Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours (3 days)
Course Outline
Introduction to Incident Handling
- Understanding cybersecurity incidents
- Objectives and advantages of incident handling
- Incident response standards and frameworks (such as NIST, ISO)
Incident Response Process
- Preparation and strategic planning
- Detection and analytical review
- Classification and priority setting
Containment Strategies
- Comparing short-term and long-term containment
- Techniques for network segmentation and isolation
- Stakeholder coordination and notification protocols
Eradication and Recovery
- Identifying root causes
- System restoration and patch management
- Post-recovery monitoring
Documentation and Reporting
- Best practices for incident documentation
- Creating actionable post-mortem reports
- Key takeaways and metrics for continuous improvement
Incident Response Tools and Technologies
- SIEM systems and log analysis utilities
- Endpoint Detection and Response (EDR)
- Automation and orchestration in incident response
Tabletop Exercises and Simulations
- Interactive incident scenarios
- Team coordination drills
- Assessing the effectiveness of responses
Summary and Next Steps
Requirements
- Fundamental knowledge of IT security principles
- Knowledge of network protocols and system administration
- Recognition of cybersecurity threats and vulnerabilities
Target Audience
- IT security analysts
- Members of incident response teams
- Cybersecurity operations specialists
Testimonials (2)
Clarity and pace of explanations
Federica Galeazzi - Aethra Telecomunications SRL
Course - AI-Powered Cybersecurity: Advanced Threat Detection & Response
It did give me the insight what I needed :) I am starting teaching on a BTEC Level 3 qualification and wanted to widen my knowledge in this area.