Free

DFIR Operator Series: Windows Forensics 102

One course simply isn’t enough to cover Windows Forensics. Supercharge your Windows Forensics skills further by digging into DFIR on an enterprise scale with hundreds or thousands of endpoints, proactive threat hunting to root out adversaries, memory forensics, and more.
3
25
M
Time
intermediate
difficulty
3
ceu/cpe

Course Content

Identifying Normal System Behavior

41m

Identifying Normal System Behavior
Windows Artifact Analysis

40m

Windows Artifact Analysis
Enterprise Incident Response

41m

Enterprise Incident Response
Introduction to Memory Forensics

41m

Introduction to Memory Forensics
Identifying Compromised Systems and Anti-Forensics Behavior

41m

Identifying Compromised Systems and Anti-Forensics Behavior
Course Description

One course simply isn’t enough to cover Windows Forensics. Supercharge your Windows Forensics skills further by digging into DFIR on an enterprise scale with hundreds or thousands of endpoints, proactive threat hunting to root out adversaries, memory forensics, and more.

This course is part of a Career Path:
No items found.

Instructed by

Master Instructor
Marc Balingit

Marc has led, managed, and performed global incident response investigations focused on large-scale data breaches, system compromises, data exfiltration, ransomware, and malware outbreaks. He has worn many hats throughout his Incident Response career, including proactive and reactive services. Outside Blue Teaming, Marc is passionate about Vulnerability Research and Malware Analysis. He is a Technical SME at Cybrary, focusing on Threat Actors and Blue Teaming for course content.

Provider
Cybrary Logo
Certification Body
Certificate of Completion

Complete this entire course to earn a DFIR Operator Series: Windows Forensics 102 Certificate of Completion