Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Cyber Security Threat Intelligence Researcher Preview
Rating: 4.2 out of 5(2,083 ratings)
50,708 students

Cyber Security Threat Intelligence Researcher Preview

Learn to intelligently detect and take down cyber threats
Last updated 2/2017
English

What you'll learn

  • a high level overview of the 7 threat intelligence phases
  • Hunting - The goal of hunting is to establish techniques to collect samples from different sources that help to start profiling malicious threat actors.
  • Features Extraction - goal of Features Extraction is to identify unique Static features in the binaries that help to classify them into a specific malicious group.
  • Behavior Extraction - The goal of Behavior Extraction is to identify unique Dynamic features in the binaries that help to classify them into a specific malicious group.
  • Clustering and Correlation - The goal of Clustering and Correlation is to classify malware based on Features and Behavior extracted and correlate the information to understand the attack flow.
  • Threat Actor Attribution - The goal of Threat Actors is to locate the threat actors behind the malicious clusters identified.
  • Tracking - The goal of tracking is to anticipate new attacks and identify new variants proactively.
  • Taking Down - The goal of Taking down is to Dismantled Organized Crime Operations.

Course content

1 section16 lectures1h 42m total length
  • Course Intro3:57
  • Phases Overview Part 13:40

    Welcome to the first class in the phases overview, in this class and the subsequent course we will be introducing you to the phases in the threat intelligence certificate. 

  • Phases Overview Part 25:40

    This class will continue going over the phases of threat intelligence research. 

  • Phases Overview Part 35:29

    This class will continue going over the phases of threat intelligence research. 

  • Hunting Part 16:11

    In This class we will give you an overview of the first two phases of Threat Intelligence and Features Extraction, The goal of hunting is to establish techniques to collect samples from different sources that help to start profiling malicious threat actors. The goal of Features Extraction is to identify unique Static features in the binaries that help to classify them into a specific malicious group.

  • Hunting Part 29:22

    This class will continue going over the hunting phase of threat intelligence research. 

  • Features Extraction Part 17:50

    This class will go over the second phase of threat intelligence research, Features Extraction. The goal of Features Extraction is to identify unique Static features in the binaries that help to classify them into a specific malicious group.

  • Features Extraction Part 27:17

    This class will continue going over the features extraction phase of threat intelligence research.

  • Behavior Extraction Part 16:53

    In this class we will go over the third phase of threat, Behavior Extraction. The goal of Behavior Extraction is to identify unique Dynamic features in the binaries that help to classify them into a specific malicious group.

  • Behavior Extraction Part 25:54

    This class will continue going over the behavior extraction phase of threat intelligence research. 

  • Behavior Extraction Part 36:45

    This class will continue going over the behavior extraction phase of threat intelligence research. 

  • Clustering and Correlation8:04

    This class goes over the fourth phase of threat intelligence, Clustering and Correlation. The goal of Clustering and Correlation is to classify malware based on Features and Behavior extracted and correlate the information to understand the attack flow.

  • Threat Actor Attribution Part 15:27

    This class goes over the fifth phase of threat intelligence, Threat Actor Attribution. The goal of Threat Actors is to locate the threat actors behind the malicious clusters identified.

  • Threat Actor Attribution Part 25:58

    This class will continue going over the Threat Actor Attribution phase of threat intelligence research. 

  • Tracking5:46

    This class goes over the sixth phase of threat intelligence, Tracking. The goal of tracking is to anticipate new attacks and identify new variants proactively.

  • Taking Down8:12

    This class goes over the final phase of threat intelligence, Taking Down. The goal of Taking down is to Dismantled Organized Crime Operations

Requirements

  • Familiar with cyber exploits and breaches that have occurred in the public

Description

Welcome to this FREE course preview of the Cyber Security Threat Intelligence Researcher Certification.

The Cyber Security Threat Intelligence Researcher Certification will help you acquire the skills needed to find out who is behind an attack, what the specific threat group is, the nation from which the attack is being launched, as well as techniques being used to launch this attack.

You will know how to take a small piece of malware, find out who is responsible for launching it, the threat actor location and also how to take down that threat actor, with the support of your local law enforcement.

In today’s cyber security landscape, it isn't possible to prevent every attacks. Today’s attackers have significant funding, are patient, sophisticated, and target vulnerabilities in people and processes as well as technologies. With organizations increasingly relying on digitized information and sharing vast amounts of data across the globe, they have become easier targets for many different forms of attack. As a result, every company’s day-to-day operations, data and intellectual property are seriously at risk. In a corporate context, a cyber attack can not only damage your brand and reputation, it can also result in loss of competitive advantage, create legal/regulatory noncompliance and cause steep financial damage.

Today’s secure environment will have vulnerabilities in it tomorrow, so an organization cannot allow itself to become complacent. There is only so much an organization can do by defending itself against threats that have already occurred. If an organization only reacts to new threats as they come up, are likely acting too late. It is important to understand and prioritize cyber threat intelligence processes, and how they can be integrated into an organization’s security operations in a way that adds value. 

Cyber threat intelligence (CTI) is an advanced process enabling organizations to gather valuable insights based on analysis of contextual and situational risks. These processes can be tailored to the organization’s specific threat landscape, industry and market. This intelligence can make a significant difference to organizations' abilities to anticipate breaches before they occur. Giving organizations the ability to respond quickly, decisively and effectively to confirmed breaches allows them to proactively maneuver defense mechanisms into place, prior to and during the attack.

In this course, we’ll introduce you to the 8 phases of threat intelligence:

  • Hunting - The goal of hunting is to establish techniques to collect samples from different sources that help to start profiling malicious threat actors.
  • Features Extraction - The goal of Features Extraction is to identify unique Static features in the binaries that help to classify them into a specific malicious group.
  • Behavior Extraction - The goal of Behavior Extraction is to identify unique Dynamic features in the binaries that help to classify them into a specific malicious group.
  • Clustering and Correlation -  The goal of Clustering and Correlation is to classify malware based on Features and Behavior extracted and correlate the information to understand the attack flow.
  • Threat Actor Attribution - The goal of Threat Actors is to locate the threat actors behind the malicious clusters identified.
  • Tracking - The goal of tracking is to anticipate new attacks and identify new variants proactively.
  • Taking Down - The goal of Taking down is to Dismantled Organized Crime Operations.

Who this course is for:

  • anyone interested in preventing cyber threats