<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Incident Response (SOC, CSIRT, CERT, IRT) &#8211; Free &amp; Affordable DFIR, OSINT, &amp; Cybersecurity Training</title>
	<atom:link href="https://training.dfirdiva.com/listing-category/incident-response/feed" rel="self" type="application/rss+xml" />
	<link>https://training.dfirdiva.com</link>
	<description>Free &#38; Affordable DFIR, OSINT, &#38; Cybersecurity Training</description>
	<lastBuildDate>Sun, 15 Mar 2026 21:23:26 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://training.dfirdiva.com/wp-content/uploads/2021/09/cropped-DFIRDivaLogoTwitterMultiBkg-32x32.png</url>
	<title>Incident Response (SOC, CSIRT, CERT, IRT) &#8211; Free &amp; Affordable DFIR, OSINT, &amp; Cybersecurity Training</title>
	<link>https://training.dfirdiva.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Threat Hunting Labs</title>
		<link>https://training.dfirdiva.com/listing/threat-hunting-labs</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Sun, 15 Mar 2026 20:58:21 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=3170</guid>

					<description><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="(max-width: 1200px) 100vw, 1200px" /></p>Name &#38; Direct Link: Threat Hunting Labs Cost: $0 &#8211; $281/year Community: There is a Discord community Description: A training platform built for threat hunters, SOC analysts, incident responders, and detection engineers who want to train the way they actually work. Every investigation runs against real intrusion telemetry from sanitized breach cases, inside a platform-native search&#8230;]]></description>
										<content:encoded><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="(max-width: 1200px) 100vw, 1200px" /></p><p><strong>Name &amp; Direct Link: <a href="https://www.threathuntinglabs.com/">Threat Hunting Labs</a></strong></p>
<p><strong>Cost</strong>: $0 &#8211; $281/year</p>
<p><strong>Community</strong>: There is a Discord community</p>
<p><strong>Description</strong>: A training platform built for threat hunters, SOC analysts, incident responders, and detection engineers who want to train the way they actually work. Every investigation runs against real intrusion telemetry from sanitized breach cases, inside a platform-native search console where you write real queries, form hypotheses, and validate findings with evidence. No synthetic noise or contrived puzzles. Just investigations that force you to think, adapt, and prove your conclusions.</p>
<p><strong>Topics</strong>:</p>
<p>Threat Hunting Labs covers four core disciplines, all built on the same rich, real-world datasets:</p>
<ul>
<li><strong>Threat Hunting:</strong> Proactively search through telemetry to find evil, form hypotheses, and follow the trail wherever it leads.</li>
<li><strong>Incident Response:</strong> Respond to a critical alert, triage the damage, and make time-pressured decisions with real consequences.</li>
<li><strong>Detection Engineering:</strong> Move beyond finding evil to codifying it. Write and tune detection rules against real attack patterns.</li>
<li><strong>Malware Analysis:</strong> Go hands-on with malware from the intrusion in a secure, dedicated REMnux environment tied to the case telemetry.</li>
</ul>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>SOC Analyst Professional &#8211; Foundations (TrainSec)</title>
		<link>https://training.dfirdiva.com/listing/soc-analyst-professional-foundations-trainsec</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Sat, 02 Aug 2025 20:44:45 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=3076</guid>

