Academy | Syllabus
EC-Council Certified Incident Handler (E|CIH) v3
Offered by EC-Council, EC-Council Certified Incident Handler (E|CIH) is a comprehensive specialist-level program that imparts knowledge and skills that organizations need to effectively handle post breach consequences by reducing the impact of incident, from both a financial and a reputational perspective. The E|CIH training program offered by Multimatics is designed to help participants understand all the stages involved in incident handling and the response process. The training material is prepared based on the latest edition of E|CIH v3, accompanied by discussions and exercises to work on the questions.
Multimatics is an Authorized Training Center for the EC-Council Certified Incident Handler (E|CIH) v3 training and certification program accredited by the EC-Council.
Trusted by OrganizationsProven by Professionals
+21
Years of Experiences
+6.000
Delivered Training Programs
+50.000
Professionals
90%
Exam Pass Rate
Program Details
Durations
The program is a 5-day intensive training class.
Method of Delivery
The program provided by Multimatics will be delivered through interactive presentation by professional instructor(s), group debriefs, individual and team exercises, behavior modelling and roleplays, one-to-one and group discussion, case studies, and projects.
Who Should Attend?
The program is designed for mid-level to high-level cybersecurity professionals, including Penetration Testers, Vulnerability Assessment Auditors, Risk Assessment Administrators, Network Administrators, Application Security Engineers, Cyber Forensic Investigators/Analyst and SOC Analyst, System Administrators/Engineer, Firewall Administrators and Network Managers/IT Managers, etc.
Program Objectives
By the end of the program, participants will be able to:
- Understand the key issues plaguing the information security world
- Learn to combat different types of cybersecurity threats, attack vectors, threat actors and their motives
- Learn the fundamentals of incident management including the signs and costs of an incident
- Understand the fundamentals of vulnerability management, threat assessment, risk management, and incident response automation and orchestration
- Master all incident handling and response best practices, standards, cybersecurity frameworks, laws, acts, and regulations
- Decode the various steps involved in planning an incident handling and response program
- Gain an understanding of the fundamentals of computer forensics and forensic readiness
- Comprehend the importance of the first response procedure including evidence collection, packaging, transportation, storing, data acquisition, volatile and static evidence collection, and evidence analysis
- Understand anti-forensics techniques used by attackers to find cybersecurity incident cover-ups
- Apply the right techniques to different types of cybersecurity incidents in a systematic manner including malware incidents, email security incidents, network security incidents, web application security incidents, cloud security incidents, insider threat-related incidents, and endpoint security-related incidents
Examination Details
Duration
5 Days
Format
- Open BookClose Book
Level
Advanced
Passing Grade
65%
Program Modules
Introduction to Incident Handling and Response
Topic Covered
- Understand Information Security Threats and Attack Vectors
- Explain Various Attack and Defense Frameworks
- Understand Information Security Concepts
- Understand Information Security Incidents
- Understand the Incident Management Process
- Understand Incident Response Automation and Orchestration
- Describe Various Incident Handling and Response Best Practices
- Explain Various Standards Related to Incident Handling and Response
- Explain Various Cybersecurity Frameworks
- Understand Incident Handling Laws and Legal Compliance