Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Pluralsight

Incident Response: Network Analysis

via Pluralsight

Overview

Walking into an incident response situation can be intimidating. This course will teach you how to analyze the network data, correlate network artifacts, and begin to piece together the story of what happened.

In an incident response scenario, gathering artifacts for analysis can be stressful. In this course, Incident Response: Network Analysis, you'll learn how to analyze network artifacts in a compromised environment. First, you'll take the initial indicators from an attack and pull out relevant artifacts. Next, you'll correlate these artifacts with other phases of the attack chain, working backwards to tell the story of what happened. Finally, you'll broaden your search to look for additional lanes of compromise and determine the incident's full scope. When you're finished with this course, you'll have the skills necessary to operate as an incident response network analyst and understand how to synchronize with the other phases of incident response.

Syllabus

  • Course Overview 1min
  • Creating the Story 3mins
  • Ransomware Communication 22mins
  • Lateral Movement 17mins
  • Ground Zero 7mins
  • Network Enumeration 8mins
  • Additional Lanes 9mins

Taught by

Brandon DeVault

Reviews

4.7 rating at Pluralsight based on 21 ratings

Start your review of Incident Response: Network Analysis

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.