Learning objectives
- Structure an incident detection and response process.
- Analyse an incident and conduct a basic forensic investigation.
- Coordinate remediation and cyber crisis communication.
- Capitalise on incidents to strengthen the security posture.
Programme
- SOC organisation and the incident lifecycle.
- Monitoring, SIEM and event correlation.
- Digital investigation and analysis of indicators of compromise.
- Containment, eradication and recovery.
- Cyber crisis management and communication.
- Lessons learned and continuous improvement.