|
Up
|
|
|
|
|
1. Introduction/
|
— |
|
|
|
10. Configuring Your SIEM/
|
— |
|
|
|
11. Analyzing Your SIEM/
|
— |
|
|
|
12. Digital Forensics/
|
— |
|
|
|
13. Analyzing Network IOCs/
|
— |
|
|
|
14. Analyzing Host-related IOCs/
|
— |
|
|
|
15. Analyzing Application-related IOCs/
|
— |
|
|
|
16. Analyzing Lateral Movement and Pivoting IOCs/
|
— |
|
|
|
17. Incident Response Preparation/
|
— |
|
|
|
18. Detection and Containment/
|
— |
|
|
|
19. Containment, Eradication, Recovery, and Post-incident Actions/
|
— |
|
|
|
2. Identify Security Control Types/
|
— |
|
|
|
20. Risk Mitigation/
|
— |
|
|
|
21. Frameworks, Policies, and Procedures/
|
— |
|
|
|
22. Enumeration Tools/
|
— |
|
|
|
23. Vulnerability Scanning/
|
— |
|
|
|
24. Analyzing Output from Vulnerability Scanners/
|
— |
|
|
|
25. Mitigating Vulnerabilities/
|
— |
|
|
|
26. Identity and Access Management Solutions/
|
— |
|
|
|
27. Network Architecture and Segmentation/
|
— |
|
|
|
28. Hardware Assurance Best Practices/
|
— |
|
|
|
29. Specialized Technology/
|
— |
|
|
|
3. Threat Intelligence Sharing/
|
— |
|
|
|
30. Non-technical Data and Privacy Controls/
|
— |
|
|
|
31. Technical Data and Privacy Controls/
|
— |
|
|
|
32. Mitigate Software Vulnerabilities and Attacks/
|
— |
|
|
|
33. Mitigate Web Application Vulnerabilities and Attacks/
|
— |
|
|
|
34. Analyzing Application Assessments/
|
— |
|
|
|
35. Cloud and Automation/
|
— |
|
|
|
36. Service-Oriented Architecture/
|
— |
|
|
|
37. Cloud Infrastructure Assessments/
|
— |
|
|
|
38. Automation Concepts and Technologies/
|
— |
|
|
|
39. Conclusion/
|
— |
|
|
|
4. Classifying Threats/
|
— |
|
|
|
5. Threat Hunting/
|
— |
|
|
|
6. Network Forensics/
|
— |
|
|
|
7. Appliance Monitoring/
|
— |
|
|
|
8. Endpoint Monitoring/
|
— |
|
|
|
9. Email Monitoring/
|
— |
|
|