This course covers network defense and incident response methods, tactics, and procedures that are in alignment with industry frameworks such as NIST 800-61r2 (Computer Security Incident Handling Guide), US-CERT's National Cyber Incident Response Plan (NCIRP), and Presidential Policy Directive (PPD)-41 on Cyber Incident Coordination. It is ideal for candidates who have been tasked with the responsibility of monitoring and detecting security incidents in information systems and networks, and for executing standardized responses to such incidents.

starstarstarstarstar_outline

* Actual course outline may vary depending on offering center. Contact your sales representative for more information.

Learning Objectives

In this course, you will identify, assess, respond to, and protect against security threats and operate a system and network security analysis platform. You will:

Assess cybersecurity risks to the organization.
Analyze the threat landscape.
Analyze various reconnaissance threats to computing and network environments.
Analyze various attacks on computing and network environments.
Analyze various post-attack techniques.
Assess the organization's security posture through auditing, vulnerability management, and penetration testing.
Collect cybersecurity intelligence from various network-based and host-based sources.
Analyze log data to reveal evidence of threats and incidents.
Perform active asset and network analysis to detect incidents.
Respond to cybersecurity incidents using containment, mitigation, and recovery tactics.
Investigate cybersecurity incidents using forensic analysis techniques.

Course Info

Not Your Location? Change

Cost: $ 3,475

Length: 5.0 days (40 hours)

Level:

Next Available Classes:

Schedule select
27
Feb
Monday
9:00 AM ET -
5:00 PM ET
Available
Schedule select
01
May
Monday
9:00 AM ET -
5:00 PM ET
Available
Schedule select
21
Aug
Monday
9:00 AM ET -
5:00 PM ET
Available
Schedule select
09
Oct
Monday
9:00 AM ET -
5:00 PM ET
Available
Loading...