Training

This page will serve as a curated list of DFIR related Trainings.

CourseVendorCertificationLengthPrice
Investigating Windows Endpoints13CubedInvestigating Windows Endpoints (Gold, Silver, Bronze)Self Paced$695
Investigating Windows Memory13CubedInvestigating Windows Memory (Gold, Silver, Bronze)Self Paced$795
Investigating Linux Devices13CubedInvestigating Linux Devices (Gold, Silver, Bronze)Self Paced$895
Investigating Windows Bundle13CubedVariousSelf Paced$1,395
XPlat Bundle13CubedVariousSelf Paced$2,195
201: Practical Windows Forensics DIY EditionBlue Cape SecurityN/ASelf Paced$129
201: Practical Windows Forensics Online Labs EditionBlue Cape SecurityN/ASelf Paced$199
101: Enterprise Security FundamentalsBlue Cape SecurityN/ASelf Paced$299
101 / 201 HERO BundleBlue Cape SecurityN/ASelf Paced$449
Incident Response in the AWS CloudInvictus Incident ResponseN/ASelf Paced€1,650
Microsoft 365 Incident Response TrainingInvictus Incident ResponseN/ASelf Paced€799
Microsoft Azure Incident Response TrainingInvictus Incident ResponseN/ASelf Paced€799
Incident Response in the Microsoft Cloud TrainingInvictus Incident ResponseN/ASelf Paced€1,500
Theme: Incident ResponseRangeForceN/ASelf PacedFree
Theme: Reverse EngineeringRangeForceN/ASelf PacedFree
Theme: Phishing & Business Email CompromiseRangeForceN/ASelf PacedFree
Theme: CVEs and Emerging ThreatsRangeForceN/ASelf PacedFree
SEC275: Foundations: Computers, Technology, & SecuritySANSGIAC Foundational Cybersecurity Technologies (GFACT)Self Paced$3,400
SEC301: Introduction to Cyber SecuritySANSGIAC Information Security Fundamentals (GISF)5 Days$8,409
SEC401: Security Essentials - Network, Endpoint, and CloudSANSGIAC Security Essentials (GSEC)
GIAC Experienced Cyber Security (GX-CS)
6 Days$9,504
$1,299 ($499 for active GSEC Certification Holders)
SEC406: Linux Security for InfoSec ProfessionalsSANSN/A5 Days$8,409
SEC450: Blue Team Fundamentals: Security Operations and AnalysisSANSGIAC Security Operations Certified (GSOC)6 Days$9,504
SEC504: Hacker Tools, Techniques, and Incident HandlingSANSGIAC Certified Incident Handler (GCIH)
GIAC Experienced Incident Handler (GX-IH)
6 Days$9,504
$1,299 ($499 for active GCIH Certification Holders)
FOR498: Digital Acquisition and Rapid TriageSANSGIAC Battlefield Forensics and Acquisition (GBFA)6 Days$9,504
FOR500: Windows Forensic AnalysisSANSGIAC Certified Forensic Examiner (GCFE)
GIAC Experienced Forensics Examiner (GX-FE)
6 Days$9,504
$1,299 ($499 for active GCFE Certification Holders)
FOR508: Advanced Incident Response, Threat Hunting, and Digital ForensicsSANSGIAC Certified Forensic Analyst (GCFA)
GIAC Experienced Forensics Analyst (GX-FA)
6 Days$9,504
$1,299 ($499 for active GCFA Certification Holders)
FOR509: Enterprise Cloud Forensics and Incident ResponseSANSGIAC Cloud Forensics Responder (GCFR)6 Days$9,504
FOR518: Mac and iOS Forensic Analysis and Incident ResponseSANSGIAC iOS and macOS Examiner (GIME)6 Days$9,504
FOR528: Ransomware and Cyber ExtortionSANSN/A4 Days$6,795
FOR572: Advanced Network Forensics: Threat Hunting, Analysis, and Incident ResponseSANSGIAC Network Forensic Analyst (GNFA)6 Days$9,504
FOR577: LINUX Incident Response and Threat HuntingSANSN/A6 Days$9,504
FOR578: Cyber Threat IntelligenceSANSGIAC Cyber Threat Intelligence (GCTI)6 Days$9,504
FOR585: Smartphone Forensic Analysis In-DepthSANSGIAC Advanced Smartphone Forensics Certification (GASF)6 Days$9,504
FOR589: Cybercrime IntelligenceSANSN/A5 Days$8,020
FOR608: Enterprise-Class Incident Response & Threat HuntingSANSGIAC Enterprise Incident Response (GEIR)6 Days$9,504
FOR610: Reverse-Engineering Malware: Malware Analysis Tools and TechniquesSANSGIAC Reverse Engineering Malware Certification (GREM)6 Days$9,504
FOR710: Reverse-Engineering Malware: Advanced Code AnalysisSANSN/A5 Days$8,525
Blue Team Level 1Security Blue TeamBlue Team Level 1 Junior Security Operations CertificationSelf Paced£399
Blue Team Level 2Security Blue TeamBlue Team Level 2 Advanced Security Operations CertificationSelf Paced£1,999
Certified Security Operations Manager (CSOM)Security Blue TeamCertified Security Operations Manager (CSOM)Self Paced£1,999
Practical Windows ForensicsTCM SecurityN/ASelf PacedSubscription
iOS Reversing & Exploitation ARM64XINTRAN/ASelf Paced$1,950
Attacking and Defending Azure & M365XINTRAN/ASelf Paced$1,550
Attacking and Defending Azure & M365XINTRAN/A2 Days$3,000
Advanced APT Threat Hunting & Incident ResponseXINTRAN/A2 Days$3,000