Skip to main content

GIAC Response and Industrial Defense (GRID) Online Course

Price: 10.00 USD | Size: 1.9 GB | Duration :15+  Hours | 500+ Video seasons | ★★★★★  4.9 

BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD |


GIAC Response and Industrial Defense (GRID) Online Course


ICS Visibility, Detection, and Response


ICS Visibility, Detection, and Response will help you gain visibility and asset identification in your Industrial Control System (ICS)/Operational Technology (OT) networks, monitor for and detect cyber threats, deconstruct ICS cyber attacks to extract lessons learned, perform incident response, and take an intelligence-driven approach to executing a world-leading ICS cybersecurity program to ensure safe and reliable operations.


The course will empower students to understand their networked ICS environment, monitor it for threats, perform incident response against identified threats, and learn from interactions with the adversary to enhance network security. This approach is important to being able to counter sophisticated threats such as those seen with malware including STUXNET, HAVEX, BLACKENERGY2, CRASHOVERRIDE, TRISIS/TRITON, and ransomware. In addition, the efforts are also critical to understanding and running a modern day complex automation environment and achieving root cause analysis for non cyber-related events that manifest over the network. Students can expect to come out of this course with core skills necessary for any ICS cybersecurity program.


The course uses a hands-on approach with numerous technical data sets from ICS ranges and equipment with emulated attacks and real world malware deployed in the ranges for a highly simulated experience detecting and responding to threats. Students will also interact with and keep a programmable logic controller (PLC), physical kit emulating electric system operations at the generation, transmission, and distribution level, and virtual machine set up as a human machine interface (HMI) and engineering workstation (EWS).


Students will spend roughly half the course performing hands on skills across more than 25 technical exercises and an all day technical capstone. Students will gain a practical and technical understanding of defining an ICS cybersecurity strategy, leveraging threat intelligence, performing network security monitoring, and performing incident response. Frameworks such as the ICS Cyber Kill Chain, Collection Management Framework, and Active Cyber Defense Cycle will be taught to give students repeatable frameworks and models to leverage post class.


The strategic and technical skills presented in this course serve as a basis for ICS organizations looking to show that ICS defense is do-able.


How to perform ICS incident response focusing on security operations and prioritizing the safety and reliability of operations.

How ICS threat intelligence is generated and how to use what is available in the community to support ICS environments. The analysis skills you learn will enable you to critically analyze and apply information from ICS threat intelligence reports on a regular basis.

How to identify ICS assets and their network topologies and how to monitor ICS hotspots for abnormalities and threats. The course will introduce and reinforce methodologies such as ICS network security monitoring and approaches to reducing the control system threat landscape.

How to analyze ICS threats and extract the most important information needed to quickly scope the environment and understand the nature of the threat.

How to operate through an attack and gain the information necessary to instruct teams and decision-makers on whether operations must shut down or it is safe to respond to the threat and continue operations.

How to use multiple security disciplines in tandem to leverage an active defense and safeguard an ICS, all reinforced with hands-on labs and technical concepts.

You Will Be Able To


Analyze ICS-specific threats and take proper courses of action to defend the industrial control systems

Establish collection, detection, and response strategies for your ICS networks

Use proper procedures during ICS incident response

This Course Will Prepare You To


Examine ICS networks and identify the assets and their data flows in order to understand the network information needed to identify advanced threats

Use active defense concepts such as threat intelligence consumption, network security monitoring, malware analysis, and incident response to safeguard the ICS

Build your own Programmable Logic Controller using the   Student Kit, which you retain after the class ends

Gain in-depth knowledge on ICS targeted threats and malware including STUXNET, HAVEX, BLACKENERGY2, CRASHOVERRIDE, TRISIS/TRITON, and EKANS

Leverage technical tools such as Shodan, Wireshark, Zeek, Suricata, Volatility, FTK Imager, PDF analyzers, PLC programming software, and more

Create indicators of compromise (IOCs) in YARA

Take advantage of models such as the Sliding Scale of Cybersecurity, the Active Cyber Defense Cycle, the Collection Management Framework, and the ICS Cyber Kill Chain to extract information from threats and use it to encourage the long-term success of ICS network security

