When you enroll in this course, you'll also be enrolled in this Specialization.
Learn new concepts from industry experts
Gain a foundational understanding of a subject or tool
Develop job-relevant skills with hands-on projects
Earn a shareable career certificate
There are 4 modules in this course
In this course, you'll focus on incident detection and response. You will learn what defines a security incident and explain the incident response lifecycle, including the roles and responsibilities of incident response teams. You will also explore how security professionals verify and respond to malicious threats.
By the end of this course, you will be able to:
- Explain the lifecycle of an incident
- Describe the tools used in the documentation, detection, and management of incidents.
- Determine the roles and responsibilities of incident response teams
- Identify the steps to contain, eradicate, and recover from an incident
This module provides an overview of detection and incident response. Learners will become familiar with the incident response lifecycle, explore the NIST framework, and understand how to use the incident handler's journal.
What's included
3 videos1 reading2 assignments1 plugin
Show info about module content
3 videos•Total 13 minutes
NIST frameworks •5 minutes
Explore the six functions of the NIST Cybersecurity Framework•4 minutes
Introduction to the incident response lifecycle •4 minutes
1 reading•Total 10 minutes
Introduction to detection and incident response•10 minutes
2 assignments•Total 16 minutes
Test your knowledge: NIST frameworks•8 minutes
Test your knowledge: The incident response lifecycle•8 minutes
1 plugin•Total 10 minutes
Explore: Apply the NIST lifecycle to a vishing scenario•10 minutes
Incident response operations
Module 2•21 minutes to complete
Module details
In this module, you'll learn about the elements of an incident response team, their responsibilities, and how to create suitable incident response plans.
What's included
2 videos1 reading1 assignment
Show info about module content
2 videos•Total 5 minutes
Incident response teams •3 minutes
Incident response plans•2 minutes
1 reading•Total 8 minutes
Roles in response •8 minutes
1 assignment•Total 8 minutes
Test your knowledge: Incident response operations•8 minutes
Incident response tools
Module 3•1 hour to complete
Module details
In this module, you'll learn about incident response tools, detection systems, and the value of documentation. You'll also explore how SIEM tools collect, normalize, and analyze log data.
What's included
3 videos3 readings2 assignments
Show info about module content
3 videos•Total 7 minutes
Incident response tools •2 minutes
Intrusion detection systems •2 minutes
Alert and event management with SIEM and SOAR tools•4 minutes
3 readings•Total 30 minutes
The value of documentation•10 minutes
Overview of detection tools •8 minutes
Overview of SIEM technology •12 minutes
2 assignments•Total 28 minutes
Test your knowledge: Detection and documentation tools •8 minutes
Test your knowledge: Management tools•20 minutes
Review: Introduction to detection and incident response
Module 4•1 hour to complete
Module details
Review everything you’ve learned and take the final assessment.
What's included
1 reading1 assignment
Show info about module content
1 reading•Total 10 minutes
Wrap-up•10 minutes
1 assignment•Total 50 minutes
Course 5 challenge: Incident and detection response•50 minutes
Earn a career certificate
Add this credential to your LinkedIn profile, resume, or CV. Share it on social media and in your performance review.
Grow with Google is an initiative that draws on Google's decades-long history of building products, platforms, and services that help people and businesses grow. We aim to help everyone – those who make up the workforce of today and the students who will drive the workforce of tomorrow – access the best of Google’s training and tools to grow their skills, careers, and businesses.
When will I have access to the lectures and assignments?
To access the course materials, assignments and to earn a Certificate, you will need to purchase the Certificate experience when you enroll in a course. You can try a Free Trial instead, or apply for Financial Aid. The course may offer 'Full Course, No Certificate' instead. This option lets you see all course materials, submit required assessments, and get a final grade. This also means that you will not be able to purchase a Certificate experience.
What will I get if I subscribe to this Specialization?
When you enroll in the course, you get access to all of the courses in the Specialization, and you earn a certificate when you complete the work. Your electronic Certificate will be added to your Accomplishments page - from there, you can print your Certificate or add it to your LinkedIn profile.
Is financial aid available?
Yes. In select learning programs, you can apply for financial aid or a scholarship if you can’t afford the enrollment fee. If fin aid or scholarship is available for your learning program selection, you’ll find a link to apply on the description page.