0

Loading ...

Course / Course Details

Endpoint Detection and Incident Response Basics

  • CYSEC Academy image

    By - CYSEC Academy

  • 0 students
  • 1 Hour 30 Min
  • (0)

Course Requirements

To get the most out of this course, learners should have:

  • A basic understanding of computer systems and operating systems (Windows and Linux).
  • Familiarity with fundamental networking concepts such as IP addresses, ports, protocols, and DNS.
  • Basic knowledge of cybersecurity concepts, including common threats like malware, phishing, and ransomware.
  • An understanding of basic command-line usage (Command Prompt, PowerShell, or Terminal) is an added advantage but not mandatory.
  • A computer with a stable internet connection capable of accessing virtual labs and course materials.
  • Willingness to participate in hands-on labs, investigations, and practical incident response exercises.
  • No prior experience with Endpoint Detection and Response (EDR) tools or Security Operations Center (SOC) environments is required—this course is beginner-friendly and covers all essential concepts from the ground up.

Course Description

This course introduces you to the foundational concepts and practical workflows of incident detection and response with a strong emphasis on endpoint security. You will learn how security teams identify, analyze, contain, and document incidents using endpoint telemetry while preserving digital evidence. The course is designed to build the core skills required of a Junior SOC Analyst supporting incident response operations.


Course Outcomes

By the end of this course, you will be able to:

  • Explain the incident response lifecycle and its role in SOC operations

  • Identify security incidents using endpoint telemetry and alerts

  • Perform basic evidence handling and preservation activities

  • Apply endpoint-based containment actions safely and effectively

  • Support senior analysts during incident investigations

Course Curriculum

  • chapters
  • lectures
  • quizzes
  • 1 Hour 30 Min total length
Toggle all chapters
1 Introduction to Endpoint Security and Incident Response
30 Min


1 Incident Response Lifecycle (NIST Framework)
30 Min


1 Endpoint Telemetry and Alert Analysis
30 Min


1 Evidence Handling and Preservation
30 Min


1 Endpoint-Based Containment Techniques
30 Min


1 Incident Reporting and Communication
30 Min


1 Case Studies and Practical Scenarios
30 Min


Instructor

4.3 Rating
6 Reviews
948 Students
34 Courses

Course Full Rating

0

Course Rating
(0)
(0)
(0)
(0)
(0)

No Review found

Sign In or Sign Up as student to post a review

Student Feedback

You must be enrolled to ask a question

Students also bought

More Courses by Author

Discover Additional Learning Opportunities