CrowdStrike Course Details

INTRODUCTION

  • Who we are
  • Who you are
  • Administrative items
  • Course overview/agenda

INTEL OVERVIEW (REVIEW)

  • Review of Intel 101 (CST 330)

STRUCTURED ANALYSIS OVERVIEW

  • (Re) Introduction to Structured Analysis
  • Grouping of techniques by: method/use-case, collaborative effort, complexity
  • Structured argumentation
  • Habits of a “master thinker”

ORGANIZING TECHNIQUES

  • Sorting tools
  • Chronologies and timelines
  • Link charts and diagrams
  • Matrices

IMAGINATIVE THINKING

  • Brainstorming
  • Outside-In-thinking
  • Red Team analysis
  • Alternative futures analysis
  • Counterfactual reasoning
  • Morphological reasoning

DECISION MAKING

  • Event mapping
  • Event tree
  • Subjective probability
  • Weighted ranking
  • Argument mapping

DIAGNOSTIC TECHNIQUES

  • Key assumption check
  • Quality of information check
  • Indicators or signpost of change
  • Analysis of competing hypotheses
  • Adversary intentions matrix

CONTRARIAN TECHNIQUES

  • Devil’s advocacy
  • Team A/Team B
  • High-impact/low probability
  • What if?

Exam Details

  1. User Management
  2. Sensor Deployment
  3. Host Management
  4. Group Creation
  5. Prevention Policies
  6. Custom IOA Rules
  7. Sensor Update Policy
  8. Quarantine Files
  9. IOC Management
  10. Containment Policies
  11. Exclusions
  12. Reports
  13. Real Time Response Policy/Audit Logs
  14. API Clients and Keys
  15. Notification Workflow