Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 14 hours
Course Outline
Navigating the Ransomware Ecosystem
- The evolution and current trends in ransomware
- Typical attack vectors, tactics, techniques, and procedures (TTPs)
- Recognizing ransomware groups and their associated affiliates
The Ransomware Incident Lifecycle
- Initial breach and lateral movement across the network
- The data exfiltration and encryption stages of an intrusion
- Communication patterns with threat actors following an attack
Negotiation Principles and Frameworks
- The core tenets of cyber crisis negotiation strategies
- Analyzing adversary motives and leverage points
- Effective communication strategies for containment and resolution
Practical Ransomware Negotiation Exercises
- Simulating negotiations with threat actors to rehearse realistic scenarios
- Handling escalation and managing time pressure during discussions
- Recording negotiation outcomes for future analysis and reference
Threat Intelligence for Ransomware Defense
- Gathering and correlating ransomware indicators of compromise (IOCs)
- Leveraging threat intelligence platforms to enhance investigations and strengthen defenses
- Monitoring ransomware groups and their active campaigns
Decision-Making Under Pressure
- Business continuity planning and legal implications during an attack
- Collaborating with leadership, internal teams, and external partners to manage the incident
- Assessing the viability of payment versus recovery pathways for data restoration
Post-Incident Improvement
- Facilitating lessons learned sessions and documenting incident reports
- Enhancing detection and monitoring capabilities to mitigate future attacks
- Fortifying systems against known and emerging ransomware threats
Advanced Intelligence & Strategic Readiness
- Developing long-term threat profiles for ransomware groups
- Incorporating external intelligence feeds into your defensive strategy
- Deploying proactive measures and predictive analysis to anticipate threats
Conclusion and Next Steps
Requirements
- A solid grasp of cybersecurity fundamentals
- Hands-on experience in incident response or Security Operations Center (SOC) workflows
- Knowledge of threat intelligence principles and associated tooling
Target Audience:
- Cybersecurity specialists engaged in incident response
- Threat intelligence analysts
- Security teams preparing for potential ransomware events
Testimonials (2)
Clarity and pace of explanations
Federica Galeazzi - Aethra Telecomunications SRL
Course - AI-Powered Cybersecurity: Advanced Threat Detection & Response
It did give me the insight what I needed :) I am starting teaching on a BTEC Level 3 qualification and wanted to widen my knowledge in this area.