Course Overview

Gain hands-on mastery in enterprise incident response, web forensics, digital forensics, OSINT and dark web intelligence.

What You Will Learn

  • Conduct enterprise-level incident detection, triage, and response.
  • Apply KPIs and metrics to measure and improve incident response effectiveness.
  • Perform web forensics to trace malicious activity and gather evidence.
  • Execute complete digital forensic investigations from acquisition to reporting.
  • Use OSINT techniques to gather actionable intelligence from public sources.

Program Curriculum

Content
  • Chapter 1: Enterprise Incident Response
  • Chapter 2: Cybersecurity Frameworks
  • Chapter 3: How to Define Assets?
  • Chapter 4: Security Operations and Other Security Teams
  • Chapter 5: Preparations
  • Chapter 6: Disaster Recovery
  • Chapter 7: Insider Threats
  • Chapter 8: Indicator of Compromise (IOC)

Content
  • Chapter 1: Introduction to Incident Response
  • Chapter 2: Risk Models in Incident Response
  • Chapter 3: Metrics Programs in Incident Response
  • Chapter 4: Detection and Identification Phase Metrics
  • Chapter 5: Response Phase Metrics
  • Chapter 6: Containment & Eradication Metrics
  • Chapter 7: Post-Incident Analysis Phase Metrics
  • Chapter 8: Reporting
  • Chapter 9: Course Recap and Next Steps

Content
  • Chapter 1: Introduction to Web Forensics
  • Chapter 2: Basics of Web Technologies
  • Chapter 3: Web Evidence Collection
  • Chapter 4: Web Data Analysis
  • Chapter 5: Investigating Web-based Crimes
  • Chapter 6: Legal and Ethical Considerations
  • Chapter 7: Practical Application and Hands-on Exercises
  • Chapter 8: Career Pathways and Future Trends in Web Forensics
  • Chapter 9: Conclusion

Content
  • Chapter 1: Introduction to Digital Forensics
  • Chapter 2: Setup Digital Forensics Lab
  • Chapter 3: Computer Forensics
  • Chapter 4: Data Acquisition and Duplication
  • Chapter 5: Network Forensics
  • Chapter 6: Malware Forensics
  • Chapter 7: Memory Forensics
  • Chapter 8: Email Forensics
  • Chapter 9: LAB

Content
  • Chapter 1: Introduction
Load more modules

Instructor

Armaan Sidana

Armaan Sidana is a multifaceted individual with a passion for excellence across various domains. His expertise lies in the dynamic field of cybersecurity, where he holds notable certifications such as OSCP, CEH, CISA, and CSFPC. As a committed professional, He consistently seeks opportunities to contribute to the ever-evolving landscape of information security. Secured 100+ Companies with 1500+ Security Bugs.

Mark Murphy

Mark Murphy works as a Security Engineer at Cyderes. Before that, he spent years in various analyst and consultant roles. He has experience developing enterprise incident response plans for Fortune 500 companies, investigating global incidents, and leading global incident response efforts. He has a bachelor’s degree in IT Network Management and two master's Degrees: one in Information Security management and the other in Digital Forensics. He also holds a number of professional certifications and has experience teaching at different colleges and universities.

