06
Sound the Alarm: Detection and Response
06
Sound the Alarm: Detection and Response
Learn more about incident detection and response. Define a security incident, explain the incident response lifecycle, and analyze network communications to detect security incidents using packet sniffing tools. Explore investigation processes and practice using IDS and SIEM tools. Google cybersecurity employees will guide you through hands-on activities. This is the sixth course in the Google Cybersecurity Certificate, a series designed to prepare you for an entry-level cybersecurity role.
Course Info
Objectives
By the end of this course, you will:
- Explain the lifecycle of an incident.
- Describe the tools used in documentation, detection, and management of incidents.
- Analyze packets to interpret network communications.
- Perform artifact investigations to analyze and verify security incidents.
- Identify the steps to contain, eradicate, and recover from an incident.
- Determine how to read and analyze logs during incident investigation.
- Interpret the basic syntax and components of signatures and logs in Intrusion Detection Systems (IDS) and Network Intrusion Detection Systems (NIDS) tools.
- Perform queries in Security Information and Event Management (SIEM) tools to investigate an event.
Prerequisites
No prior experience required
Audience
Beginner
Available languages
English