Home>Certifications>Certified Incident Handling Engineer

Certified Incident Handling Engineer

Description

The C)IHE – Certified Incident Handling Engineer course, is designed to help Incident Handlers, System Administrators, and Security Engineers understand how to plan, create, and utilize their systems to prevent, detect, and respond to attacks through the use of  mile2’s live hands-on Cyber Range.

Mile 2 C)IHE strictly follows NIST’s 800-61 to identify the four phases of incident response: (1) preparation for a cybersecurity incident, (2) detection and analysis of a security incident, (3) containment, eradication, and recovery, and (4) post-incident analysis.  With C)IHE’s in-depth certification training, the student will learn to develop start-to-finish processes for establishing an incident-handling team, strategizing for potential attack types, recovering from attacks, and much more.

Key Course Information

Live Class Duration: 5 Days
CEUs: 40
Language: English
Class Formats Available:

  • Instructor Led
  • Self-Study
  • Live Virtual Training

Suggested Prerequisites:

  • 12 months network technologies
  • Sound knowledge of networking and TCP/IP
  • Linux knowledge is

Who Should Attend

  • Penetration Testers
  • Microsoft Administrator
  • Security Administrators
  • Active Directory Administrators
  • Anyone looking to learn more about

Upon Completion

Upon completion, Certified Incident Handling Engineer students will know NIST’s 800-61 four incident handling phases, be able to accurately report on their findings, and be ready to sit for the C)IHE exam.

Modules/Lessons

  • Module 01: Incident Handling Explained
  • Module 02: Incident Response Policy, Plan and Procedure Creation
  • Module 03: Incident Response Team Structure
  • Module 04: Incident Response Team Services
  • Module 05: Incident Response Recommendations
  • Module 06: Preparation
  • Module 07: Detection and Analysis
  • Module 08: Containment, Eradication and Recovery
  • Module 09: Post Incident Activity
  • Module 10: Incident Handling Checklist
  • Module 11: Incident Handling Recommendations
  • Module 12: Coordination and Information Sharing

Exam Information

The Certified Network Principles exam is taken online through Mile2’s Learning Management System and is accessible on you Mile2.com account. 

A minimum grade of 70% is required for certification.

Labs

  • Lab 01: Identifying Incident Triggers
  • Lab 02: Drafting Incident Response Procedures
  • Lab 03: Identifying and Planning for Your Dependencies
  • Lab 04: Testing Your Plan and Using a Feedback Loop to Future Proof Your Response
  • Lab 05: Drafting General Security Policies
  • Lab 06: Leveraging SIEM for Advanced Analytics
  • Lab 07: Use Velociraptor and Gather Evidence
  • Lab 08: Creating Request Tracker Workflow
  • Lab 09: Lessons Learned and Documentation
  • Lab 10: Creating and Incident Handling Checklist
  • Lab 11: Drafting Incident Response Recommendations for Improvements
  • Lab 12: Sharing Agreements and Reporting Requirements

Re-Certification Requirements

All Mile2 certifications will be awarded a 3-year expiration date.

There are two requirements to maintain Mile2 certification:

  • Pass the most current version of the exam for your respective existing certification
  • Earn and submit 20 CEUs per year in your Mile2 account.

Course FAQ

No

Share it
Certified Incident Handling Engineer

Download Course Outline

This field is for validation purposes and should be left unchanged.
Name(Required)
This field is hidden when viewing the form

Got Questions? Talk to us

Name(Required)
This field is hidden when viewing the form