Cyber Security and Incident Response for Managers
Upskilling Course, 40 Academic Hours
Apply Incident Response Aspects and Methodologies in Theory and Practice
- Level: Advanced
Designed for cybersecurity managers who are tasked with meeting an ever-growing need for managing security incidents, this course provides an introduction to Incident Response and teaches participants how to handle and manage common security incidents. Attending this course will prepare you and your organization’s cybersecurity team to handle, investigate, and act according to common incident response standards such as the NIST Incident Response Plan and the MITRE Attack frameworks.
By enrolling in this course, you'll be able to manage and coordinate an effective response to cyber security incidents.
Who Is This Course For?
- Security and IT decision makers
- CISOs
- Incident responders and team leaders
- SOC and security managers
- Cybersecurity leaders
- System administrators
- Cyber architects
- Consultants
Prerequisites
- Basic knowledge of Microsoft Operating Systems
- Understanding of networks and protocols
- Knowledge of monitoring and security devices
- IT background
Learning Objectives
- Understand the Incident Response plan and methodologies
- Execute a security preparation plan
- Gain familiarity with detecting, identifying, and containing the most common cybersecurity incidents.
- Understand Risk Management concepts and terminology
- Learn about the NIST Risk Management Framework (NIST-RMF)
What You'll Get...
- Course presentation as a PDF file
- Cheat sheets and useful documentation
- “Swiss Army Knife” - 3Gb of IR tools
- 16 hours of practical learning experience through hands-on activities
- A Wawiwa certificate upon successful completion of the course
Professional Supervisor and Instructors
Supervising all Wawiwa Cyber courses is Mr. Nadav Nachmias, Head of Cybersecurity Programs at Wawiwa.
The course instructors are cybersecurity professionals with hands-on experience as well as training skills. The technical level of the course can be adjusted according to the audience.
Nadav Nachmias
Head of Cybersecurity Programs
Nadav is a Cybersecurity Specialist with over 15 years of experience, focusing on Cybersecurity strategies, architecture, and workforce empowerment. His practical experience made it intuitive for him to develop diverse training programs and materials in several Cybersecurity fields (including Cybersecurity Management, Incident Handling and Response, and Cyber Forensics).
What Do Graduates Have to Say?
Course Syllabus
The Security Operations Center (4 Theoretical Hours)
- Types of SOCs and their Operational Models
- Analyst Roles in SOCs
- SOCs and the Business
The Technological Building Blocks of SOCs (3 Theoretical Hours, 5 Practical Hours)
- Introduction to SIEM Operations
- Understanding Logs and Log Collection
- Workflow (Collection, Correlation, Alerting, and Querying)
- Introduction to Automation
Principles and Processes of Incident Response (2 Theoretical Hours, 4 Practical Hours)
- Methodological Approach to Incident Response (NIST)
- Incident Response Lifecycle
- Alerts Creation (Detection)
- Querying Events Data (Discovery)
Incident Response and Digital Forensics (4 Theoretical Hours, 2 Practical Hours)
- The Role of Digital Forensics in IR
- The Process of Digital Forensics Investigations
Introduction to Cyber Threat Intelligence (2 Theoretical Hours, 2 Practical Hours)
- How CTI can support IT
- Fundamentals of Threat Intelligence Gathering and Analysis
- Practicing Online and Offline Tools
Introduction to Risk Management Framework (7 Theoretical Hours)
- Overviewing the Framework
- Initiation of Organizational Preparations
- Business Stakeholders and Assets
Risk Management Framework and Steps (2 Theoretical Hours, 3 Practical Hours)
- Preparing the System
- Categorizing the System
- Preparing for a System Risk Assessment
- Use Case + Practice
Give your team the edge they need to succeed with our comprehensive courses, tailored to your specific needs.
Interested in more details?
We’d be happy to answer all your questions!