Lorsque vous vous inscrivez à ce cours, vous êtes également inscrit(e) à cette Spécialisation.
Apprenez de nouveaux concepts auprès d'experts du secteur
Acquérez une compréhension de base d'un sujet ou d'un outil
Développez des compétences professionnelles avec des projets pratiques
Obtenez un certificat professionnel partageable
Il y a 7 modules dans ce cours
The course "Advanced Network Analysis and Incident Response" equips learners with critical skills for effectively managing and responding to cyber threats. Through a blend of theoretical concepts and hands-on practice, participants will delve into advanced network situational awareness, network packet analysis, and incident response strategies aligned with organizational security policies.
What sets this course apart is its comprehensive approach to both the technical and strategic aspects of cybersecurity. Learners will engage with both government-off-the-shelf (GOTS) and commercial-off-the-shelf (COTS) tools, gaining practical experience in analyzing network traffic and implementing effective incident response protocols. The curriculum also incorporates real-world scenarios through tabletop exercises and emphasizes the application of the NIST Cybersecurity Framework and the SANS Incident Response Cycle.
By completing this course, learners will enhance their ability to detect, analyze, and respond to incidents effectively, preparing them for challenges in the dynamic field of cybersecurity. Whether you're aiming to advance your career or reinforce your skills, this course provides the knowledge and confidence needed to excel in network analysis and incident response.
This course provides a comprehensive exploration of network analysis and incident response strategies, focusing on the differentiation between Network Situational Awareness and Intrusion Detection Systems. Students will learn to apply anomaly detection techniques and utilize various network packet analysis tools. The curriculum includes developing alarm systems through Graph Analysis and interpreting key performance metrics like ROC analysis. Emphasis is placed on evaluating incident response mechanisms and understanding the implications of Artificial Intelligence in cybersecurity. Participants will also gain practical skills in applying the NIST Cybersecurity Framework and the SANS Incident Response Cycle to real-world scenarios.
Inclus
1 vidéo3 lectures
Afficher les informations sur le contenu du module
Differentiating Network Situational Awareness from NIDS•15 minutes
Applying Anomaly Detection to Large-Scale Network Analysis•15 minutes
Network Packet Analysis
Module 3•11 heures à terminer
Détails du module
This module introduces foundational concepts in Network Packet Analysis, providing insights into both government-off-the-shelf (GOTS) and commercial-off-the-shelf (COTS) tools used for analyzing network traffic.
Inclus
4 lectures3 devoirs6 plugins
Afficher les informations sur le contenu du module
4 lectures•Total 480 minutes
Reading References•180 minutes
Reading References•180 minutes
Self-Reflective Reading: Network Forensic Investigation and Packet Analysis•60 minutes
Self-Reflective Reading: Challenges in Network Packet Collection and Analysis•60 minutes
3 devoirs•Total 90 minutes
Network Packet Analysis•60 minutes
Introduction to Network Packet Analysis and Tools•15 minutes
Data Collection Techniques and the Role of Wireshark•15 minutes
6 plugins•Total 112 minutes
Introduction to Packet Analysis- Part 2: Network Protocols•5 minutes
Introduction to Packet Analysis- Part 3: UDP Packets•15 minutes
Introduction to Packet Analysis- Part 4: TCP Protocols•13 minutes
Introduction to Packet Analysis- Part 8 Capturing Network Traffic with TCPDump•14 minutes
Introduction to Packet Analysis- Part 8 Packet Analysis with Wireshark (Part 1)•30 minutes
Introduction to Packet Analysis- Part 8 Packet Analysis with Wireshark (Part 2)•35 minutes
ROC Analysis
Module 4•7 heures à terminer
Détails du module
This module will guide students through the process of conducting ROC analysis on IDS data and interpreting various graphical representations, including event graphs, precision-recall (P-R) graphs, and thresholds.
Inclus
6 vidéos3 lectures3 devoirs
Afficher les informations sur le contenu du module
6 vidéos•Total 70 minutes
Introduction•6 minutes
Overview of ROC Analysis•11 minutes
Event Graphs and Thresholds•18 minutes
Multiple Confusion Matrices Based on IDS Configuration•23 minutes
Error Rates•6 minutes
ROC and P-R Graphs•6 minutes
3 lectures•Total 280 minutes
Reading References•120 minutes
Reading References•120 minutes
Self-Reflective Reading: Deep Packet Inspection and Net Neutrality•40 minutes
3 devoirs•Total 90 minutes
ROC Analysis•60 minutes
ROC Analysis and IDS Performance Metrics•15 minutes
Challenges and Advanced Concepts in IDS Evaluation•15 minutes
Response
Module 5•7 heures à terminer
Détails du module
This module focuses on the importance of aligning response strategies with organizational security policies, while also evaluating the risks associated with automated responses.