					<description><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="(max-width: 1200px) 100vw, 1200px" /></p>Name &#38; Affiliate Link*: SOC Analyst Professional &#8211; Foundations Platform: TrainSec Course Instructor: Uriel Kosayev Cost: $500 Proof of Completion: Certification of Completion Community/Forum: There is a Discord community Topics Include: Computer Fundamentals Computer Hardware BIOS Operating System Boot Order Windows Processes Windows Registry Windows Services File System Networking Fundamentals Transmission Types LAN vs WAN Communication&#8230;]]></description>
										<content:encoded><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p><p><strong>Name &amp; Affiliate Link*: <a href="https://training.trainsec.net/soc-analyst-professional-level-1/21jhc">SOC Analyst Professional &#8211; Foundations</a></strong></p>
<p><strong>Platform</strong>: TrainSec</p>
<p><strong>Course Instructor:</strong> <a href="https://twitter.com/MalFuzzer">Uriel Kosayev</a></p>
<p><strong>Cost:</strong> $500</p>
<p><strong>Proof of Completion</strong>: Certification of Completion</p>
<p><strong>Community/Forum</strong>: There is a <a href="https://discord.gg/qugcNyWdaU">Discord</a> community</p>
<p><strong>Topics Include</strong>:</p>
<ul>
<li>Computer Fundamentals</li>
<li>Computer Hardware</li>
<li>BIOS</li>
<li>Operating System Boot Order</li>
<li>Windows Processes</li>
<li>Windows Registry</li>
<li>Windows Services</li>
<li>File System</li>
<li>Networking Fundamentals</li>
<li>Transmission Types</li>
<li>LAN vs WAN</li>
<li>Communication Methods</li>
<li>OSI Model vs TCP-IP Model</li>
<li>ARP Protocol</li>
<li>Networking Layers</li>
<li>Packet Sniffing &amp; Analysis</li>
<li>Introduction to Wireshark</li>
<li>Using Netstat for Triage</li>
<li>Network Miner</li>
<li>Nmap and NBTscan</li>
<li>Introduction to Virtualization</li>
<li>Hypervisor Type 1 vs Hypervisor Type 2</li>
<li>VMWare NICs and Services</li>
<li>Bridged vs NAT</li>
<li>Creating a Virtual Machine</li>
<li>Windows &amp; Active Directory</li>
<li>Deploying Windows 10 and Windows Server</li>
<li>ICMP, Firewalls and More</li>
<li>Taking Snapshots</li>
<li>The 5 FSMO Roles</li>
<li>DNS</li>
<li>DHCP</li>
<li>Kerberos</li>
<li>Group Policy</li>
<li>GPO Bypass and Hardening</li>
<li>Linux Essentials</li>
<li>Installing Kali Linux</li>
<li>Linux File System</li>
<li>Linux Users &amp; Groups</li>
<li>Linux Processes</li>
<li>Linux Network Commands</li>
<li>Linux Logs Monitoring</li>
<li>Shell Scripting</li>
</ul>
<hr />
<p>*DFIR Diva is an affiliate of TrainSec and receives a small percentage of sales made through affiliate links that go toward keeping the site running.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Digital Forensics &#038; Incident Response in the Cloud Bootcamp (INE)</title>
		<link>https://training.dfirdiva.com/listing/digital-forensics-incident-response-in-the-cloud-bootcamp-ine</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Fri, 16 Aug 2024 02:53:43 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=2899</guid>

					<description><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p>Name &#38; Direct Link: Digital Forensics &#38; Incident Response in the Cloud Bootcamp Platform: INE Cost: This course is part of the INE Premium ($749/year) subscription* Topics: Digital Forensics &#38; Imaging Chain of Custody &#38; Authority Evidence Collection Memory Forensics Logs &#38; Network Analysis Cloud Infrastructure Cloud Incident Response Cloud Playbook Incident Response Lifecycle &#38;&#8230;]]></description>
										<content:encoded><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p><p><strong>Name &amp; Direct Link: <a href="https://my.ine.com/CyberSecurity/courses/e25f7da6/digital-forensics-incident-response-in-the-cloud-bootcamp">Digital Forensics &amp; Incident Response in the Cloud Bootcamp</a></strong></p>
<p><strong>Platform</strong>: INE</p>
<p><strong>Cost:</strong> This course is part of the <a href="https://get.ine.com/plans-dfirdiva">INE Premium ($749/year) subscription*</a></p>
<p><strong>Topics</strong>:</p>
<ul>
<li>Digital Forensics &amp; Imaging</li>
<li>Chain of Custody &amp; Authority</li>
<li>Evidence Collection</li>
<li>Memory Forensics</li>
<li>Logs &amp; Network Analysis</li>
<li>Cloud Infrastructure</li>
<li>Cloud Incident Response</li>
<li>Cloud Playbook</li>
<li>Incident Response Lifecycle &amp; Roles</li>
<li>Threats &#8211; Hunting &amp; Intelligence</li>
</ul>
<hr />
<p>*DFIR Diva is a partner of INE and receives a small percentage of sales made through partner links that go toward keeping the site running.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>MYDFIR SOC Analyst Course</title>
		<link>https://training.dfirdiva.com/listing/mydfir-soc-analyst-course</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Wed, 19 Jun 2024 05:57:57 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=2860</guid>

