Building on the foundations of the previous course, Incident Response: Detection, this course guides you through key analysis phases, including deep-dive investigations, evidence triage, and log analysis. You’ll learn how to interpret endpoint and network data, distinguish between live and dead-box analysis, and use tools like Splunk, Wireshark, and EvtxECmd. By mastering techniques for analyzing PCAPs, system logs, and network activity, you'll be equipped to respond confidently to complex incidents and uncover critical forensic insights.
Live Online Classes in Design, Coding & AI — Small Classes, Free Retakes
Master Production-Ready Machine Learning, Step by Step
Overview
Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Taught by
Alexis Ahmed