ORYS Group
Home
Expertise
About Case studies Blog Careers
Cybersecurity & Digital Trust

Incident management & response (SOC / CSIRT)

Structure an incident detection and response process. An advanced-level course, 3 days (21h).

Learning objectives

  • Structure an incident detection and response process.
  • Analyse an incident and conduct a basic forensic investigation.
  • Coordinate remediation and cyber crisis communication.
  • Capitalise on incidents to strengthen the security posture.

Programme

  • SOC organisation and the incident lifecycle.
  • Monitoring, SIEM and event correlation.
  • Digital investigation and analysis of indicators of compromise.
  • Containment, eradication and recovery.
  • Cyber crisis management and communication.
  • Lessons learned and continuous improvement.

Who it's for

SOC analysts, incident-response teams, operational security managers.

Prerequisites

Knowledge of IS security and system administration.

Format

Attack simulation, crisis exercise, SOC role-play.

Cybersecurity & Digital Trust

Other courses in this track

See the full catalogue

Interested in this course?

Let's talk about your goals: our teams reply within 48 hours to help build your training plan.