Get in Touch
 Duration 14 hours

Course Outline

The Ransomware Landscape

  • Evolution and emerging trends in ransomware operations
  • Typical attack vectors, tactics, techniques, and procedures (TTPs)
  • Identifying ransomware collectives and their associated affiliates

The Incident Lifecycle

  • Initial intrusion and lateral movement across the network
  • Stages of data exfiltration and encryption
  • Communication patterns with threat actors post-attack

Negotiation Frameworks

  • Core principles of cyber crisis negotiation
  • Assessing adversary motivations and leverage points
  • Strategic communication for containment and resolution

Applied Negotiation Scenarios

  • Simulated engagements with threat actors to rehearse real-world dynamics
  • Handling escalation and time-sensitive pressure during discussions
  • Recording negotiation outcomes for future analysis and reference

Intelligence-Driven Defense

  • Aggregation and correlation of ransomware indicators of compromise (IOCs)
  • Leveraging threat intelligence platforms to enhance investigations and defenses
  • Monitoring active ransomware groups and their campaigns

High-Pressure Decision Making

  • Business continuity planning and legal compliance during an attack
  • Collaboration with leadership, internal teams, and external partners
  • Weighing the decision to pay versus pursuing data recovery pathways

Post-Incident Refinement

  • Facilitating lessons learned sessions and reporting on the incident
  • Strengthening detection and monitoring to deter future attacks
  • Fortifying systems against known and emerging ransomware risks

Strategic Readiness & Advanced Intelligence

  • Developing long-term threat profiles for ransomware groups
  • Integrating external intelligence feeds into your defensive strategy
  • Employing predictive analysis and proactive measures to outpace threats

Conclusion & Future Actions

Requirements

  • Solid grasp of core cybersecurity principles
  • Hands-on experience in incident response or Security Operations Center (SOC) workflows
  • Working knowledge of threat intelligence concepts and associated tooling

Target Audience:

  • Cybersecurity specialists focused on incident response
  • Threat intelligence analysts
  • Security teams preparing for potential ransomware incidents

Custom Corporate Training

Training solutions designed exclusively for businesses.

  • Customized Content: We adapt the syllabus and practical exercises to the real goals and needs of your project.
  • Flexible Schedule: Dates and times adapted to your team's agenda.
  • Format: Online (live), In-company (at your offices), or Hybrid.
Investment

Price per private group, online live training, starting from 3200 € + VAT*

Contact us for an exact quote and to hear our latest promotions

Testimonials (2)

Provisional Upcoming Courses (Contact Us For More Information)

Related Categories