Opleiding: Masterclass: Incident Response in the Cloud [IRC]
OVERVIEW
Virtual Learning
This interactive training can be taken from any location, your office or home and is delivered by a trainer. This training does not have any delegates in the class with the instructor, since all delegates are virtually connected. Virtual delegates do not travel to this course, Global Knowledge will send you all the information needed before the start of the course and you can test the logins.
OBJECTIVES
- Understand Azure security and cloud incident response fundamentals.
- Detect, investigate, and respond to attacks targeting Azure, Entra ID, and hybrid environments.
- Analyze identity, infrastructure, and network-based threats in cloud environments.
- Use KQL, Microsoft Sentinel, and Graph API for threat hunting and incident investigation.
- Apply incident response processes aligned with the National Institute of Standards and Technology framework.
- Implement remediation, hardening, and cloud security best practices.
- Gain hands-on experience through practical labs and real-world attack scenarios.
AUDIENCE
The course is perfect for security architects, Entra ID administrators, security administrators, and security auditors.
Enterprise administrators, infrastructure architects, security professionals, systems engineers, network administrators, IT professionals, security consultants and other people responsible for implementing network and perimeter security.
CERTIFICATION
- After completing the course, participants will receive a CQURE Certificate of Completion and will also be eligible for CPE points.
CONTENT
Module One: Azure Security and Incident Response FundamentalsModule Two: Deep Dive into Entra ID and Governance
Module Three: Core Controls, Benchmarks, and Logging
Module Four: Reconnaissance and Initial Access
Module Five: Infrastructure and Network Attacks
Module Six: Execution and Privilege Escalation
Module Seven: Advanced Identity Attacks and Credential Access
Module Eight: Persistence Technique
Module Nine: Exfiltration and Impact
Module Ten: KQL for Incident Response
Module Eleven: Advanced Hunting and Detection
Module Twelve: Graph API for Incident Response
Module Thirteen: Responding to Azure Attacks (NIST)
Module Fourteen: Remediation and Strategic Hardening
Module Fifteen: Advanced and Strategic Best Practices