Skip to main content

Course

Detect, Respond, and Recover from Cloud Cybersecurity Attacks

Intermediate26 hr 15 min

In this course, you’ll focus on developing capabilities in logging, security, and alert monitoring, along with techniques for mitigating attacks.

R26 hr 15 min50 videos197 Exercises10,050 XP52Statement of accomplishment

Create Your Free Account

Continue with Google
or
By continuing, you accept our Terms of Use, our Privacy Policy and that your data is stored in the USA.

Loved by learners at thousands of companies

Training a Team?

Try for Business

Course Description

This is the fourth of five courses in the Google Cloud Cybersecurity Certificate. In this course, you’ll focus on developing capabilities in logging, security, and alert monitoring, along with techniques for mitigating attacks. You'll gain valuable knowledge in customizing threat feeds, managing incidents, handling crisis communications, conducting root cause analysis, and mastering incident response and post-event communications. Using Google Cloud tools, you'll learn to identify indicators of compromise and prepare for business continuity and disaster recovery. Alongside these technical skills, you'll continue updating your resume and practicing interview techniques.

Prerequisites

There are no prerequisites for this course

Curriculum

Course outline

1

Detection foundations

In this module, you’ll delve into crucial topics for detecting security activities, focusing on log retention policies, intrusion detection and prevention systems, and the intricacies of monitoring and alerts. You'll learn about incident management and attack mitigation strategies. Additionally, the section will guide you through logging fundamentals and monitoring best practices, equipping you with the knowledge to effectively manage and respond to security incidents.
Start Chapter
2

Detection in practice

In this module, you’ll delve into the intrusion kill chain, false positive analysis, and threat hunting techniques through the lens of incident management and attack mitigation. You’ll also learn how to create detection rules, use query tools to analyze logs and identify indicators of compromise (IoC).
Start Chapter
3

Incident response management and attack mitigation

In this module, you'll explore the entire incident response process. Additionally, you’ll gain essential skills in documenting information for various stakeholders, defining and conducting post-mortem analyses, and developing and executing automated playbooks. By the end of this course, you'll have a comprehensive understanding of the importance of automation in SecOps and be equipped with the necessary tools and knowledge to thrive in your chosen cloud security role.
Start Chapter
4

Incident recovery

In this module, you'll acquire a thorough understanding of disaster recovery planning and business continuity in the Google Cloud environment, ensuring data integrity and maintaining operations during a disaster, focusing on swift response strategies. This module will also guide you through the role of automation in detecting and responding to cyberattacks, the use of the business continuity and disaster recovery (BCDR) tool, and the criticality of recovery as a last resort.
Start Chapter
R

Detect, Respond, and Recover from Cloud Cybersecurity Attacks

Course
Complete

Earn Statement of Accomplishment

Enroll Now

Grow your data skills with DataCamp for Mobile

Make progress on the go with our mobile courses and daily 5-minute coding challenges.