Course Code: cih
Duration: 21 hours
Prerequisites:
  • 对IT安全概念的基本理解
  • 熟悉网路协定和系统管理
  • 了解网路安全威胁和漏洞

目标受众

  • IT安全分析师
  • 事件应对团队成员
  • 网路安全运营专业人员
Overview:

Certified Incident Handler是一门课程,提供了有效且高效地管理和应对网络安全事件的结构化方法。

这门由讲师指导的培训(线上或线下)面向中级IT安全专业人员,旨在帮助他们发展规划、分类、控制和管理安全事件所需的战术技能和知识。

培训结束后,参与者将能够:

  • 理解事件响应生命周期及其阶段。
  • 执行事件检测、分类和通知程序。
  • 有效应用遏制、根除和恢复策略。
  • 制定事后报告和持续改进计划。

课程形式

  • 互动式讲座和讨论。
  • 在模拟场景中动手实践事件处理程序。
  • 专注于检测、遏制和响应工作流程的指导练习。

课程定制选项

  • 如需根据您组织的事件响应程序或工具定制本课程,请联系我们安排。
Course Outline:

事件处理入门

  • 了解网路安全事件
  • Go事件处理的目标与益处
  • 事件回应标准与框架(NIST、ISO等)

事件回应流程

  • 准备与规划
  • 检测与分析
  • 分类与优先级划分

遏制策略

  • 短期与长期遏制
  • 网路分段与隔离技术
  • 与利益相关者的协调及通知协议

根除与恢复

  • 识别根本原因
  • 系统恢复与修补
  • 恢复后的监控

Documentation与报告

  • 事件文件最佳实践
  • 生成可操作的后续报告
  • 经验教训与改进指标

事件回应工具与技术

  • SIEM系统与日志分析工具
  • 端点检测与回应(EDR)
  • 事件回应中的自动化与协调

桌面演练与模拟

  • 互动式事件情境
  • 团队协调演练
  • 评估回应效果

总结与下一步

Sites Published:

United Arab Emirates - Certified Incident Handler

Qatar - Certified Incident Handler

Egypt - Certified Incident Handler

Saudi Arabia - Certified Incident Handler

South Africa - Certified Incident Handler

Brasil - Certified Incident Handler

Canada - Certified Incident Handler

中国 - Certified Incident Handler

香港 - Certified Incident Handler

澳門 - Certified Incident Handler

台灣 - Certified Incident Handler

USA - Certified Incident Handler

Österreich - Certified Incident Handler

Schweiz - Certified Incident Handler

Deutschland - Certified Incident Handler

Czech Republic - Certified Incident Handler

Denmark - Certified Incident Handler

Estonia - Certified Incident Handler

Finland - Certified Incident Handler

Greece - Certified Incident Handler

Magyarország - Certified Incident Handler

Ireland - Certified Incident Handler

Luxembourg - Certified Incident Handler

Latvia - Certified Incident Handler

España - Certified Incident Handler

Italia - Certified Incident Handler

Lithuania - Certified Incident Handler

Nederland - Certified Incident Handler

Norway - Certified Incident Handler

Portugal - Certified Incident Handler

România - Certified Incident Handler

Sverige - Certified Incident Handler

Türkiye - Certified Incident Handler

Malta - Certified Incident Handler

Belgique - Certified Incident Handler

France - Certified Incident Handler

日本 - Certified Incident Handler

Australia - Certified Incident Handler

Malaysia - Certified Incident Handler

New Zealand - Certified Incident Handler

Philippines - Certified Incident Handler

Singapore - Certified Incident Handler

Thailand - Certified Incident Handler

Vietnam - Certified Incident Handler

India - Certified Incident Handler

Argentina - Certified Incident Handler

Chile - Certified Incident Handler

Costa Rica - Certified Incident Handler

Ecuador - Certified Incident Handler

Guatemala - Certified Incident Handler

Colombia - Certified Incident Handler

México - Certified Incident Handler

Panama - Certified Incident Handler

Peru - Certified Incident Handler

Uruguay - Certified Incident Handler

Venezuela - Certified Incident Handler

Polska - Certified Incident Handler

United Kingdom - Certified Incident Handler

South Korea - Certified Incident Handler

Pakistan - Certified Incident Handler

Sri Lanka - Certified Incident Handler

Bulgaria - Certified Incident Handler

Bolivia - Certified Incident Handler

Indonesia - Certified Incident Handler

Kazakhstan - Certified Incident Handler

Moldova - Certified Incident Handler

Morocco - Certified Incident Handler

Tunisia - Certified Incident Handler

Kuwait - Certified Incident Handler

Oman - Certified Incident Handler

Slovakia - Certified Incident Handler

Kenya - Certified Incident Handler

Nigeria - Certified Incident Handler

Botswana - Certified Incident Handler

Slovenia - Certified Incident Handler

Croatia - Certified Incident Handler

Serbia - Certified Incident Handler

Bhutan - Certified Incident Handler

Nepal - Certified Incident Handler

Uzbekistan - Certified Incident Handler