Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore a real-world cyber extortion case where incident responders confronted an aggressive threat group actively operating within a compromised network. Learn about the adversary's tactics, techniques, and procedures (TTPs) through a detailed attack timeline, while examining the critical containment and forensic challenges faced during live threat engagement. Discover key incident management dilemmas and decision-making processes when dealing with determined attackers who refuse to leave the environment. Gain actionable insights for incident response professionals, threat hunters, SOC analysts, and incident managers on avoiding costly mistakes during ongoing attacks, with practical guidance for managing complex cybersecurity incidents under pressure.
Syllabus
When the threat group doesn’t leave: Incident response under fire
Taught by
SANS Digital Forensics and Incident Response