Skip to main content

GIAC Response and Industrial Defense (GRID) Online Course

Price: 10.00 USD | Size: 1.9 GB | Duration :15+  Hours | 500+ Video seasons | ★★★★★  4.9 

BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD |


GIAC Response and Industrial Defense (GRID) Online Course


ICS Visibility, Detection, and Response


ICS Visibility, Detection, and Response will help you gain visibility and asset identification in your Industrial Control System (ICS)/Operational Technology (OT) networks, monitor for and detect cyber threats, deconstruct ICS cyber attacks to extract lessons learned, perform incident response, and take an intelligence-driven approach to executing a world-leading ICS cybersecurity program to ensure safe and reliable operations.


The course will empower students to understand their networked ICS environment, monitor it for threats, perform incident response against identified threats, and learn from interactions with the adversary to enhance network security. This approach is important to being able to counter sophisticated threats such as those seen with malware including STUXNET, HAVEX, BLACKENERGY2, CRASHOVERRIDE, TRISIS/TRITON, and ransomware. In addition, the efforts are also critical to understanding and running a modern day complex automation environment and achieving root cause analysis for non cyber-related events that manifest over the network. Students can expect to come out of this course with core skills necessary for any ICS cybersecurity program.


The course uses a hands-on approach with numerous technical data sets from ICS ranges and equipment with emulated attacks and real world malware deployed in the ranges for a highly simulated experience detecting and responding to threats. Students will also interact with and keep a programmable logic controller (PLC), physical kit emulating electric system operations at the generation, transmission, and distribution level, and virtual machine set up as a human machine interface (HMI) and engineering workstation (EWS).


Students will spend roughly half the course performing hands on skills across more than 25 technical exercises and an all day technical capstone. Students will gain a practical and technical understanding of defining an ICS cybersecurity strategy, leveraging threat intelligence, performing network security monitoring, and performing incident response. Frameworks such as the ICS Cyber Kill Chain, Collection Management Framework, and Active Cyber Defense Cycle will be taught to give students repeatable frameworks and models to leverage post class.


The strategic and technical skills presented in this course serve as a basis for ICS organizations looking to show that ICS defense is do-able.


How to perform ICS incident response focusing on security operations and prioritizing the safety and reliability of operations.

How ICS threat intelligence is generated and how to use what is available in the community to support ICS environments. The analysis skills you learn will enable you to critically analyze and apply information from ICS threat intelligence reports on a regular basis.

How to identify ICS assets and their network topologies and how to monitor ICS hotspots for abnormalities and threats. The course will introduce and reinforce methodologies such as ICS network security monitoring and approaches to reducing the control system threat landscape.

How to analyze ICS threats and extract the most important information needed to quickly scope the environment and understand the nature of the threat.

How to operate through an attack and gain the information necessary to instruct teams and decision-makers on whether operations must shut down or it is safe to respond to the threat and continue operations.

How to use multiple security disciplines in tandem to leverage an active defense and safeguard an ICS, all reinforced with hands-on labs and technical concepts.

You Will Be Able To


Analyze ICS-specific threats and take proper courses of action to defend the industrial control systems

Establish collection, detection, and response strategies for your ICS networks

Use proper procedures during ICS incident response

This Course Will Prepare You To


Examine ICS networks and identify the assets and their data flows in order to understand the network information needed to identify advanced threats

Use active defense concepts such as threat intelligence consumption, network security monitoring, malware analysis, and incident response to safeguard the ICS

Build your own Programmable Logic Controller using the   Student Kit, which you retain after the class ends

Gain in-depth knowledge on ICS targeted threats and malware including STUXNET, HAVEX, BLACKENERGY2, CRASHOVERRIDE, TRISIS/TRITON, and EKANS

Leverage technical tools such as Shodan, Wireshark, Zeek, Suricata, Volatility, FTK Imager, PDF analyzers, PLC programming software, and more

Create indicators of compromise (IOCs) in YARA

Take advantage of models such as the Sliding Scale of Cybersecurity, the Active Cyber Defense Cycle, the Collection Management Framework, and the ICS Cyber Kill Chain to extract information from threats and use it to encourage the long-term success of ICS network security

Hands-On Training


Build a Programmable Logic Controller (PLC) using the Student Kit

Identify information available about assets online through Shodan

Complete an analysis of competing hypotheses

Ingest threat intelligence reports

Identify and leverage new active defense skills to guide incident responders to the Human Machine Interface (HMI) affected by an advanced persistent threat (APT) on the lab network

Identify which system is affected by APT malware identified in the network and assemble a sample of the threat that can be analyzed

From the infected HMI and samples of the APT malware identified, analyze the malware, extract information, and develop YARA rules to complete the active defense

Address three different hands-on, real-world scenarios, one involving live data collected from an intrusion into the   Student Kit, and the other involving data collected from a Distributed Control System (DCS) infected with malware





