Course Overview
    This hands-on course is designed for computer investigation and information security professionals, providing instruction on using Guidance Software’s EnCase Cybersecurity solution for incident analysis and response, data risk mitigation, and data policy compliance techniques. The EnCase Cybersecurity solution provides powerful network-enabled incident response capabilities and forensic-grade data risk assessments to expose and remediate any undiscovered threat — whether it be the latest custom malware, suspicious insider activity, or errant sensitive data..
    The techniques taught in this course enable students to greatly reduce the risk, cost, and time associated with exposing and recovering from threats designed to evade layered security solutions and the process of identifying and securing sensitive data. Upon completion of this course you will be able to use EnCase Cybersecurity to:
    • Reduce data-security noncompliance risk and cost
    • Reduce the risk and cost of damage that advanced malware causes to data assets
    • Reduce the time associated with successfully resolving security incidents
    This course will teach students how to rapidly respond to high priority events, and focus in on malicious code designed to evade traditional layered security solutions and perimeter defenses. Students will learn how to expose zero-day threats and other hard to expose advanced hacking techniques, including iterations of morphing malware, injected .dll files, covert root kits, and insider threats — whether inadvertent or malicious. Students will learn how to triage for, identify, analyze, remediate, and recover from these threats.
    Students will also learn how to assess and control endpoint risk in the form of intellectual property (IP) or personal identifying information (PII) in unauthorized locations. Students will be able to search across networks, targeting sensitive or confidential data of interest (such as credit card numbers, account numbers, intellectual property, or classified data). Students will have the ability to understand where and how sensitive data is stored, and enforce data policy by wiping sensitive data from unauthorized locations.

    The course will cover the following topics:
CPE Credits
    32
Training Level
    Intermediate
Prerequisite
    Please note that this course is product-specific. The EnCase® Enterprise course or our previously offered Field Intelligence Model Investigations course are prerequisites for the Cybersecurity course. Students should have a good understanding of network topology and TCP/IP. Advance preparation for this course is not required
Who Should Attend
  • This course is intended for corporate and government/law enforcement investigators and network security personnel. Incident response supervisors and team members are encouraged to attend, as are individuals working in a data audit, policy enforcement or network intrusion investigation role. An understanding of the concepts of computer forensics and familiarity with the EnCase® Enterprise software is required. Knowledge of computer networking hardware, protocols, and concepts is helpful, but not required. Class curriculum is designed to provide a good overview of using EnCase Cybersecurity as a data-centric, cyberforensic solution for incident response and risk management.
Tuition
  • Tuition is $2,995.00 USD per student.
  • See Class Details for Actual Tuition Costs
    Endpoint visibility as a critical component of a security and response plan
    Incident response techniques and considerations
    Insider threats, what to look for and how to respond
    Triage and containment of computer incidents involving distributed networks
    System integrity assessments, as a means to expose undiscovered threats
    Impact and implications of advanced malware
    Cutting edge infiltration techniques and how to spot them
    Data obfuscation techniques and how to uncover them
    Audit and protect other types of sensitive data such as IP/PII, e.g., credit card numbers, account numbers, etc.
    Data spillage mitigation and data policy enforcement
    Remediation techniques
    Perform internal investigations such as those dealing with fraud or HR matters
Syllabus


SELECT LOCATION  SELECT DATE COURSE INFORMATION

DIRECTIONS
For more information regarding refund concerns and program cancellation policies, contact Guidance Software Training at training@guidancesoftware.com or call 626.229.9191 ext. 566.