• Online, Self-Paced
Course Description
In this course, we will cover the fundamentals of incident handling, specifically how to identify security incidents and the common standards and practices for handling said incidences. This includes discussing various forensic tools, SOAR, and analysis tools/resources.

Learning Objectives

In Incident Handling Fundamentals, David Biser describes what an incident looks like and effective ways to handle an incident. There is no single definition of an incident, and it varies across standards and organizations. It is important to have a clear idea of what an incident looks like because, in more than 50% of cases, organizations are informed by a third party about a breach. The instructor discusses tool like SOAR and various analysis resources, as well as forensic tools to effectively handle incidents.

Framework Connections

The materials within this course focus on the Knowledge Skills and Abilities (KSAs) identified within the Specialty Areas listed below. Click to view Specialty Area details within the interactive National Cybersecurity Workforce Framework.