams
- Professionals in cybersecurity operations
21 Hours
Testimonials (2)
Clarity and pace of explanations
Federica Galeazzi - Aethra Telecomunications SRL
Course - AI-Powered Cybersecurity: Advanced Threat Detection & Response
The instructor's mastery of all the topics
Miguel Angel Jimenez Sanchez - ASP Integra Opciones
Course - MITRE ATT&CK
Machine Translated