Related to:


giac certified professionals

giac certification

gicsp

giac security expert

gmon certification

ics cybersecurity certification

giac certification requirements

giac gicsp


 

Comments

You may like this

Mastering Docker Pack of 6 Online Courses & PDF Guides

Price: 12.00 USD | Size: 8.4 GB | Duration :18+  Hours |Pack of 6 Video Course  |  ★★★★★   4.9 (10,816 ratings) BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD | Bonus PDF Guides Mastering Docker Pack of 6 Online Courses & PDF Guides Docker Install, Create Containers, Dockerfile, Persistent Storage, Docker Networking, Docker Compose, Swarm Cluster What you'll learn Basics of Docker Docker Introduction Docker Architecture Pulling Docker Images Creating Your First Container Connectivity Between Containers Stopping & Removing Containers Removing Docker Images Different ways to install Docker Installing Docker on Ubuntu Installing Docker on CentOS Manage Docker Images Create Image by Commit Create Image by Using Dockerfile Pushing Images to Docker Hub Working with web server images Working with Apache Web Server Image Working with Nginx Web Server Image Deploy Custom Page Using Apache Web Server Deploy Custom Page Using Nginx Web Server Use Docker Registry Ephemeral vs Per

Data Cleansing Master Class in Python Online Course & PDF guides

Price: 6.00 USD | Size: 5.9 GB | Duration :3.33  Hours | 37 Video seasons |  ★★★★★   4.5 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD | Bonus PDF Guides Data Cleansing Master Class in Python Online Course & PDF guides About this video Data preparation may be the most important part of a machine learning project. It is the most time-consuming part, although it is the least discussed topic. Data preparation, sometimes referred to as data preprocessing, is the act of transforming raw data into a form that is appropriate for modeling. Machine learning algorithms require input data to be numbered, and most algorithm implementations maintain this expectation. Therefore, if your data contains data types and values that are not numbers, such as labels, you will need to change the data into numbers. Further, specific machine learning algorithms have expectations regarding the data types, scale, probability distribution, and relationships between input variables, and you may need to

CPENT Certified Penetration Testing Professional v2021 Complete Video Course, Appendix Videos & PDF Guides DOWNLOAD

  CPENT Certified Penetration Testing Professional v2021 Complete Video Course, Appendix Videos & PDF Guides DOWNLOAD Duration : 50 + Hours Size: 10.1 GB 1. CPENT Main Course PART-01 CPENT Module 01 2. CPENT Module 01 CPENT Module 02 2. CPENT Module 01 CPENT Module 03 2. CPENT Module 03 3. CPENT Module 03 Lab 1 4. CPENT Module 03 Lab 2 CPENT Module 04 2. CPENT Module 04 3. CPENT Module 04 Lab 1 4. CPENT Module 04 Lab 2 CPENT Module 05 2. CPENT Module 05 3. CPENT Module 05 Lab 1 4.  CPENT Module 05 Lab 2 5.  CPENT Module 05 Lab 3 6.  CPENT Module 05 Lab 4 CPENT Module 06 10. CPENT Module 06 Lab 8 11. CPENT Module 06 Lab 9 12. CPENT Module 06 Lab 10 13. CPENT Module 06 Lab 11 14. CPENT Module 06 Lab 12 15. CPENT Module 06 Lab 13 16. CPENT Module 06 Lab 14 17. CPENT Module 06 Lab 15 18.  CPENT Module 06 Lab 16 19.  CPENT Module 06 Lab 17 2. CPENT Module 06 Part 1 20.  CPENT Module 06 Lab 18 21.  CPENT Module 06 Lab 19 22.  CPENT Module 06 Lab 20 23.  CPENT Module 06 Lab 21 24.  CPENT

CompTIA Data+ (DA0-001) Cert Prep Data Analysis Online Course

Price: 4.00 USD | Size: 543 MB | Duration : 1  Hour | 20+ Video seasons |  ★★★★★   4.8 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD | Bonus PDF Guides CompTIA Data+ (DA0-001) Cert Prep Data Analysis Online Course Course description Are you interested in pursuing a certification in data analytics? This course—the third in a six-part certification prep series—is designed specifically for newcomers to the field who are seeking their CompTIA Data+ certification. Join instructor Mike Chapple as he takes you through various data analysis techniques and helps you prepare for the Data+ exam. Learn more about all the material on domain three of the test. Get the skills you need to excel in sections on descriptive statistics, inferential statistics, analytic techniques, and common analytic tools. Mike covers not only what you need to know, but also how to put your knowledge into practice down the road. Upon completing this course, you’ll be better prepared to tackle the data analysis dom

