As digital crime increases exponentially, the need for investigative expertise in both government and civilian sectors has increased proportionally as well. The Network Defense and Investigations Manager course provides students with methods and strategies to mitigate incident damage with efficient and effective response procedures, acquire crucial evidence in a forensically sound manner, identify and analyze the recovered evidence for relevant facts, and document and report details of the investigation in a manner consistent with professional industry standards. In many cases, the cybersecurity professional must also be prepared to offer expert witness testimony in civil and legal venues.
Comprised of 14 detailed chapters designed to align to a variety of training schedules, students are presented with topics such as Enterprise Network Devices and Services, Identity and Access Management, Biometric Security, Evidence Collection and Chain of Custody, Data Analysis, and Reporting and Documentation requirements. Students should have knowledge of basic networking and TCP/IP protocols, report writing and case documentation
Students will be prepared for the Identity and Access Management, Cryptography, Vulnerability Assessment, Risk Management, and Testing Scenario concepts presented in the next course in the track.