Ep 11: Strictly Confidential

Ep 11: Strictly Confidential

Source: YouTube · Jack Rhysider · published Jan 19, 2018 · 19:28

Incident Response
No ratings yet Log in to rate
Transcript Available
Description

This episode of Darknet Diaries features Andrew, a District Forensics and Incident Response Consultant, who shares his high-stakes experiences tracking and removing malware from client networks 0:00.

Key Takeaways:
• Andrew's primary role involves being called into client networks after malware is detected to study the threat and safely remove it 0:05.
• The job can be intensely thrilling, with situations where incident responders find themselves on the same system as the threat actor, who is actively trying to move files around 0:23.
• Responders like Andrew are specifically trained to engage and thwart attackers in these direct, toe-to-toe digital confrontations 0:30.

The clip offers a brief but gripping look at the adrenaline-fueled reality of digital forensics and incident response work.

Sources:

  • 0:00 Introduction of Andrew and his job title
  • 0:05 Explanation of incident response duties after malware detection
  • 0:23 The thrill of sharing a system with an active threat actor
  • 0:30 Training to thwart attackers in real-time scenarios

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Incident Response. Commonly maps to: Security Operations, Security Assessment and Testing. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

JACK: Today we’re talking with Andrew. ANDREW: I’m a District Forensics 
and Incident Response Consultant. JACK: Andrew works on a team that 
does incident response. Once malware is detected on the network it’s up 
to him to go in, study the malware, and remove it. Andrew, do you 
like doing this kind of work? ANDREW: I love it. It’s wonderful. It’s very 
exciting work. There are many positions where you can be working on a client’s system 
and actually – the threat act is on there at the same time as you, trying to move 
files around. You are trained to thwart them in a toe-to-toe scenario. It can be 
very exciting. It can be very exciting. JACK (INTRO): [INTRO MUSIC] This 
is Darknet Diaries, true stories from the dark side of the internet. 
I’m Jack Rhysider. [INTRO MUSIC ENDS] JACK: An…