					<description><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p>Name &#38; Direct Link: MYDFIR SOC Analyst Course Platform: MyDFIR Academy Cost: $499.97 Proof of Completion: Certificate of Completion Topics: Cybersecurity Fundamentals and Refreshers Introduction to the Security Operations Center Frameworks Pyramid of Pain Indicators of Compromise OSINT Art of Investigations Job Readiness]]></description>
										<content:encoded><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p><p><strong>Name &amp; Direct Link: <a href="https://academy.mydfir.com/p/soc">MYDFIR SOC Analyst Course</a></strong></p>
<p><strong>Platform</strong>: MyDFIR Academy</p>
<p><strong>Cost</strong>: $499.97</p>
<p><strong>Proof of Completion</strong>: Certificate of Completion</p>
<p><strong>Topics:</strong></p>
<ul>
<li>Cybersecurity Fundamentals and Refreshers</li>
<li>Introduction to the Security Operations Center</li>
<li>Frameworks</li>
<li>Pyramid of Pain</li>
<li>Indicators of Compromise</li>
<li>OSINT</li>
<li>Art of Investigations</li>
<li>Job Readiness</li>
</ul>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>13Cubed Certified: Investigating Linux Devices</title>
		<link>https://training.dfirdiva.com/listing/13cubed-certified-investigating-linux-devices</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Tue, 18 Jun 2024 04:20:30 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=2856</guid>

					<description><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p>Name &#38; Direct Link: Investigating Linux Devices Certification Information: Certifications and Digital Badges Platform: 13Cubed Cost: $895 Exam Type: Hands-On/Multiple Choice Topics Covered: Introduction to Linux Linux Logs Linux File Systems Persistence Mechanisms Evidence Collection Timelining Linux Memory Forensics Live Response Analyzing a Compromised System]]></description>
										<content:encoded><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p><p><strong>Name &amp; Direct Link: <a href="https://training.13cubed.com/investigating-linux-devices">Investigating Linux Devices</a></strong></p>
<p><strong>Certification Information: <a href="https://training.13cubed.com/certifications">Certifications and Digital Badges</a></strong></p>
<p><strong>Platform</strong>: 13Cubed</p>
<p><strong>Cost</strong>: $895</p>
<p><strong>Exam Type</strong>: Hands-On/Multiple Choice</p>
<p><strong>Topics Covered</strong>:</p>
<ul>
<li>Introduction to Linux</li>
<li>Linux Logs</li>
<li>Linux File Systems</li>
<li>Persistence Mechanisms</li>
<li>Evidence Collection</li>
<li>Timelining</li>
<li>Linux Memory Forensics</li>
<li>Live Response</li>
<li>Analyzing a Compromised System</li>
</ul>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Network Forensic Fundamentals (Phil Hagen)</title>
		<link>https://training.dfirdiva.com/listing/network-forensic-fundamentals-phil-hagen</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Sat, 18 May 2024 05:40:04 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=2826</guid>

