Incident Response
Detect, contain, and recover from security incidents using SIEM and forensics.
0%
Confidence · no data yet
After this skill you can…
- Build an incident response playbook
- Analyse logs in Splunk or Elastic SIEM
- Perform memory and disk forensics on a compromised system
Prerequisites
Watch (10 videos)
Responding to Post-Intrusion Ransomware with Cortex XSOAR
→ Investigate ransomware attacks→ Respond to security incidents
In the Trenches: Security Operations Center
→ Develop incident response plans
Incident Response for Windows
→ Detect and analyze cyber threats in Windows→ Mitigate attacks on Windows-based systems
SANS DFIR NetWars
→ Respond to incidents with forensic analysis→ Stop data breaches with DFIR skills
Threat Hunting in 3 Easy Steps!
→ Respond to security incidents→ Contain and eradicate threats→ Recover from incidents
Incident Response and Cyber Forensics
→ Detect and analyze cybersecurity incidents→ Contain and recover from incidents→ Implement security monitoring measures
Advanced Threat Hunting and Incident Response
→ Respond to cybersecurity incidents→ Contain threats
Advanced Network Analysis and Incident Response
→ Respond to cyber threats→ Manage network incidents→ Implement security policies
CFR: Incident Analysis, Response, and Forensics
→ Analyze Incidents→ Deploy Incident Handling Architecture→ Investigate Cybersecurity Incidents
Incident Response and Digital Forensics
→ Manage cybersecurity incidents→ Investigate digital evidence→ Mitigate cyber threats
Read (10 articles)
📄
📄
📄
DeepCamp AI