CIS Critical Security Control 17: Incident Response Management
Welcome to our course series on CIS Top 18 Critical Security Controls v8. In this course covering control 17: Incident Response Management, you'll adopt best practices for establishing and maintaining an incident response plan (IRP). Crawl, walk, and run in routine incident response exercises!
Already have an account? Sign In »

2.2Establish and Maintain an Incident Response Process
2.3Conduct Routine Incident Response Exercises
These security controls can be combined with frameworks, like NIST SP 800-37 (The NIST Risk Management Framework-RMF) to provide organizations with defense-in-depth best practices.
This course will help prepare students for industry certifications around the CIS Security Controls. You will see an overview of each control, map the controls to the NIST Cybersecurity Framework, and gain hands-on practice in secure, scenario-based lab environments.
Prerequisites
This course is designed for IT security professionals who want to expand their knowledge and skills in the area of development and implementation of security controls. Prerequisites include an existing knowledge of networking and knowledge of their organization’s security requirements.
Course Goals
By the end of this course, students should be able to:
- Explain the concept of security controls
- Enumerate the eighteen (18) areas of critical security controls
- Implement technical security controls related to these areas



Complete this entire course to earn a CIS Critical Security Control 17: Incident Response Management Certificate of Completion
Competency Areas