CompTIA Cybersecurity Analyst (CySA+) CS0-002 Complete Video Online Course

Price: 15.00 USD | Size: 29 GB | Duration :20  Hours | 250+ Video Lessons |  ★★★★★  4.8 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD CompTIA Cybersecurity Analyst (CySA+) CS0-002 Complete Video Online Course Overview: The CompTIA Cybersecurity Analyst (CySA+) CS0-002 Complete Video Course is a full and complete resource to successfully study for the CompTIA CySA+ exam. With 20 hours of video training this course provides learners with topic-focused coverage on key exam topics, deep-dive demos and examples, and an exploration of relevant cybersecurity foundations and principles to help you gain an in-depth understanding of each objective in the CompTIA CySA+ certification, as well as a deeper understanding of cyber security. CompTIA Cybersecurity Analyst (CySA+) CS0-002 Complete Video Course contains 20 hours of training with content divided into 7 modules with 33 content targeted lessons. This title will surpass the traditional test prep training by providing an in-depth analys

Certified ISO 27001 ISMS Lead Implementer Training Online Course Expert Training

Price: 15.00 USD | Size: 14.9 GB | Duration : 6.42  Hours |19 Video Lessons |  ★★★★★  4.8 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD Certified ISO 27001 ISMS Lead Implementer Training Online Course Expert Training Training course outline This fully accredited, practitioner-led course will equip you with the key skills involved in planning, implementing and maintaining an ISO 27001-compliant ISMS It will teach you: The nine key steps involved in planning, implementing and maintaining an ISO 27001-compliant ISMS; Information security management best practices to ensure the confidentiality, integrity and availability of data; How to structure and manage your ISO 27001 project; and Typical pitfalls and challenges and how to deal with them. Who should Buy this course? Anyone involved in information security management, writing information security policies or implementing ISO 27001, either as a lead implementer or as part of an implementation team:  IT/ Information Security Consul

SC-900 Microsoft Security Fundamentals Exam Prep Online Course & PDF Guide

Price: 6.00 USD | Size: 1.4 GB | Duration :5+  Hours | 60 + Video seasons |  ★★★★★   4.6 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD | Bonus PDF Guide SC-900 Microsoft Security Fundamentals Exam Prep Online Course & PDF Guide Learn the fundamentals of Azure/Microsoft 365 Security, and get certified, with this complete beginner's SC-900 course! What you'll learn Pass the Microsoft SC-900 Azure Fundamentals test Earn the Microsoft Certified Security Fundamentals badge Requirements Excitement to learn Microsoft's constantly growing cloud platform No Azure account or subscription required Description LEARN THE FUNDAMENTALS OF AZURE AND MICROSOFT 365 SECURITY IN ONE DAY! This course is continually improved. Complete preparation for the new SC-900 Microsoft Security, Compliance, and Identity Fundamentals exam. This always-up-to-date course completely covers the SC-900 exam from start to finish. Always updated with the latest requirements. This course goes over each r

The Moxie Stock Method – Simpler Trading Online Course & PDF Guides

Price: 6.00 USD | Size: 4.2 GB | Duration :18+  Hours | 8 Video seasons |  ★★★★★   4.9  BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD | Bonus PDF Guides The Moxie Stock Method – Simpler Trading Online Course & PDF Guides Here’s your pinpoint accurate method to achieve faster account gains. Now it’s finally possible to look ‘beyond price’ to see stock moves before they happen. What if you could look beyond price and identify big moves in stocks before they happen? Now is your chance to discover how TG achieved 103% account growth with his Moxie Indicator™ Method in a little over a year. Thanks to his proprietary Moxie Indicator™ he consistently predicts “pops and drops” in stocks that allow him to book returns of 10% to 200% (often within days). For the first time, TG is revealing how he catches “Moxie Indicator™ Stocks” before they take off. Whatever you're experience is, this step-by-step training is designed to provide everything you need, including TG’s breakthrough M

Smartphone Forensic Analysis In-Depth Online Course & PDF Guides

Price: 8.00 USD | Size: 3.19 GB | Duration :15+  Hours | 35Video Lessons |  ★★★★★  4.9 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD Smartphone Forensic Analysis In-Depth Online Course & PDF Guides What You Will Learn  Smartphone Forensic Analysis In-Depth will help you understand: Where key evidence is located on a smartphone How the data got onto the smartphone How to recover deleted mobile device data that forensic tools miss How to decode evidence stored in third-party applications How to detect, decompile, and analyze mobile malware and spyware Advanced acquisition terminology and techniques to gain access to data on smartphones How to handle locked or encrypted devices, applications, and containers How to properly examine databases containing application and mobile artifacts How to create, validate, and verify the tools against real datasets SMARTPHONES HAVE MINDS OF THEIR OWN. DON'T MAKE THE MISTAKE OF REPORTING SYSTEM EVIDENCE, SUGGESTIONS, OR APPLICATION ASSOCIA