Incident Response with Threat Intelligence. Practical insights into developing an incident response capability through intelligence-based threat hunting - Second Edition - Helion
Tytuł oryginału: Incident Response with Threat Intelligence. Practical insights into developing an incident response capability through intelligence-based threat hunting - Second Edition
ISBN: 9781835463987
stron: 23, Format: ebook
Księgarnia: Helion
Cena książki: 129,00 zł
Książka będzie dostępna od października 2024
With constantly evolving cyber threats, developing a cybersecurity incident response capability to identify and contain threats is indispensable for any organization regardless of its size. This book covers theoretical concepts and a variety of real-life scenarios that will help you to apply these concepts within your organization.
Starting with the basics of incident response, the book introduces you to professional practices and advanced concepts for integrating threat hunting and threat intelligence procedures in the identification, contention, and eradication stages of the incident response cycle. As you progress through the chapters, you'll cover the different aspects of developing an incident response program. You'll learn the implementation and use of platforms such as TheHive and ELK and tools for evidence collection such as Velociraptor and KAPE before getting to grips with the integration of frameworks such as Cyber Kill Chain and MITRE ATT&CK for analysis and investigation. You'll also explore methodologies and tools for cyber threat hunting with Sigma and YARA rules.
By the end of this book, you'll have learned everything you need to respond to cybersecurity incidents using threat intelligence.
Zobacz także:
- Windows Media Center. Domowe centrum rozrywki 66,67 zł, (8,00 zł -88%)
- Ruby on Rails. Ćwiczenia 18,75 zł, (3,00 zł -84%)
- Przywództwo w świecie VUCA. Jak być skutecznym liderem w niepewnym środowisku 58,64 zł, (12,90 zł -78%)
- Scrum. O zwinnym zarządzaniu projektami. Wydanie II rozszerzone 58,64 zł, (12,90 zł -78%)
- Od hierarchii do turkusu, czyli jak zarządzać w XXI wieku 58,64 zł, (12,90 zł -78%)
Spis treści
Incident Response with Threat Intelligence. Practical insights into developing an incident response capability through intelligence-based threat hunting - Second Edition eBook -- spis treści
- 1. Threat Landscape and Cybersecurity Incidents
- 2. Concepts of Digital Forensics and Incident Response
- 3. IR Investigation Methodologies
- 4. Basics of the First Response and and Triage Procedures
- 5. Introduction to Incident Response in Cloud
- 6. Cloud Incident Response Framework and Guides
- 7. First Response and Triage procedures in Cloud
- 8. Investigating Incidents in Cloud
- 9. Threat Actors: Categories and Motivations
- 10. Understanding the Cyber Kill Chain
- 11. Fundamentals of the MITRE ATT&CK Framework
- 12. Using MITRE ATT&CK in Incident Response
- 13. Building an Incident Response Capability
- 14. Creating an Incident Response Plan
- 15. Developing IR Playbooks and Workbooks
- 16. Using Incident Management Systems
- 17. Fundamentals of Cyber Threat Intelligence
- 18. Getting and Sharing Threat Intelligence
- 19. Integrating CTI and Incident Management Systems
- 20. Using Cyber Threat Intelligence in Incident Response
- 21. Fundamentals of Threat Hunting
- 22. Working with Analytics and Detection Engineering in Incident Response
- 23. Creating and Deploying Detection Rules