Cybersecurity – Attack and Defense Strategies:Infrastructure security with Red Team and Blue Team tactics
by:Yuri Diogenes – Erdal Ozkaya
Release Finelybook 出版日期：2018-01-30
Publisher Finelybook 出版社：Packt
The book will start talking about the security posture before moving to Red Team tactics, where you will learn the basic syntax for the Windows and Linux tools that are commonly used to perform the necessary operations. You will also gain hands-on experience of using new Red Team techniques with powerful tools such as python and PowerShell, which will enable you to discover vulnerabilities in your system and how to exploit them. Moving on, you will learn how a system is usually compromised by adversaries, and how they hack user’s identity, and the various tools used by the Red Team to find vulnerabilities in a system.
In the next section, you will learn about the defense strategies followed by the Blue Team to enhance the overall security of a system. You will also learn about an in-depth strategy to ensure that there are security controls in each network layer, and how you can carry out the recovery process of a compromised system. Finally, you will learn how to create a vulnerability management strategy and the different techniques for manual log analysis.
By the end of this book, you will be well-versed with Red Team and Blue Team techniques and will have learned the techniques used nowadays to attack and defend systems.
2:INCIDENT RESPONSE PROCESS
3:UNDERSTANDING THE CYBERSECURITY KILL CHAIN
5:COMPROMISING THE SYSTEM
6:CHASING A USER’S IDENTITY
13:INVESTIGATING AN INCIDENT
What You Will Learn
Learn the importance of having a solid foundation for your security posture
Understand the attack strategy using cyber security kill chain
Learn how to enhance your defense strategy by improving your security policies, hardening your network, implementing active sensors, and leveraging threat intelligence
Learn how to perform an incident investigation
Get an in-depth understanding of the recovery process
Understand continuous security monitoring and how to implement a vulnerability management strategy
Learn how to perform log analysis to identify suspicious activities
Yuri Diogenes is a professor at EC-Council University for their master’s degree in cybersecurity program. Yuri has a master of science degree in cybersecurity from UTICA College, and MBA from FGV Brazil. Yuri currently holds the following certifications CISSP, CyberSec First Responder, CompTIA CSA+, E|CEH, E|CSA, E|CHFI, E|CND, CyberSec First Responder, CompTIA, Security+, CompTIA Cloud Essentials, Network+, Mobility+, CASP, CSA+, MCSE, MCTS, and Microsoft Specialist – Azure.
Erdal Ozkaya is a Doctor of IT in Cybersecurity, Master of information systems security, hold many industry certifications such as CEI, MCT, MCSE, E|CEH, E|CISO and CFR. He works for Microsoft as a Cybersecurity Architect & Security Advisor and is also, a part-time lecturer at Australian Charles Sturt University. He has coauthored many cybersecurity books as well as security certification courseware’s for different vendors and speaks in worldwide conferences. He has won many awards in his field and works hard to make the Cyberworld safe.