Beginner's Guide to Digital Forensics and Incident Response for Threat Intelligence Analysts
Master the essentials of DFIR to enhance threat intelligence analysis, from incident lifecycle to evidence collection and tool utilization.
...
Share
DFIR Fundamentals and Incident Response Lifecycle
Unit 1: Introduction to DFIR and Threat Intelligence
What is DFIR?
DFIR & Threat Intel
Unit 2: The Incident Response Lifecycle
IR Lifecycle Overview
Phase 1: Preparation
Phase 2: Identification
Phase 3: Containment
Phase 4: Eradication & Recovery
Phase 5: Post-Incident Analysis
Digital Evidence and Basic Forensic Techniques
Unit 1: Understanding Digital Artifacts
What is Digital Evidence?
Logs: The Digital Story
Network Traffic Clues
Memory & Disk Forensics
Unit 2: Collecting and Preserving Evidence
Forensically Sound Collection
Chain of Custody
Unit 3: Basic Forensic Techniques & Tools
Basic Log Analysis Tools
Network Traffic Review