DIG-FORNSC-IR.AJ1

Digital Forensics and Incident Response

Learn how to build a strong defense fabric using the latest digital forensics and incident response techniques.

  • Practice in 29 Laboratorios prácticos — nothing to install
  • 20 Lecciones interactivas y 123 topics mapped to the official exam objectives
  • 180 Preguntas del examen de práctica

Beginner A tu propio ritmo · 1 año de acceso

29 LiveLabs prácticos

Practice real IT tasks in guided environments.

  • Entornos reales
  • Calificación automática
  • Sin instalación
20Lecciones interactivas
123Topics
29Laboratorio en vivo
180Preguntas del examen de práctica
94Tarjetas didácticas
94Glosario de términos

01 / Habilidades que obtendrás

What you will be able to do

Try Free → No se requiere tarjeta de crédito
In this course, you’ll acquire specialized skills to identify and reconstruct a cybersecurity incident by collecting and analyzing digital evidence to persecute the threat actor. The digital forensics incident response solutions like threat hunting will help you capture the root cause of an attack and remove all traces of it from your network. Once enrolled, you’ll gain access to risk-free simulation labs to practice your theoretical knowledge and gain practical experience to add to your resume! So what are you waiting for? Everything you need is available in this hot-selling training courseware.
  • Engage and manage IR teams, utilizing Security Orchestration, Automation, and Response (SOAR). 
  • Apply various incident investigation analyses to understand the cyber kill chain and the diamond model of intrusion analysis.
  • Collect and analyze network evidence from firewalls, proxy logs, NetFlow, and packet captures using tools like Wireshark. 
  • Take actions to respond to ransomware incidents and investigate cyberattacks. 
  • Set up and use malware sandboxes for static and dynamic analysis using tools like ClamAV and YARA.
  • Source and leverage threat intelligence using the MITRE ATT&CK framework.
  • Work with Indicators of Compromise (IOCs) and Indicators of Attack (IOAs).
  • Create hypotheses, plan and execute threat hunts, and apply digital forensic techniques and EDR tools for threat hunting.
  • Manage and analyze log files using SIEMs and other tools, with a focus on Windows Event Logs.

Course Highlights

  • 20 Lecciones estructuradas Cobertura completa de los objetivos principales del curso
  • 29 LiveLabs prácticos Escenarios interactivos guiados con evaluación instantánea
  • 180 Preguntas de práctica Pruebas de evaluación con justificaciones de respuesta detalladas
  • 1 año de acceso completo Aprendizaje a tu propio ritmo, accesible en cualquier momento y en todos los dispositivos

02 / Lecciones y laboratorios

See exactly what you will learn and practice

Descargar esquema (PDF)

Plan de estudios

20 Lecciones interactivas · 123 topics
01 Preface 3 topics
  • Who this course is for
  • What this course covers
  • To get the most out of this course
02 Understanding Incident Response 7 topics
  • The IR process
  • The IR framework
  • The IR plan
  • The IR playbook/handbook
  • Testing the IR framework
  • Summary
  • Further reading
03 Managing Cyber Incidents 7 topics
  • Engaging the incident response team
  • SOAR
  • Incorporating crisis communications
  • Incorporating containment strategies
  • Getting back to normal – eradication, recovery, and post-incident activity
  • Summary
  • Further reading
04 Fundamentals of Digital Forensics 6 topics · 1 Laboratorio en vivo
  • An overview of forensic science
  • Locard’s exchange principle
  • Legal issues in digital forensics
  • Forensic procedures in incident response
  • Summary
  • Further reading

1 Laboratorio en vivo in this lesson — see the labs panel →

05 Investigation Methodology 6 topics · 1 Laboratorio en vivo
  • An intrusion analysis case study: The Cuckoo’s Egg
  • Types of incident investigation analysis
  • Functional digital forensic investigation methodology
  • The cyber kill chain
  • The diamond model of intrusion analysis
  • Summary

1 Laboratorio en vivo in this lesson — see the labs panel →

Laboratorios prácticos Our edge

29 Laboratorio en vivos
  • Completing the Chain of Custody
  • Performing Reconnaissance on a Network
  • Installing a DHCP Server
  • Performing a Proxy Server Operation
  • Creating a Firewall Rule
  • Capturing Packet Using RawCap
Los laboratorios se ejecutan en tu navegador; no hay nada que instalar.

03 / Preguntas frecuentes

Preguntas antes de empezar

Contáctanos ↗
What is digital forensics and incident response?  
Digital forensic and incident response (DFIR) is a specialized field of cybersecurity that collects and analyzes digital evidence to mitigate a threat incident in a timely approach. 
Are there any prerequisites for this course? 
No, there are no formal requirements to take this course. However, a basic understanding of cybersecurity, threats, and incident response will help you get started smoothly
What tools and software will I learn to use in this cybersecurity forensic course?  

You will learn to use the following tools:

Incident Response Tools:

  • SOAR (Security Orchestration, Automation, and Response)
  • Network Evidence Collection and Analysis:
  • Firewalls
  • Proxy logs
  • NetFlow
  • Packet capture
  • Wireshark
  • RawCap
  • tcpdump
  • NetworkMiner

Host-Based Evidence Collection and Analysis:

  • WinPmem for memory acquisition
  • FTK Imager
  • Velociraptor
  • EnCase Imager
  • Volatility (for memory analysis)
  • Strings (Linux tool)

Digital Forensics Platforms and Tools:

  • Forensic platforms
  • Autopsy
  • Master File Table analysis tools
  • Prefetch analysis tools
  • Registry analysis tools

Log Analysis:

  • SIEMs (Security Information and Event Management systems)
  • Windows Event Logs
  • DeepBlueCLI

Malware Analysis:

  • Malware sandbox
  • ClamAV
  • YARA
  • VirusTotal
  • Process Explorer

Threat Intelligence and Threat Hunting:

  • MITRE ATT&CK framework
  • Maltego
 How much does a digital forensics and incident response specialist make in a month?
The salary of a Digital Forensics and Incident Response Specialist can vary depending on factors such as experience, location, and specific job roles. As of 2024, the average salary for a Digital Forensics Investigator in the United States is around $74,000 to $110,000 per year​.

Get Hands-on! Get DFIR Skills! 

Discover how to use advanced DFIR tools and frameworks to build a strong network security infrastructure.

  • 1 año de acceso completo
  • 29 LiveLab incluido
  • Certificado de finalización
Comprar ahora — $279.99 Try Free

No se requiere tarjeta de crédito

scroll to top