When you enroll in this course, you'll also be enrolled in this Specialization.
Learn new concepts from industry experts
Gain a foundational understanding of a subject or tool
Develop job-relevant skills with hands-on projects
Earn a shareable career certificate
There are 5 modules in this course
The Cyber Incident Response course will give students an understanding of how incidents are responded to at a high level, as well as allow them to build important technical skills through the hands-on labs and projects.
This course starts with a high-level discussion of what happens at each phase of responding to an incident, followed by a technical deep dive into some of the more exciting parts of memory, network, and host analysis and forensics. This course is for anyone wishing to apply learned forensics and offensive knowledge such as ethical hacking to the incident response process.
Witness the incident response process from the perspective of a responder using real tools of the trade to detect, contain, and investigate cyber incidents, and eradicate threats. Follow the instructor as he examines two realistic scenarios: one of a data breach and the other of an incident that is still ongoing.
What's included
6 videos
Show info about module content
6 videos•Total 100 minutes
Network forensics with Zeek: conn.log•20 minutes
Network forensics with Zeek: http.log•13 minutes
Network forensics with Zeek: dns.log•11 minutes
Network forensics with Zeek: putting them together•29 minutes
Introduction to Wireshark•13 minutes
Network forensics with Wireshark•15 minutes
Memory Forensics
Module 2•1 hour to complete
Module details
What's included
2 videos
Show info about module content
2 videos•Total 32 minutes
Memory forensics: extracting a memory dump•10 minutes
Memory forensics: extracting artifacts and IOCs with Volatility•22 minutes
Incident Response Scenario 1: Data Breach/Hacking Incident
Module 3•1 hour to complete
Module details
What's included
3 videos
Show info about module content
3 videos•Total 59 minutes
Data breach/hacking incident: Investigation•24 minutes
Data breach/hacking incident: Containment•24 minutes
Data breach/hacking incident: Eradication/Validation•12 minutes
Incident Response Scenario 2: Live Ongoing Hacking Incident
Module 4•1 hour to complete
Module details
What's included
2 videos1 assignment
Show info about module content
2 videos•Total 42 minutes
Live ongoing hacking incident: Detection/Investigation•22 minutes
Live ongoing hacking incident: Investigation/Containment•20 minutes
1 assignment•Total 30 minutes
Understanding the Incident Response process and tools•30 minutes
Incident Response Scenario 3: SolarWinds
Module 5•7 minutes to complete
Module details
The Solarwinds Supply Chain Attack was a significant and shocking punch to the cybersecurity world. It marked the first time we'd seen in a supply chain attack in public executed at such a large scale. One of the top cybersecurity firms in the world ended up being compromised due to this attack. In this course, we will take a technical deep dive into how to look for some of the IoC's or Indicators of Compromise associated with that hack. This course will require hands-on exercises to complete the associated project. We recommend you complete the rest of the courses in this path before attempting this one as the hands-on builds from the deep dives in the rest of this path.
What's included
1 video
Show info about module content
1 video•Total 7 minutes
SolarWinds case•7 minutes
Earn a career certificate
Add this credential to your LinkedIn profile, resume, or CV. Share it on social media and in your performance review.
Instructor
Instructor ratings
Instructor ratings
We asked all learners to give feedback on our instructors based on the quality of their teaching style.
Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. Learn more at infosecinstitute.com.
"To be able to take courses at my own pace and rhythm has been an amazing experience. I can learn whenever it fits my schedule and mood."
Jennifer J.
Learner since 2020
"I directly applied the concepts and skills I learned from my courses to an exciting new project at work."
Larry W.
Learner since 2021
"When I need courses on topics that my university doesn't offer, Coursera is one of the best places to go."
Chaitanya A.
"Learning isn't just about being better at your job: it's so much more than that. Coursera allows me to learn without limits."
Learner reviews
4.8
96 reviews
5 stars
83.33%
4 stars
12.50%
3 stars
2.08%
2 stars
2.08%
1 star
0%
Showing 3 of 96
J
JF
4·
Reviewed on Aug 7, 2022
The course material was great, but I wish that the practical files were available so that I could actually practice using the tools as directed.
S
SB
5·
Reviewed on Jul 17, 2022
excellent course, however it would have been better if cheatsheet summary of commands were shared for technical investigation part
K
KR
5·
Reviewed on May 27, 2023
I found this course to be very comprehensive. detail oriented. Very easy to follow. I would not consider this course to be listed as a Beginners course.
When will I have access to the lectures and assignments?
To access the course materials, assignments and to earn a Certificate, you will need to purchase the Certificate experience when you enroll in a course. You can try a Free Trial instead, or apply for Financial Aid. The course may offer 'Full Course, No Certificate' instead. This option lets you see all course materials, submit required assessments, and get a final grade. This also means that you will not be able to purchase a Certificate experience.
What will I get if I subscribe to this Specialization?
When you enroll in the course, you get access to all of the courses in the Specialization, and you earn a certificate when you complete the work. Your electronic Certificate will be added to your Accomplishments page - from there, you can print your Certificate or add it to your LinkedIn profile.
Is financial aid available?
Yes. In select learning programs, you can apply for financial aid or a scholarship if you can’t afford the enrollment fee. If fin aid or scholarship is available for your learning program selection, you’ll find a link to apply on the description page.