KARIM ASHRAF SPACE.
Search...
Ctrl + K
WRITEUPS
Hack The Box Tracks
Soc Analyst Path 2024
1. Incident Handling Process
Previous
Soc Analyst Path 2024
Next
Incident Handling Definition & Scope
Last updated
1 month ago
Incident Handling Definition & Scope
Incident Handling's Value & Generic Notes
Cyber Kill Chain
Incident Handling Process Overview
Preparation Stage (Part 1)
Preparation Stage (Part 2)
DMARC
Endpoint Hardening (& EDR)
Network Protection
Privilege Identity Management / MFA / Passwords
Vulnerability Scanning
User Awareness Training
Active Directory Security Assessment
Purple Team Exercises
Detection & Analysis Stage (Part 1)
Initial Investigation
Incident Severity & Extent Questions
Incident Confidentiality & Communication
Detection & Analysis Stage (Part 2)
The Investigation
Initial Investigation Data
Creation & Usage Of IOCs
Identification Of New Leads & Impacted Systems
Data Collection & Analysis From The New Leads & Impacted Systems
Containment
Eradication
Recovery
Post-Incident Activity Stage
Reporting