Applied Incident Response - Paperback >
/ Applied Incident Response - Paperback

Applied Incident Response - Paperback

Regular price$47.00
/
(Tax included. Shipping calculated at checkout.)
✔ Authenticity Guaranteed — Verified Designer Goods
✔ 100% Money-Back Guarantee on Eligible Items
✔ Prices Displayed in Your Local Currency
✔ Final Price = No Surprise Import Fees
✔ Complimentary Insured Worldwide Shipping on Qualifying Orders
✔ Select Collector & Specialty Pieces May Require Secured Delivery Handling
Our authentication process ensures every item meets strict luxury verification standards. Learn more
Complimentary worldwide shipping on qualifying orders

by Steve Anson (Author)

Incident response is critical for the active defense of any network, and incident responders need up-to-date, immediately applicable techniques with which to engage the adversary. Applied Incident Response details effective ways to respond to advanced attacks against local and remote network resources, providing proven response techniques and a framework through which to apply them. As a starting point for new incident handlers, or as a technical reference for hardened IR veterans, this book details the latest techniques for responding to threats against your network, including:

  • Preparing your environment for effective incident response
  • Leveraging MITRE ATT&CK and threat intelligence for active network defense
  • Local and remote triage of systems using PowerShell, WMIC, and open-source tools
  • Acquiring RAM and disk images locally and remotely
  • Analyzing RAM with Volatility and Rekall
  • Deep-dive forensic analysis of system drives using open-source or commercial tools
  • Leveraging Security Onion and Elastic Stack for network security monitoring
  • Techniques for log analysis and aggregating high-value logs
  • Static and dynamic analysis of malware with YARA rules, FLARE VM, and Cuckoo Sandbox
  • Detecting and responding to lateral movement techniques, including pass-the-hash, pass-the-ticket, Kerberoasting, malicious use of PowerShell, and many more
  • Effective threat hunting techniques
  • Adversary emulation with Atomic Red Team
  • Improving preventive and detective controls

Back Jacket

DEFEND YOUR NETWORK WITH IMMEDIATELY APPLICABLE INCIDENT RESPONSE SKILLS

Incident response is critical for the active defense of any network, and incident responders need up-to-date, actionable techniques with which to engage the adversary. Applied Incident Response details effective ways to respond to advanced attacks against local and remote network resources, providing proven response methods and a framework through which to implement them. Drawing on the author's experience investigating intrusions for the FBI, US Department of Defense (DoD), and many international organizations, this authoritative book covers the core skills needed for incident handling and active network defense, including triaging systems, acquiring memory, imaging disks, collecting network data, log analysis, memory forensics, disk forensics, network security monitoring, adversary emulation, threat hunting, and more. Examples focus on free and open-source tools, but introduce commercial alternatives as well.

As a starting point for new incident handlers, or as a technical reference for hardened incident response veterans, this book details the latest techniques for responding to threats against your network, including:

  • Preparing your environment for effective incident response
  • Leveraging MITRE ATT&CK and threat intelligence for active network defense
  • Local and remote triage of systems using PowerShell, WMIC, and open-source tools
  • Acquiring RAM and disk images locally and remotely
  • Analyzing RAM with Volatility and Rekall
  • Deep-dive forensic analysis of system drives using open-source or commercial tools
  • Leveraging Security Onion and Elastic Stack for network security monitoring
  • Techniques for log analysis and aggregating high-value logs
  • Static and dynamic analysis of malware with YARA rules, FLARE VM, and Cuckoo Sandbox
  • Detecting and responding to lateral movement techniques, including pass-the-hash, pass-the-ticket, Kerberoasting, malicious use of PowerShell, and many more
  • Effective threat hunting techniques
  • Adversary emulation with Atomic Red Team
  • Improving preventive and detective controls

Author Biography

Steve Anson is a SANS Certified Instructor and co-founder of leading IT security company Forward Defense. He has over 20 years of experience investigating cybercrime and network intrusion incidents. As a former US federal agent, Steve specialized in intrusion investigations for the FBI and DoD. He has taught incident response and digital forensics techniques to thousands of students around the world on behalf of the FBI Academy, US Department of State, and the SANS Institute. He has assisted governments in over 50 countries to improve their strategic and tactical response to computer-facilitated crimes and works with a range of multinational organizations to prevent, detect and respond to network security incidents.