Hands-On Training


Build a Programmable Logic Controller (PLC) using the Student Kit

Identify information available about assets online through Shodan

Complete an analysis of competing hypotheses

Ingest threat intelligence reports

Identify and leverage new active defense skills to guide incident responders to the Human Machine Interface (HMI) affected by an advanced persistent threat (APT) on the lab network

Identify which system is affected by APT malware identified in the network and assemble a sample of the threat that can be analyzed

From the infected HMI and samples of the APT malware identified, analyze the malware, extract information, and develop YARA rules to complete the active defense

Address three different hands-on, real-world scenarios, one involving live data collected from an intrusion into the   Student Kit, and the other involving data collected from a Distributed Control System (DCS) infected with malware





Related to:


giac certified professionals

giac certification

gicsp

giac security expert

gmon certification

ics cybersecurity certification

giac certification requirements

giac gicsp


 

Comments

You may like this

Understanding Cisco Industrial IoT Networking Foundation (INFND) v1.0 Video Training Course

  DOWNLOAD | Price: 5 USD | Size: 3.84 GB | Duration : 8.40 Hours | 47 Video Lessons     DOWNLOAD | Understanding Cisco Industrial IoT Networking Foundation (INFND) v1.0 Video Training Course   The Understanding Cisco Industrial IoT Networking Foundation (INFND) v1.0 course gives you an overview of the protocols, applications, and network infrastructure you need to support and manage Industrial Internet of Things (IIoT) solutions. You will learn about IIoT industry verticals and how different protocols are used within them. The course also covers configuring and verifying the protocols on Cisco IIoT networking devices. Course Objectives After taking this course, you should be able to: Define what IIoT is and identify IIoT architectures. Identify IIoT market verticals, and their motivations and requirements. Explore Cisco IIoT networking devices, how they are different from other devices, and use common administrative tools for managing them. Explore industrial commun...

CPENT Certified Penetration Testing Professional v2021 Complete Video Course, Appendix Videos & PDF Guides DOWNLOAD

  CPENT Certified Penetration Testing Professional v2021 Complete Video Course, Appendix Videos & PDF Guides DOWNLOAD Duration : 50 + Hours Size: 10.1 GB 1. CPENT Main Course PART-01 CPENT Module 01 2. CPENT Module 01 CPENT Module 02 2. CPENT Module 01 CPENT Module 03 2. CPENT Module 03 3. CPENT Module 03 Lab 1 4. CPENT Module 03 Lab 2 CPENT Module 04 2. CPENT Module 04 3. CPENT Module 04 Lab 1 4. CPENT Module 04 Lab 2 CPENT Module 05 2. CPENT Module 05 3. CPENT Module 05 Lab 1 4.  CPENT Module 05 Lab 2 5.  CPENT Module 05 Lab 3 6.  CPENT Module 05 Lab 4 CPENT Module 06 10. CPENT Module 06 Lab 8 11. CPENT Module 06 Lab 9 12. CPENT Module 06 Lab 10 13. CPENT Module 06 Lab 11 14. CPENT Module 06 Lab 12 15. CPENT Module 06 Lab 13 16. CPENT Module 06 Lab 14 17. CPENT Module 06 Lab 15 18.  CPENT Module 06 Lab 16 19.  CPENT Module 06 Lab 17 2. CPENT Module 06 Part 1 20.  CPENT Module 06 Lab 18 21.  CPENT Module 06 Lab 19 22.  CPENT Module 06 La...

Ethical Hacking Complete Course For 2022 Online Course & PDF Guides

Price: 6.00 USD | Size: 3.44 GB | Duration :10+  Hours |  ★★★★★   4.9 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD | Bonus PDF Guides Ethical Hacking Complete Course For 2022 Online Course & PDF Guides Learn everything in cyber security from scratch. All important topics of ethical hacking are covered. What you'll learn Windows Hacking and Security Hacking Softwares Creating Trojans and Worms XAMPP Practical Phishing Attack Google Dork Description This course is specially designed for Beginners. You will learn a lot of things in Cyber Security from Scratch. Anyone who is interested in cyber security OR anyone who want to become Ethical Hacker may join this course. You will learn a lot of topics like- 1. Introduction to Ethical Hacking 2. Installing OS 3. Creating virtual lab 4. Types of Hackers 5. Windows Security Architecture 6. Hacking Windows Accounts with or without Software. 7. Hash 8. Other ways to crack windows account 9. Using Live OS 10. Accessin...

