We may earn an affiliate commission when you visit our partners.
Course image
Kevin Henry
Read more

Traffic lights

Read about what's good
what should give you pause
and possible dealbreakers
Develops foundational skills for responding to and recovering from security incidents, which is essential for information security professionals
Taught by Kevin Henry, who is recognized for their work in information security
Examines industry standard risk management and control frameworks
Students taking this course could further their careers as information security professionals

Save this course

Create your own learning path. Save this course to your list so you can find it easily later.
Save

Activities

Coming soon We're preparing activities for Investigations and Incident Management. These are activities you can do either before, during, or after a course.

Career center

Learners who complete Investigations and Incident Management will develop knowledge and skills that may be useful to these careers:
Incident Response Manager
An Incident Response Manager is responsible for managing an organization's incident response program. The Investigations and Incident Management course can greatly assist an Incident Response Manager by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Information Security Analyst
An Information Security Analyst plans and implements security measures to protect an organization's computer networks and systems. The Investigations and Incident Management course can greatly assist an Information Security Analyst by teaching them how to detect, correct, and recover from security incidents.
Computer Security Specialist
A Computer Security Specialist is responsible for protecting an organization's computer systems and networks from unauthorized access, use, disclosure, disruption, modification, or destruction. The Investigations and Incident Management course can benefit a Computer Security Specialist by providing them with the skills and knowledge needed to investigate and respond to security incidents.
Incident Responder
An Incident Responder is responsible for responding to and resolving security incidents. The Investigations and Incident Management course can greatly assist an Incident Responder by teaching them how to investigate, contain, and remediate security incidents.
Forensic Analyst
A Forensic Analyst is responsible for investigating and analyzing computer systems and networks to identify and preserve evidence of security breaches. The Investigations and Incident Management course can greatly assist a Forensic Analyst by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Security Analyst
A Security Analyst is responsible for identifying, assessing, and mitigating security risks to an organization's information systems. The Investigations and Incident Management course can be helpful for a Security Analyst by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Risk Analyst
A Risk Analyst is responsible for identifying and assessing risks to an organization's information systems. The Investigations and Incident Management course can be helpful for a Risk Analyst by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Information Security Manager
An Information Security Manager is responsible for overseeing an organization's information security program. The Investigations and Incident Management course can be helpful for an Information Security Manager by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Penetration Tester
A Penetration Tester is responsible for testing the security of an organization's computer networks and systems. The Investigations and Incident Management course can be helpful for a Penetration Tester by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Security Consultant
A Security Consultant is responsible for providing security advice and guidance to organizations. The Investigations and Incident Management course can be helpful for a Security Consultant by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Cybersecurity Architect
A Cybersecurity Architect is responsible for designing and implementing security measures to protect an organization's computer networks and systems. The Investigations and Incident Management course can be helpful for a Cybersecurity Architect by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Chief Information Security Officer (CISO)
A Chief Information Security Officer (CISO) is responsible for overseeing an organization's information security program. The Investigations and Incident Management course can be helpful for a CISO by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Security Operations Manager
A Security Operations Manager is responsible for managing an organization's security operations. The Investigations and Incident Management course can be helpful for a Security Operations Manager by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Cybersecurity Engineer
A Cybersecurity Engineer is responsible for designing, implementing, and maintaining security measures to protect an organization's computer networks and systems. The Investigations and Incident Management course can be helpful for a Cybersecurity Engineer by providing them with the knowledge and skills needed to investigate and respond to security incidents.
Chief Security Officer (CSO)
A Chief Security Officer (CSO) is responsible for overseeing an organization's security program. The Investigations and Incident Management course can be helpful for a CSO by providing them with the knowledge and skills needed to investigate and respond to security incidents.