					<description><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p>Name &#38; Direct Link: Network Forensic Fundamentals Platform: YouTube Topics: The PCAP File Format The Berkeley Packet Filter (BPF) tcpdump Wireshark Wireshark Options Wireshark Display Filters tshark Introduction to Simple Labs]]></description>
										<content:encoded><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p><p><strong>Name &amp; Direct Link: <a href="https://www.youtube.com/playlist?list=PLkb5lfjv-rnDZ-13i13BTRIdhXoGeyT99">Network Forensic Fundamentals</a></strong></p>
<p><strong>Platform:</strong> YouTube</p>
<p><strong>Topics:</strong></p>
<ul>
<li>The PCAP File Format</li>
<li>The Berkeley Packet Filter (BPF)</li>
<li>tcpdump</li>
<li>Wireshark</li>
<li>Wireshark Options</li>
<li>Wireshark Display Filters</li>
<li>tshark</li>
<li>Introduction to Simple Labs</li>
</ul>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Introduction to AWS Threat Detection (LinkedIn Learning)</title>
		<link>https://training.dfirdiva.com/listing/introduction-to-aws-threat-detection-linkedin-learning</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Sat, 18 May 2024 04:42:41 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=2820</guid>

					<description><![CDATA[<p><img width="512" height="512" src="https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray.png 512w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-300x300.png 300w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-150x150.png 150w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-200x200.png 200w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-400x400.png 400w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-100x100.png 100w" sizes="auto, (max-width: 512px) 100vw, 512px" /></p>Name &#38; Direct Link: Introduction to AWS Threat Detection Platform: LinkedIn Learning Instructor: Day Johnson Cost: $34.99 Topics: MITRE Cloud Matrix Log Analysis in AWS CloudTrail Log Analysis Investigating Compute Threats Investigating IAM Threats Investigating Storage Threats Investigating Logging and Monitoring Threats Amazon GuardDuty]]></description>
										<content:encoded><![CDATA[<p><img width="512" height="512" src="https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray.png 512w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-300x300.png 300w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-150x150.png 150w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-200x200.png 200w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-400x400.png 400w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DarkGray-100x100.png 100w" sizes="auto, (max-width: 512px) 100vw, 512px" /></p><p><strong>Name &amp; Direct Link: <a href="https://www.linkedin.com/learning/introduction-to-aws-threat-detection" data-wplink-edit="true">Introduction to AWS Threat Detection</a></strong></p>
<p><strong>Platform</strong>: LinkedIn Learning</p>
<p><strong>Instructor</strong>: Day Johnson</p>
<p><strong>Cost</strong>: $34.99</p>
<p><strong>Topics</strong>:</p>
<ul>
<li>MITRE Cloud Matrix</li>
<li>Log Analysis in AWS</li>
<li>CloudTrail Log Analysis</li>
<li>Investigating Compute Threats</li>
<li>Investigating IAM Threats</li>
<li>Investigating Storage Threats</li>
<li>Investigating Logging and Monitoring Threats</li>
<li>Amazon GuardDuty</li>
</ul>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Incident Responder Learning Path (LetsDefend)</title>
		<link>https://training.dfirdiva.com/listing/incident-responder-learning-path-letsdefend</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Mon, 08 Apr 2024 02:14:05 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=2748</guid>

					<description><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p>Name &#38; Direct Link: Incident Responder Learning Path Platform: LetsDefend Cost: $39.99/month – $359/year Proof of Completion: Certificate of Completion Community: There is a LetsDefend Discord server Student Discount: They have Special Pricing for Students (50% off) Topics: Cybersecurity Incident Handling Guide Incident Response on Windows Incident Response on Linux IR &#8211; Malware &#8211; Event ID: 139 Hacked Web&#8230;]]></description>
										<content:encoded><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p><p><strong>Name &amp; Direct Link: <a href="https://training.dfirdiva.com/listing/detection-engineering-path-letsdefend">Incident Responder Learning Path</a></strong></p>
<p><strong>Platform</strong>: LetsDefend</p>
<p><strong>Cost</strong>: $39.99/month – $359/year</p>
<p><strong>Proof of Completion:</strong> Certificate of Completion</p>
<p><strong>Community:</strong> There is a <a href="https://discord.com/invite/NxU3uwHZtd">LetsDefend Discord server</a></p>
<p><strong>Student Discount</strong>: <a href="https://app.letsdefend.io/student-pricing">They have Special Pricing for Students (50% off)</a></p>
<p><strong>Topics:</strong></p>
<ul>
<li>Cybersecurity Incident Handling Guide</li>
<li>Incident Response on Windows</li>
<li>Incident Response on Linux</li>
<li>IR &#8211; Malware &#8211; Event ID: 139</li>
<li>Hacked Web Server Analysis</li>
<li>SA &#8211; Web Attack &#8211; Event ID: 115</li>
<li>Log Analysis with Sysmon</li>
<li>Forensic Acquisition and Triage</li>
<li>Memory Forensics</li>
<li>Memory Analysis</li>
<li>Registry Forensics</li>
<li>Event Log Analysis</li>
<li>IR &#8211; Malware &#8211; Event ID: 101</li>
<li>Browser Forensics</li>
<li>Suspicious Browser Extention</li>
<li>GTFOBins</li>
<li>Hunting AD Attacks</li>
<li>Writing a Report on a Security Incident</li>
<li>How to Prepare a Cyber Crisis Management Plan?</li>
</ul>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Placing the Suspect Behind the Keyboard: DFIR Investigative Mindset (Brett Shavers)</title>
		<link>https://training.dfirdiva.com/listing/placing-the-suspect-behind-the-keyboard-dfir-investigative-mindset-brett-shavers</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Sun, 07 Apr 2024 22:06:31 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=2741</guid>