(ISC)² CCSP Certified Cloud Security Professional Official Practice Tests PDF Guide

Price: Free Download |  ISBN: 978-1-11x-60349-8  |  February 2020  |400 Pages| ★★★★★4.9  BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD (ISC)² CCSP Certified Cloud Security Professional Official Practice Tests PDF Guide   DESCRIPTION The only official CCSP practice test product endorsed by (ISC)² With over 1,000 practice questions, this book gives you the opportunity to test your level of understanding and gauge your readiness for the Certified Cloud Security Professional (CCSP) exam long before the big day. These questions cover 100% of the CCSP exam domains, and include answers with full explanations to help you understand the reasoning and approach for each. Logical organization by domain allows you to practice only the areas you need to bring you up to par, without wasting precious time on topics you’ve already mastered. As the only official practice test product for the CCSP exam endorsed by (ISC)², this essential resource is your best bet f...

The Moxie Stock Method – Simpler Trading Online Course & PDF Guides

Price: 6.00 USD | Size: 4.2 GB | Duration :18+  Hours | 8 Video seasons |  ★★★★★   4.9  BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD | Bonus PDF Guides The Moxie Stock Method – Simpler Trading Online Course & PDF Guides Here’s your pinpoint accurate method to achieve faster account gains. Now it’s finally possible to look ‘beyond price’ to see stock moves before they happen. What if you could look beyond price and identify big moves in stocks before they happen? Now is your chance to discover how TG achieved 103% account growth with his Moxie Indicator™ Method in a little over a year. Thanks to his proprietary Moxie Indicator™ he consistently predicts “pops and drops” in stocks that allow him to book returns of 10% to 200% (often within days). For the first time, TG is revealing how he catches “Moxie Indicator™ Stocks” before they take off. Whatever you're experience is, this step-by-step training is designed to provide everything you need, including...

Ethical Hacking Kali Linux for Beginners Online Course & PDF Guides

Price: 6.00 USD | Size: 2.21 GB | Duration :3.5  Hours |  ★★★★★   4.5 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD | Bonus PDF Guides Ethical Hacking Kali Linux for Beginners Online Course & PDF Guides What you'll learn What is Cyber Security ? Basic Linux Commands Kali Linux Command Line (CLI) Netcat (nc) Essentials Wireshark Bash Scripting (Shell Scripting) Passive Information Gathering Techniques Active Information Gathering Techniques Scanning with Nmap Web Application Attacks The Metasploit Framework Essentials Description What is ethical hacking? Ethical hacking involves an authorized attempt to gain unauthorized access to a computer system, application, or data. Carrying out an ethical hack involves duplicating strategies and actions of malicious attackers. This practice helps to identify security vulnerabilities which can then be resolved before a malicious attacker has the opportunity to exploit them. Also known as “white hats,” ethical hackers a...

Cisco Certified Technician (CCT) Online Course & PDF Guides

Price: 8.00 USD | Size: 2.77 GB | Duration : 6+  Hours | 23 Video Lessons |  ★★★★★  4.7 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD Cisco Certified Technician (CCT) Online Course & PDF Guides GENERAL NETWORKING Overview Identify Basic Networking Hardware Learn Your Networking Models Identify Layer 1 And 2 Technologies Identify Networking Responsibilities Learn Network Addressing Use Basic Network Utilities CISCO EQUIPMENT AND HARDWARE Identify Cisco Equipment Identify Cisco Components Identify Ports Characteristics Learn Cisco Memory Functions Remove And Replace A Cisco Device CISCO IOS Cisco Operating System Types Access The Cisco IOS Use Terminal Emulation To Access Cisco IOS Device Learn Basic Cisco IOS Commands Create, Backup And Restore Startup-Config Learn About IOS-XE Modes SERVICING CISCO DEVICES Use Windows To Troubleshoot Basic Networking Upgrade The Cisco IOS On A Router Password Recovery On A Cisco IOS Router Additional Tools Perform A Factory Res...

