Part 1 PREPARING FOR THE INEVITABLE INCIDENT
1Real World Incidents
2IR Management Handbook
3Pre-Incident Preparation
Part 2 INCIDENT DETECTION AND CHARACTERIZATION
4Getting the Investigation Started
5Initial Development of Leads
6Discovering the Scope of the Incident
Part 3 DATA COLLECTION
7Live Data Collection
8Forensic Duplication
9Network Evidence
10Enterprise Services
Part 4 DATA ANALYSIS
11Analysis Methodology
12Investigating Windows Systems
13Investigating MacOS Systems
14Investigating Applications
15Malware Triage
16Report Writing
Part 5 REMEDIATION
17Remediation Introduction
18Remediation Case Studies
Part 6 APPENDICES
App AAnswers to Questions
App BIncident Response Forms
Kevin Mandia Director of Computer Forensics at Foundstone is a well-recognized forensics and incident response expert. Kevin leads Foundstone's premiere incident response and forensics services, delivering consulting and training services to Foundstone's clients. Prior to joining Foundstone, Kevin as a Special Agent with AFOSI specializing in computer intrusion cases. Upon leaving the AFOSI, Kevin developed a computer intrusion response course specifically designed at the request of the FBI. Kevin trained over 400 FBI agents as well as personnel from the State Department, the CIA, NASA, the U.S. Postal Service, the Air Force, and other Government Agencies. Kevin is a regular speaker at numerous forums, including the Interpol Computer Crime Conference and various conferences hosted by government agencies and law enforcement organizations. He is on the Editorial Board for the International Journal on Cyber Crime.
Ask a Question About this Product More... |