					<description><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p>Book Title: Placing the Suspect Behind the Keyboard: DFIR Investigative Mindset Author: Brett Shavers Book Website: Placing the Suspect Behind the Keyboard Where to Buy: Amazon* Chapters Include: Technical Skills Tech Prowess Knowledge Rules of Civil/Criminal Procedure Rules of Evidence Evidence is not only just evidence Does evidence prove or disprove theories? Self-Assessment Who are&#8230;]]></description>
										<content:encoded><![CDATA[<p><img loading="lazy" decoding="async" class="alignnone size-medium wp-image-2752" src="https://training.dfirdiva.com/wp-content/uploads/2024/04/DFIRInvMindset-191x300.png" alt="" width="191" height="300" srcset="https://training.dfirdiva.com/wp-content/uploads/2024/04/DFIRInvMindset-191x300.png 191w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DFIRInvMindset-128x200.png 128w, https://training.dfirdiva.com/wp-content/uploads/2024/04/DFIRInvMindset.png 365w" sizes="auto, (max-width: 191px) 100vw, 191px" /></p>
<p><strong>Book Title</strong>: Placing the Suspect Behind the Keyboard: DFIR Investigative Mindset</p>
<p><strong>Author</strong>: Brett Shavers</p>
<p><strong>Book Website</strong>: <a href="https://www.suspectbehindthekeyboard.com/">Placing the Suspect Behind the Keyboard</a></p>
<p><strong>Where to Buy</strong>:</p>
<p><a href="https://amzn.to/3xlTXPA">Amazon</a>*</p>
<p><strong>Chapters Include</strong>:</p>
<ul>
<li>Technical Skills
<ul>
<li>Tech Prowess</li>
</ul>
</li>
<li>Knowledge
<ul>
<li>Rules of Civil/Criminal Procedure</li>
<li>Rules of Evidence</li>
<li>Evidence is not only just evidence</li>
<li>Does evidence prove or disprove theories?</li>
</ul>
</li>
<li>Self-Assessment
<ul>
<li>Who are you?</li>
<li>Curiosity</li>
<li>Your Identity</li>
<li>Other DFIR investigative traits</li>
<li>Your brain</li>
<li>Assessing your team</li>
<li>Self-assessment rating</li>
</ul>
</li>
<li>Senses
<ul>
<li>Perceptions &amp; perspectives</li>
<li>Seeing &amp; observing</li>
<li>Hearing &amp; listening</li>
</ul>
</li>
<li>Hacking Your Mind
<ul>
<li>Critical thinking</li>
<li>Creative thinking</li>
<li>Visual thinking</li>
<li>Additional thinking models</li>
<li>Critical reading</li>
<li>Logic and reasoning</li>
<li>Cognition and ignorance</li>
<li>Theories and hypothesis</li>
<li>Think</li>
<li>Bias</li>
<li>Fallacies and reasoning errors</li>
</ul>
</li>
<li>Tactics
<ul>
<li>Old school &amp; high tech</li>
<li>Checklists &amp; procedures</li>
<li>The Investigative Cycle(s)</li>
<li>Live Cycles, Kill Chains, &amp; Crime Scripting</li>
<li>Profiling</li>
<li>Identity</li>
<li>Link analysis</li>
<li>Notetaking</li>
<li>Problem-solving</li>
<li>Visualization to see the case</li>
</ul>
</li>
<li>Strategies
<ul>
<li>Micro and Macro</li>
<li>Decision-making</li>
<li>Focus and distractions</li>
<li>Correlation and causation</li>
<li>Targeting and pivoting</li>
<li>Errors and mistakes</li>
<li>Dumb ideas and terrible solutions</li>
<li>Words (and choice of words) matter</li>
</ul>
</li>
<li>Transformation
<ul>
<li>Scenario-based training</li>
<li>Visualization drills</li>
<li>Writing and speaking</li>
<li>Memory &amp; documentation</li>
<li>Case studies</li>
<li>Unconscious competence?</li>
<li>Shadowing</li>
<li>Daily life of a critical thinker</li>
<li>Peer review</li>
</ul>
</li>
<li>Wisdom
<ul>
<li>Know yourself &amp; seek self-improvement</li>
<li>Technical competence is your responsiblity</li>
<li>Hack your brain</li>
<li>Hack the adversary</li>
<li>Personal and professional accountability</li>
<li>Ethics and corruption</li>
<li>Credibility and reliability</li>
<li>Faults and competence</li>
<li>Pitfalls and self-made traps</li>
</ul>
</li>
<li>Education &amp; Training
<ul>
<li>You need both training and education in DFIR</li>
</ul>
</li>
<li>AI as the Investigator</li>
<li>Time to Liftoff
<ul>
<li>Obstacles to developing a DFIR Investigative Mindset</li>
</ul>
</li>
<li>Conclusion
<ul>
<li>My last bit of guidance for you</li>
</ul>
</li>
</ul>
<hr />
<p>*As an Amazon Associate I earn from qualifying purchases. This helps with the cost of running this website.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>DFIR Labs (The DFIR Report)</title>
		<link>https://training.dfirdiva.com/listing/dfir-labs-the-dfir-report</link>
		
