Skip to main content

Home Specialist skills Security FOR508: Advanced Incident Response, Threat Hunting and Digital Forensics

FOR508: Advanced Incident Response, Threat Hunting and Digital Forensics

  • bullet point
    Learn to detect how and when a breach occurred
  • bullet point
    Know how to quickly identify compromised and affected systems
  • bullet point
    Understand how to perform damage assessments and determine what was stolen or changed
  • bullet point
    Learn to contain and remediate incidents
  • bullet point
    Develop key sources of threat intelligence and hunt down additional breaches using knowledge of the adversary

Overview

Off the shelf (OTS)

Threat hunting and Incident response tactics and procedures have evolved rapidly over the past several years. Your team can no longer afford to use antiquated incident response and threat hunting techniques that fail to properly identify compromised systems. The key is to constantly look for attacks that get past security systems and to catch intrusions in progress, rather than after attackers have completed their objectives and done worse damage to the organisation. For the incident responder, this process is known as " threat hunting ". FOR508 teaches advanced skills to hunt, identify, counter and recover from a wide range of threats within enterprise networks, including APT nation-state adversaries, organised crime syndicates and hacktivists.

Delivery method
Face to face icon

Face to face

Virtual icon

Virtual

Digital icon

Digital

Course duration
Duration icon

45-48 hours

Competency level
Working icon

Working

Pink building representing strand 4 of the campus map
Delivery method
  • face to face icon

    Face to face

  • Virtual icon

    Virtual

  • Digital icon

    Digital

Course duration
Duration icon

45-48 hours

Competency level
  • Working icon

    Working