Incident response: Detection and analysis
This training equips participants with the essential skills to detect and analyse cybersecurity incidents effectively. It focuses on identifying attack vectors, recognising security threats, analysing alerts and documenting incidents accurately. Participants will learn to work with detection sources such as SIEM tools, IDS/IPS, antivirus software and log analysis to distinguish real threats from false positives and make informed response decisions.
The course is part of the Cyrus project funded under the DIGITAL Europe Programme of the European Union which aims to propose a novel training programme to develop a cybersecurity innovation DNA and support companies in transport and manufacturing to respond to and mitigate cyber threats and attack.
About this course
Designed for IT administrators, security analysts, incident responders and SOC teams, this course is also valuable for students, educators and anyone interested in cybersecurity. Participants will gain expertise in:
- Monitoring security events and identifying indicators of compromise
- Profiling networks and correlating security events to validate threats
- Applying forensic analysis techniques for effective threat detection
- Prioritising and documenting incidents to ensure a coordinated response