Incident Response & Computer Network Forensics

Where cyber threat intelligence is focused on collecting and analyzing threats to the organization, incident response (IR) and network forensics deal with successful attacks and security events within the organization. If an attacker is able to breach your organization, there needs to be effective, structured plans of attack to deal with the event. Incident response outlines how these events are handled. Network forensics uses specific toolsets to examine the devices, networks and transactions involved in the event to provide pertinent information to examiners.

The document below was my final project for this course. The scenario involves personal information being posted on the internet. The report provides a structured process to respond to the incident and gather all information necessary. All of the examples are fictitious but represent a real-world event that could affect any organization.