Inclus
5 vidéos4 lectures3 devoirs
Afficher les informations sur le contenu du module
5 vidéos•Total 79 minutes
Introduction•3 minutes
Response Requirements•20 minutes
Response Types•17 minutes
IPS•20 minutes
Risks and Cautions for IPS•19 minutes
4 lectures•Total 260 minutes
Reading References•90 minutes
Reading References•90 minutes
Self-Reflective Reading: Balancing Technical and Non-Technical Responses to Intrusions•40 minutes
Self-Reflective Reading: Responses to IDS Alerts and Network Threat Management•40 minutes
3 devoirs•Total 90 minutes
Response•60 minutes
Understanding IDS Response Mechanisms•15 minutes
Implementing Custom Firewall Logic•15 minutes
Tabletop Exercise
Module 6•1 heure à terminer
Détails du module
This course explores the complexities of intrusion detection and response in constrained environments.
Inclus
1 vidéo2 devoirs
Afficher les informations sur le contenu du module
1 vidéo•Total 5 minutes
Introduction•5 minutes
2 devoirs•Total 75 minutes
Tabletop Exercise•60 minutes
Understanding IDS Response Mechanisms•15 minutes
Cyber Security Incident Response Management
Module 7•9 heures à terminer
Détails du module
This course delves into the application of the NIST Cybersecurity Framework (CSF) 2.0 and the SANS Incident Response Cycle in managing cyber incidents.
Inclus
6 lectures3 devoirs4 plugins
Afficher les informations sur le contenu du module
6 lectures•Total 420 minutes
Reading References•120 minutes
Reading References•120 minutes
Cybersecurity and AI: The Challenges and Opportunities•20 minutes
Incident Response Principles•60 minutes
Self-Reflective Reading: The Role of AI in Cybersecurity•40 minutes
Self-Reflective Reading: Case Study Analysis and Cyber Incident Response•60 minutes
Artificial Intelligence (AI) in Cybersecurity•6 minutes
Obtenez un certificat professionnel
Ajoutez ce titre à votre profil LinkedIn, à votre curriculum vitae ou à votre CV. Partagez-le sur les médias sociaux et dans votre évaluation des performances.
The mission of The Johns Hopkins University is to educate its students and cultivate their capacity for life-long learning, to foster independent and original research, and to bring the benefits of discovery to the world.
Pour quelles raisons les étudiants sur Coursera nous choisissent-ils pour leur carrière ?
Felipe M.
Étudiant(e) depuis 2018
’Pouvoir suivre des cours à mon rythme à été une expérience extraordinaire. Je peux apprendre chaque fois que mon emploi du temps me le permet et en fonction de mon humeur.’
Jennifer J.
Étudiant(e) depuis 2020
’J'ai directement appliqué les concepts et les compétences que j'ai appris de mes cours à un nouveau projet passionnant au travail.’
Larry W.
Étudiant(e) depuis 2021
’Lorsque j'ai besoin de cours sur des sujets que mon université ne propose pas, Coursera est l'un des meilleurs endroits où se rendre.’
Chaitanya A.
’Apprendre, ce n'est pas seulement s'améliorer dans son travail : c'est bien plus que cela. Coursera me permet d'apprendre sans limites.’
When will I have access to the lectures and assignments?
To access the course materials, assignments and to earn a Certificate, you will need to purchase the Certificate experience when you enroll in a course. You can try a Free Trial instead, or apply for Financial Aid. The course may offer 'Full Course, No Certificate' instead. This option lets you see all course materials, submit required assessments, and get a final grade. This also means that you will not be able to purchase a Certificate experience.
What will I get if I subscribe to this Specialization?
When you enroll in the course, you get access to all of the courses in the Specialization, and you earn a certificate when you complete the work. Your electronic Certificate will be added to your Accomplishments page - from there, you can print your Certificate or add it to your LinkedIn profile.
Is financial aid available?
Yes. In select learning programs, you can apply for financial aid or a scholarship if you can’t afford the enrollment fee. If fin aid or scholarship is available for your learning program selection, you’ll find a link to apply on the description page.