CompTIA Cybersecurity Analyst (CySA+) CS0-002 Complete Video Online Course

Price: 15.00 USD | Size: 29 GB | Duration :20  Hours | 250+ Video Lessons |  ★★★★★  4.8 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD CompTIA Cybersecurity Analyst (CySA+) CS0-002 Complete Video Online Course Overview: The CompTIA Cybersecurity Analyst (CySA+) CS0-002 Complete Video Course is a full and complete resource to successfully study for the CompTIA CySA+ exam. With 20 hours of video training this course provides learners with topic-focused coverage on key exam topics, deep-dive demos and examples, and an exploration of relevant cybersecurity foundations and principles to help you gain an in-depth understanding of each objective in the CompTIA CySA+ certification, as well as a deeper understanding of cyber security. CompTIA Cybersecurity Analyst (CySA+) CS0-002 Complete Video Course contains 20 hours of training with content divided into 7 modules with 33 content targeted lessons. This title will surpass the traditional test prep training by providing an i...

Implementing and Operating Cisco Security Core Technologies (SCOR) v1.0 CCNP Security 350-701 SCOR Video Course & PDF Guides DOWNLOAD

Price : 15 USD  Duration : 22.42 Hours 160 Video Lessons Size: 20.8 GB (5 PART DOWNLOAD) PART-01 1 Describing Information Security Concepts 2 Describing Common TCP IP Attacks 3 Descibing common network application attacks 4 Describing common network attacks 5 Describing network security technologies 6 Deploying Cisco ASA Firewall 7 Deploying CIsco FIrepower Next Genration FIrewall PART-02 10 Deploying CIsco Umbrella 8 Deploying Email Content Security 9 Deploying Web Content Security PART-03 11 Explaining VPN Technologies and Cryptography Concepts 12 Introducing Cisco Secure Site-to-Site VPN Solutions 13 Deploying Cisco IOS VTI-Based Point-to-Point IPsec VPNs 14 Deploying Point-to-Point IPsec VPNs on the Cisco …​ and Cisco Firepower NGFW 15 Introducing Cisco Secure Remote Access VPN Solutions 16 Deploying Remote Access SSL VPNs on the Cisco …​ and Cisco Firepower NGFW 17 Explaining Cisco Secure Network Access Solutions PART-04 18 Describing 802.1X Authentication 19 Configuring 802.1...

Cisco CCNP Data Center DCCOR (350-601) Online Course & PDF Guides

Price: 8.00 USD | Size: 2.42 GB | Duration : 8+  Hours | 57 Video Lessons |  ★★★★★  4.7 BRAND : Expert TRAINING | ENGLISH | INSTANT DOWNLOAD | Bonus PDF Guides Cisco CCNP Data Center DCCOR (350-601) Online Course & PDF Guides   NETWORKING Overview An NX-OS Primer OSPFv2 Dccor OSPFv3 MP-BGP PIM FHRPs RSTP+ LACP Dccor VPC Dccor VXLAN EVPN OTV What Is Cisco ACI The Cisco APIC ACI Access Policies ACI VMM ACI Tenant Policies ACI Contracts And Microsegmentation Packet Flow Analysis NIST 800-145 Cloud Defined Nexus Software Updates Nexus Configuration Management NetFlow SPAN Streaming Telemetry COMPUTE UCS Rack Servers UCS Blade Chassis UCS Initial Setup UCS Infrastructure Management UCS Network Management UCS Storage Management UCS Monitoring HyperFlex Infrastructure UCS Software Updates UCS Backup And Restore SPAN In The UCS Intersight STORAGE NETWORKING Fibre Channel Port Channels Switched Fabric Initialization VSANs NFS And NAS FCoE Unified Fabric Monitoring And Sof...