DIGT060 - Preparing for the Worst: Cyber Incident Response and Organizational Resilience
Course Description
Prepare for, respond to, and recover from cybersecurity incidents. Through a blend of lectures, hands-on activities, and real-world case studies, participants will learn how to assess incident response capabilities, build and train effective response teams, develop comprehensive response plans, and strengthen overall organizational resilience against cyber threats. The course is suited to both technical and non-technical professionals seeking risk-based, actionable strategies for safeguarding organizational operations.
Course Outline
- Assess organizational cyber incident response capability requirements
- Identify and prioritize organizational cyber resiliency goals
- Analyze cyber incident response lifecycle models and conduct gap analyses
- Build and structure an effective cybersecurity incident response team
- Define key technical and non-technical roles, responsibilities, and training needs
- Leverage third-party incident response services for enhanced support
- Develop and outline robust cyber incident response plans aligned with business continuity and disaster recovery
- Plan and execute effective communications during cyber incidents and crises
Learner Outcomes
- Evaluate the state of organizational cyber resilience and identify critical improvement areas
- Apply industry-recognized incident response frameworks (NIST, SANS) to organizational contexts
- Perform capability gap analyses to inform strategic incident response investments
- Define essential team roles and establish clear responsibilities for incident response
- Design and recommend targeted training programs for incident response teams
- Assess benefits and risks of engaging external incident response providers
- Draft comprehensive, actionable cyber incident response plans tailored to organizational needs
- Communicate effectively across stakeholder groups during all phases of an incident response