In this course, you'll review NIST800-86 to learn basic forensic techniques for incident response. You'll examine management concepts needed to be known and addressed in a security policy. Finally, you'll explore the relationship between metrics and scope analysis in a SOC. This course is one of a collection that prepares learners for the 200-201: Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS) exam.
Learning Objectives
{"recognize the phases of the forensics process","identify the NIST publication that contains forensics techniques that can be integrated into incident response","recognize the steps to collecting evidence on a system when performing a computer forensics investigation"}