Learning goals
- Understand how most security incidents are detected.
- Secure evidence after detecting an incident.
- Acquire file-system, memory, and network evidence.
- Interact with local and international CERTs.
- Balance remediation with incident-response requirements.
Audience and prerequisites
This course is intended for IT department staff, managers, and local incident response teams. Basic knowledge of operating systems is required.
Practical information
- Duration: 3 hours
- Languages: English, French, German, or Luxembourgish