Reading list

We haven't picked any books for this reading list yet.
Covers incident management in the healthcare industry and provides guidance on how to manage incidents in a healthcare setting.
Covers incident management in the government sector and provides guidance on how to manage incidents in a government environment.
Covers incident management in the small business sector and provides guidance on how to manage incidents in a small business.
Covers incident management in the enterprise sector and provides guidance on how to manage incidents in an enterprise environment.
Covers incident management for managed service providers and provides guidance on how to manage incidents for clients.
This is the official guide for the ITIL 4 framework, which provides a comprehensive and widely adopted approach to IT Service Management, including a significant focus on Incident Management as a core practice. It is essential for gaining a broad understanding of the principles and concepts underpinning modern IT service delivery and incident handling within that context. is commonly used as a textbook for IT service management courses and foundational text for anyone pursuing ITIL certification.
Written by the pioneers of SRE at Google, this book provides deep insights into the practices and principles that enable Google to run highly reliable systems at scale. It includes valuable chapters specifically dedicated to incident management, emergency response, and postmortem culture. is highly relevant for those interested in the SRE approach to incident management and is considered a must-read for SRE professionals.
As a companion to the 'Site Reliability Engineering' book, this workbook offers practical exercises and deeper dives into implementing SRE principles. It provides actionable guidance on topics relevant to incident management, such as defining SLOs, managing on-call, and conducting effective postmortems. is valuable for those looking to apply SRE concepts to their incident management practices.
Well-regarded guide covering the entire lifecycle of incident response and computer forensics. It delves into practical aspects of data collection, analysis, and remediation in the context of cybersecurity incidents. It's a comprehensive resource for understanding the technical details involved in responding to security breaches and is often referenced by security professionals.
Focuses on integrating threat intelligence into the incident response process. It explains how to use intelligence analysis techniques to better understand adversaries and improve response strategies. This is particularly relevant for contemporary cybersecurity incident management and valuable resource for security analysts and incident responders.
Known as a practical field guide for defensive security professionals, this handbook provides concise tactical advice and procedures for incident response. It covers various frameworks and provides detailed steps for incident detection and analysis. useful quick reference during active incidents and is well-suited for security operations center (SOC) analysts.
Offers a practical approach to incident response, focusing on real-world scenarios and techniques. It valuable resource for practitioners looking to enhance their skills in handling and investigating security incidents. It bridges the gap between theoretical concepts and practical application.
Is considered a foundational text in network security monitoring and incident detection. It provides in-depth knowledge of how to monitor network traffic to identify malicious activity and is highly relevant for the detection phase of incident response. It valuable resource for security analysts and network defenders.
This official publication from NIST provides guidelines and recommendations for organizations on how to handle security incidents. It outlines the incident response lifecycle and key activities. While not a traditional book, it crucial and authoritative document widely referenced in the field and provides a solid framework for building an incident response capability. This must-read for anyone involved in establishing or maturing an incident response program.
While a novel, this book provides a highly relatable story about an IT organization struggling with common issues, including incidents. It introduces key concepts from DevOps and IT service management that are directly applicable to improving incident management processes and the overall IT operation. It's an excellent book for understanding the broader context in which incident management operates and is often recommended for IT professionals at all levels.
Draws parallels between IT incident management and incident command systems used in emergency response fields like the fire service. It offers a different perspective on organizing and leading teams during incidents, emphasizing clear roles and communication. This book can provide valuable insights for improving the structure and execution of incident response teams.
Focuses on incident management in the cloud environment and covers topics such as cloud-specific incident management challenges and best practices.

Share

Help others find this course page by sharing it with your friends and followers:

Similar courses

Similar courses are unavailable at this time. Please try again later.
Our mission

OpenCourser helps millions of learners each year. People visit us to learn workspace skills, ace their exams, and nurture their curiosity.

Our extensive catalog contains over 50,000 courses and twice as many books. Browse by search, by topic, or even by career interests. We'll match you to the right resources quickly.

Find this site helpful? Tell a friend about us.

Affiliate disclosure

We're supported by our community of learners. When you purchase or subscribe to courses and programs or purchase books, we may earn a commission from our partners.

Your purchases help us maintain our catalog and keep our servers humming without ads.

Thank you for supporting OpenCourser.

© 2016 - 2025 OpenCourser