Building on the foundations of the previous course, Incident Response: Detection, this course guides you through key analysis phases, including deep-dive investigations, evidence triage, and log analysis. You’ll learn how to interpret endpoint and network data, distinguish between live and dead-box analysis, and use tools like Splunk, Wireshark, and EvtxECmd. By mastering techniques for analyzing PCAPs, system logs, and network activity, you'll be equipped to respond confidently to complex incidents and uncover critical forensic insights.
Incident Response: Analysis
via INE
Learn AI, Data Science & Business — Earn Certificates That Get You Hired
Power BI Fundamentals - Create visualizations and dashboards from scratch
Overview
Google, IBM & Meta Certificates – 40% Off
One plan covers every Professional Certificate on Coursera.
Unlock All Certificates
Taught by
Alexis Ahmed