Identify and mitigate potential weaknesses in systems, networks, and processes.
Monitor for malicious activities and respond to security incidents quickly and effectively.
Contain, Eradicate, and Recover from security incidents.
Educate employees about security risks and best practices.
Threat Intelligence
Digital Forensics
Incident Response
Notes
Linux
Tools
Autopsy (GUI)
Volatility (Memory Analysis)
Binwalk (Firmware Analysis)
Foremost (File Recovery)
Windows
Registry
Events
WMIC Command CheatSheet
PowerShell Cheatsheet
Linux
Security frameworks (and standards):
Are guidelines used to build plans to help mitigate risks and threats to the confidentiality, integrity, and availability of data and systems
Other frameworks provide guidance on how to detect and respond to security incidents.
Support an organisation's ability to adhere to compliance laws and regulations.
Security controls are safeguards designed to reduce specific security risks, e.g. implementation of MFA.