DAY 4
Cyber Defense & Incident Response
Move into the defender role: monitor, detect, investigate and respond to security events.
01Open →
02Open →
03Open →
04Open →
05Open →
06Open →
07Open →
Cyber Defense Fundamentals
Move from attacker perspective to detection, investigation, containment and recovery.
45 min · Defense-flow simulationFirewall Security
Understand inbound/outbound rules, ports, protocols and allow/deny decisions.
50 min · Rule-decision simulationSecurity Log Analysis
Read timestamps, users, source IPs and event types to reconstruct suspicious activity.
55 min · Incident timeline analysisBuild a Python Security Log Analyzer
Use Python dictionaries and loops to summarize repeated authentication failures.
65 min · Browser Python log analyzerFile Integrity Monitoring
Detect unexpected content changes by comparing known-good and current cryptographic hashes.
60 min · Browser integrity monitorIDS, IPS & SOC Fundamentals
Understand how monitoring systems turn traffic and events into alerts and defensive action.
55 min · Alert triage simulationIncident Response & Final Investigation
Investigate a simulated sequence of failed logins, account access and file modification using the incident-response lifecycle.
75 min · Final incident challenge