Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 14 hours
Course Outline
The Ransomware Landscape
- Evolution and emerging trends in ransomware operations
- Typical attack vectors, tactics, techniques, and procedures (TTPs)
- Identifying ransomware collectives and their associated affiliates
The Incident Lifecycle
- Initial intrusion and lateral movement across the network
- Stages of data exfiltration and encryption
- Communication patterns with threat actors post-attack
Negotiation Frameworks
- Core principles of cyber crisis negotiation
- Assessing adversary motivations and leverage points
- Strategic communication for containment and resolution
Applied Negotiation Scenarios
- Simulated engagements with threat actors to rehearse real-world dynamics
- Handling escalation and time-sensitive pressure during discussions
- Recording negotiation outcomes for future analysis and reference
Intelligence-Driven Defense
- Aggregation and correlation of ransomware indicators of compromise (IOCs)
- Leveraging threat intelligence platforms to enhance investigations and defenses
- Monitoring active ransomware groups and their campaigns
High-Pressure Decision Making
- Business continuity planning and legal compliance during an attack
- Collaboration with leadership, internal teams, and external partners
- Weighing the decision to pay versus pursuing data recovery pathways
Post-Incident Refinement
- Facilitating lessons learned sessions and reporting on the incident
- Strengthening detection and monitoring to deter future attacks
- Fortifying systems against known and emerging ransomware risks
Strategic Readiness & Advanced Intelligence
- Developing long-term threat profiles for ransomware groups
- Integrating external intelligence feeds into your defensive strategy
- Employing predictive analysis and proactive measures to outpace threats
Conclusion & Future Actions
Requirements
- Solid grasp of core cybersecurity principles
- Hands-on experience in incident response or Security Operations Center (SOC) workflows
- Working knowledge of threat intelligence concepts and associated tooling
Target Audience:
- Cybersecurity specialists focused on incident response
- Threat intelligence analysts
- Security teams preparing for potential ransomware incidents
Custom Corporate Training
Training solutions designed exclusively for businesses.
- Customized Content: We adapt the syllabus and practical exercises to the real goals and needs of your project.
- Flexible Schedule: Dates and times adapted to your team's agenda.
- Format: Online (live), In-company (at your offices), or Hybrid.
Price per private group, online live training, starting from 3200 € + VAT*
Contact us for an exact quote and to hear our latest promotions
Testimonials (2)
Clarity and pace of explanations
Federica Galeazzi - Aethra Telecomunications SRL
Course - AI-Powered Cybersecurity: Advanced Threat Detection & Response
It did give me the insight what I needed :) I am starting teaching on a BTEC Level 3 qualification and wanted to widen my knowledge in this area.