Instructor-led training course
This intensive course is designed to teach the fundamental investigative techniques to help respond to today’s landscape of threat actors and intrusion scenarios.
The class is built upon a series of hands-on labs that highlight the phases of a targeted attack, key sources of evidence, and forensic analysis know-how to analyze them. Students will learn about conducting rapid triage on a system to determine if it is compromised, uncover evidence of initial attack vectors, recognize persistence mechanisms, develop indicators of compromise to further scope an incident, and more.
After completing this course, learners should be able to:
This course is intended for students with some background in conducting security operations, incident response, forensic analysis, network traffic analysis, log analysis, security assessments and penetration testing, or security architecture and system administration duties. It can also help those managing CIRT/incident response teams, or in roles that require oversight of forensic analysis and other investigative tasks.
In-classroom
5 days (in-person delivery)
Students are required to bring their own laptop that meets the following specs: