This course covers network defense and incident response methods, tactics, and procedures that are in alignment with industry frameworks such as NIST 800-61r2 (Computer Security Incident Handling Guide), US-CERT's National Cyber Incident Response Plan (NCIRP), and Presidential Policy Directive (PPD)-41 on Cyber Incident Coordination. It is ideal for candidates who have been tasked with the responsibility of monitoring and detecting security incidents in information systems and networks, and for executing standardized responses to such incidents.
* Actual course outline may vary depending on offering center. Contact your sales representative for more information.
Learning Objectives
In this course, you will identify, assess, respond to, and protect against security threats and operate a system and network security analysis platform. You will:
Assess cybersecurity risks to the organization.
Analyze the threat landscape.
Analyze various reconnaissance threats to computing and network environments.
Analyze various attacks on computing and network environments.
Analyze various post-attack techniques.
Assess the organization's security posture through auditing, vulnerability management, and penetration testing.
Collect cybersecurity intelligence from various network-based and host-based sources.
Analyze log data to reveal evidence of threats and incidents.
Perform active asset and network analysis to detect incidents.
Respond to cybersecurity incidents using containment, mitigation, and recovery tactics.
Investigate cybersecurity incidents using forensic analysis techniques.
$3,475
Length: 5.0 days (40 hours)
Level:
Course Schedule:
5:00 PM ET
5:00 PM ET
5:00 PM ET