23 November 2021 to 27 January 2022
Europe/Amsterdam timezone

IT Forensics for System Admins - From Suspicion to Detection I

30 Nov 2021, 11:00


Mr Stefan Kelm (DFN-CERT)


So you or someone in your organisation notices "unusual system behaviour" or "suspicious network traffic" but you are not sure what to do about it? The first step in incident response usually is to ascertain whether or not the activity observed really is an incident. While there is no formal process or definition for doing so, there's a large number of locations for possible indicators to look for that may eventually make an incident. Participants will learn what the first steps to take after a compromise has been detected.

Presentation Materials

There are no materials yet.