		<dc:creator><![CDATA[DFIR Diva]]></dc:creator>
		<pubDate>Sat, 06 Apr 2024 05:57:59 +0000</pubDate>
				<guid isPermaLink="false">https://training.dfirdiva.com/?post_type=job_listing&#038;p=2686</guid>

					<description><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p>Name &#38; Direct Link: DFIR Labs Platform: The DFIR Report Cost: $14.99 &#8211; $29.99 Student Discount: Students get 30% off. Instructions can be found HERE. Proof of Completion: Certificate and Badge upon completing the lab and quiz. Description: Analyze logs related to published DFIR Reports.]]></description>
										<content:encoded><![CDATA[<p><img width="1200" height="630" src="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR.png 1200w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-300x158.png 300w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-1024x538.png 1024w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-768x403.png 768w, https://training.dfirdiva.com/wp-content/uploads/2021/09/PurpleDFIR-400x210.png 400w" sizes="auto, (max-width: 1200px) 100vw, 1200px" /></p><p><strong>Name &amp; Direct Link: <a href="https://thedfirreport.com/services/dfir-labs/">DFIR Labs</a></strong></p>
<p><strong>Platform</strong>: The DFIR Report</p>
<p><strong>Cost</strong>: $14.99 &#8211; $29.99</p>
<p><strong>Student Discount</strong>: Students get 30% off. Instructions can be found <a href="https://thedfirreport.com/services/dfir-labs/">HERE</a>.</p>
<p><strong>Proof of Completion</strong>: Certificate and Badge upon completing the lab and quiz.</p>
<p><strong>Description:</strong> Analyze logs related to published <a href="https://thedfirreport.com/">DFIR Reports</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