Ryan Wisniewski

Mentored 25000+ students till now, being the guest lecturer at many educational institutions. Ryan is a distinguished cybersecurity leader renowned for his remarkable accomplishments across diverse industries. With an illustrious track record of building highly successful security programs, portfolios, and organizations, Ryan specializes in Incident Response. His unwavering dedication to empathetic leadership, fostering a blameless culture, and instigating sustainable change management principles sets him apart as a guiding force in the cybersecurity landscape. As the current Incident Response Lead at Obsidian Security, Ryan channels his expertise into delivering elite incident response solutions that cater to the unique needs of each customer. He is committed to delivering actionable insights, advanced threat intelligence, and expeditious remediation strategies to reduce the impact of cyber security incidents around the world. Ryan's professional journey includes his role as the Incident Response Lead at Elastic N.V., where he orchestrated the development, enhancement, and seamless operation of Incident Response. He masterminded the Distributed Dynamic Response Program, aligning the organization with security frameworks such as MITRE ATT&CK and NIST 800-61. By implementing a Threat Intelligence Driven Response operating model, he optimized security event and response consistency and efficiency. Prior to his tenure at Elastic, Ryan held pivotal positions at prestigious companies including Paylocity, Zurich Insurance, ACH Food Companies, and McMaster-Carr Supply. His achievements span a spectrum, from establishing and nurturing successful security teams to orchestrating transformative security technology implementations. Ryan's credentials include renowned industry certifications such as Certified Information Systems Security Professional (CISSP), GIAC Information Security Professional (GISP), GIAC Strategic Planning, Policy, and Leadership (GSTRT), GIAC Certified Incident Handler (GCIH), GIAC Security Essentials (GSEC), GIAC Cloud Penetration Tester (GCPN), and SANS Security Awareness Professional (SSAP). Ryan's educational journey continues in pursuit of a master’s degree in information security from the esteemed SANS Technical Institute, alongside a master’s in business administration with a specialized focus on Organizational Change Leadership from Northern Illinois University. Ryan Wisniewski stands as a beacon of expertise and innovation within the realms of incident response, security architecture, and risk management. His unwavering dedication to excellence continues to make a resounding impact in the field.

Twinkle Sharma

Twinkle Sharma is an Ethical Hacker with over 7 years of experience in cybersecurity. Throughout his career, he has held various roles where he has excelled in uncovering vulnerabilities and strengthening web application security. His journey includes winning multiple hackathons, which have further refined his skills and deepened his understanding of cybersecurity challenges.

Nickson M. Karie

Having worked for different Universities across the globe, Dr Nickson M. Karie is an accomplished Cybersecurity and Forensics professional with over thirteen years of academic teaching and research. Dr Nickson has also worked for different research organizations and published several research articles in peer-reviewed scientific journals and presented his research findings at a scientific conference. Currently, Dr Nickson is working full-time as a Technical Training Manager and a Digital Forensics and Incidence Response (DFIR) Specialist in Australia. Dr Nickson enjoys using his Cybersecurity and Forensics skills and knowledge to contribute to the exciting technological advances happening in different industries and academia in the world. He believes that cybersecurity, Digital Forensics and Incidence Response is not only fundamental part of our daily life but also key to the future of our global digital economy. Dr Nickson graduated from the University of Pretoria, South Africa in 2016 with a PhD in Computer Science and his research interests are in Digital Forensics, Critical Infrastructure Security, Intrusion Detection and Prevention, Information and Computer Security Architecture, Network Security as well as IoT Security. Dr Nickson, therefore, sees Live Forensics as genuinely transformational and, as such, it must be focused on adding value. With the adoption of IoT and cloud technologies Live Forensics will be more valuable in the current and future complex business environments.

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Fastest Way to Level Up Your Cybersecurity Skills

Invest in your future with flexible subscription plans that give you access to the world’s largest online cybersecurity course library. Whether you're exploring cybersecurity courses for beginners or advancing your expertise,
access in-demand courses, practical labs, and CTF challenges designed to support continuous learning.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Build your cybersecurity skills with 900+ bite-sized courses and curated learning paths designed for continuous learning.

$ 69.00
Billed monthly or $599.00 billed annually

What is included

  • 880+ Premium Short Courses
  • 70+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month
Early Access Offer

Pro +

Develop real-world cybersecurity skills through hands-on labs and CTF challenges designed for practical learning.

$ 79.00
Billed monthly or $699.00 billed annually

Everything in Pro, Plus:

  • 1600+ Hands-on lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Hands-on Labs and Challenges added every month

Related Learning Paths

1 of 50

Quick View

Practical Cyber Incident Response & Forensics

Skip to product information
1 of 1
What's included
  • Full Video Access
  • Self-Paced Study Guide
  • 6 months of access to virtual labs
  • Once redeemed, this bundle will be valid for 12 months
  • Self-Paced Study Guide
  • Exam Voucher + Retake
View full details

Practical Cyber Incident Response & Forensics

Practical Cyber Incident Response & Forensics