CertNexus Incident Response for Business Professionals (IRBIZ)

Description

This course covers incident response methods and procedures are taught in alignment with industry frameworks such as US-CERT’s NCISP (National Cyber Incident Response Plan), and Presidential Policy Directive (PPD) 41 on Cyber Incident Coordination Policy. It is ideal for candidates who have been tasked with managing compliance with state legislation and other regulatory requirements regarding incident response, and for executing standardized responses to such incidents. The course introduces procedures and resources to comply with legislative requirements regarding incident response.

You will:

  • Explain the importance of best practices in preparation for incident response
  • Given a scenario, execute incident response process
  • Explain general mitigation methods and devices
  • Assess and comply with current incident response requirements

Lesson 1: Assessment of Information Security Risks

  • The Importance of Risk Management
  • Integrating Documentation into Risk Management

Lesson 2: Response to Cybersecurity Incidents

  • Deployment of Incident Handling and Response Architecture
  • Containment and Mitigation of Incidents
  • Preparation for Forensic Investigation as a CSIRT

Lesson 3: Investigating Cybersecurity Incidents

  • Use a Forensic Investigation Plan
  • Securely Collect and Analyze Electronic Evidence
  • Follow Up on the Results of an Investigation

Lesson 4: Complying with Legislation

  • Examples of Legislation (if this is covered in above topics, no need to include here) GDPR, HIPPA, Elections
  • Case study- Incident Response and GDPR (Using GDPR legislation, create a response that is compliant with it - this could be discussion-based activity as well.)

Lesson 5: State Legislation Resources and Example

  • Search terms to find state legislation
  • Using NYS as example use the NYS Privacy Response act or other legislation to create a similar case study as previous.
  • Provide answers on when to use federal versus state and do you have to follow both?

Similar courses

This class is a special offering run in conjunction with AIS. Course pricing includes CISSP exam voucher, supporting resources, practice tests, and Logical Operations test pass guarantee.

More Information

This is a 10 day CompTIA Security+ course. The first day and a half will be spent reviewing networking fundamentals content, and the remaining eight and a half days are spent doing a deeper dive into Security+ than the average CompTIA Security+ available in today's market.

More Information

This class is a special offering run in conjunction with AIS. Course pricing includes CISSP exam voucher, supporting resources, practice tests, and Logical Operations test pass guarantee.

More Information