Number of Pages: 464
Dimensions: 1 x 9.2 x 7.4 IN
Publication Date: January 29, 2020
  • In stock, ready to ship
  • Backordered, shipping soon
Shop with Confidence
  • ✔ Authenticity Guaranteed — Verified Designer Goods
  • ✔ Sourced from Authorized European/U.S. Luxury Distributors
  • ✔ Secure Checkout — SSL Encrypted Payments
  • ✔ Fast Global Delivery — 3–11 Business Days
  • ✔ Easy Returns on Eligible Items
  • ✔ 100% Money-Back Guarantee — Full Refund if Not Satisfied
Verified Trust Rating: 91/100
Amazon American Express Apple Pay Bancontact Diners Club Discover Google Pay Mastercard PayPal Shop Pay USDC Visa SSL Secure
Amazon Pay Logo Fast checkout with Amazon Pay. Use your Amazon account to skip entering shipping or card info.
Trusted by discerning buyers worldwide — secure, verified luxury sourcing

AUTHENTICITY GUARANTEED

Reserved for you — complete your purchase to secure this piece.

Authorized Designer Inventory Secure & Encrypted Checkout Tracked & Insured Delivery

OFFICIALLY AUTHORIZED RESELLER

Discover Officially Authorized Authentic Items at STORE7994.com - Certificates Available on Request!

Independently verified for store quality and customer safety.
Trust score: 91/100

All designer items offered by STORE 7994 are sourced from trusted luxury distributors and verified through independent authentication services.

Learn how STORE 7994 authenticates luxury items

Guaranteed Authentic — Includes Brand Documentation & Third-Party Verification Options.

Shipping information

  • Free Shipping* on all orders over $300 USD to most countries* Estimated delivery: 2-5 business days Mon-Sat to U.S., CA, EU etc.
  • Tracking available: DHL Express
  • Store 7994 Shipping policy
  • Global delivery in 3–9 business days (location dependent).
  • Free Worldwide Shipping $300+. International duties & VAT are calculated by destination country and may be collected upon delivery. UK orders are subject to 20% import VAT upon delivery.

Our innovation isn’t just in the brands we carry — it’s in the way we connect them. From our automation engine that keeps collections globally updated to our commitment to authenticity-first presentation, STORE 7994 exists where timeless design meets modern precision.

Every product we offer is:
Elevated · Intentional · Exclusive · Authentic

STORE 7994 is an authorized reseller of luxury fashion houses. Certificates and proof of authenticity are available to brand owners and partners upon request.

This site is protected by hCaptcha and the hCaptcha Privacy Policy and Terms of Service apply.

Returns & Refunds

We want you to shop with confidence at STORE 7994. If your purchase does not meet expectations, eligible items may be returned under the conditions below.

Return Eligibility
Items must be unused, unworn, and in original condition with all tags, packaging, and accessories included. Items showing any signs of wear or damage will not be accepted.

Return Window
Return requests must be made within 14 days of delivery.

Return Shipping
Customers are responsible for return shipping costs unless the item is defective, damaged, or incorrect.

Luxury Items
Items valued over $1,000 may be subject to a 7% restocking fee upon approved return.

Non-Returnable Items
For hygiene and product integrity reasons, the following items are final sale once opened or used:

• Underwear
• Fragrances
• Any worn or used items

Made-to-Order Items
Custom-designed products, including STORE 7994 hoodies, are made exclusively for each customer and are final sale. These items are not eligible for return or exchange unless defective or incorrect.

If you receive a defective or incorrect item, please contact us and we will make it right.

International Shipping & Duties
Many of our products ship directly from trusted international partners. Any applicable customs duties or import taxes are calculated at checkout and are non-refundable, even if the item is returned.

Returns & Associated Fees
All approved returns are subject to a $24 return processing fee. For international orders, duties, taxes, and return fees will be deducted from the original payment.

Shipping Policy
Complimentary shipping is offered on orders over $300. Orders below this threshold are subject to standard shipping rates at checkout.