|
所在平台: Coursera |
课程主页: https://www.coursera.org/learn/incident-response
课程评论:没有评论
课程名称:网络事件响应 概述:网络事件响应课程旨在让学生高层次地了解事件响应的各个阶段,同时通过实践实验和项目提升重要的技术技能。课程开始时对事件响应的各个阶段进行高层次讨论,然后深入技术,探讨内存、网络和主机分析及取证的激动人心部分。本课程适合希望将所学取证和进攻性知识(如道德黑客)应用于事件响应过程的任何人。 课程大纲: 第一部分:事件响应基础 描述:本部分详细介绍了与事件响应相关的常见定义和严重性标准,特别强调学生需要理解严重性标准应基于整体组织的定义和程序。课程后半部分讲述了资产清单和识别的重要性,这是建立严重性标准的基础。所有这些要素都是为任何事件做好适当准备的前提。
Part: 1
Title:Incident Response Fundamentals
Description:This course goes into some detail with common definitions and severity criteria related to incident response, with special attention being paid to making sure the student understands that the severity criteria should be based on overall organizational definitions and procedures. The latter part of the course goes into the importance of asset inventory and identification as a basis for establishing severity criteria. All these pieces are required for proper preparation for any incident.
The Cyber Incident Response course will give students an understanding of how incidents are responded to at a high level, as well as allow them to build important technical skills through the hands-on labs and projects. This course starts with a high-level discussion of what happens at each phase of responding to an incident, followed by a technical deep dive into some of the more exciting parts of memory, network, and host analysis and forensics. This course is for anyone wishing to apply learned forensics and offensive knowledge such as ethical hacking to the incident response process.