DESCRIPTION:
This course will equip attendees with practical analyst skills in Cyber Threat Intelligence (CTI) using MISP, one of the most widely used Threat Intelligence Platforms (TIP) in the industry. MISP is a powerful, open-source platform that organizations can use to store, share, and receive structured information about malware, threats, and vulnerabilities.
Participants will explore the rationale behind various analyst tasks and engage in real-world scenarios to see how responder teams effectively utilize CTI through MISP.
They will learn to extract valuable insights from intelligence feeds and master the formulation of strategic questions to maximize organizational benefits. The program will also emphasize the importance of contributing to the TIP, teaching participants how to create queries and share intelligence effectively.
With a strong focus on intelligence sharing, participants will gain essential insights into what information can be shared, how to share it, and with whom, for different operational needs. Access to the MISP platform will be provided, enabling participants to practice and complete assignments that reinforce their learning.
With the generous support of the Global Gateway initiative of the European Union, this course is offered for free for selected participants.
LEARNING OBJECTIVES:
Upon completion of this course, participants will be able to:
- Argue about activities cyber threat analyst is doing.
- Quantify own practical value of CTI in daily operations.
- Formulate questions to research in CTI datasets.
- Plan justification and creation/collection of own CTI datasets.
- Use MISP for situational awareness, most common cyber threat intelligence tasks.
- Encode typical cyberthreat artifacts into MISP (for ex. scams, phishing, impersonation, technical attacks).
TARGET POPULATION:
This training course is intended for incident response specialists and managers who are working in SOC or CISRT.
Strongly encourage registrations from female applicants, and applicants from developing countries (including least developed countries, small island developing states, and landlocked developing countries).
ENTRY REQUIREMENTS:
Members of the above-mentioned target population are invited to apply for the training if they meet the following criteria:
- Have basic knowledge on cyber threat Intelligence or an analyst job role.
- Possess a fluent level of English.
- Complete the application questionnaire and attach an up-to-date CV
Government officials and policymakers from developing countries, particularly women, are encouraged to apply. Selection will be conducted by the course organizers, who will consider the above entry requirements along with an analysis of the applications.
The number of available places is limited to 30 in this course.
TRAINING DATE: 20 Jan 2025 - 10 Feb 2025
DURATION: 22 days
REGISTRATION DEADLINE: 06 Jan 2025
TRAINING TYPE: Online instructor led
LANGUAGE: English
TRAINING FEE: $ 0.00
TRAINING ORGANIZER: NRD Cyber Security (NRDCS)
SUPPORTED BY: Global Gateway
For more information:
https://academy.itu.int/training-courses/full-catalogue/practicing-cyber-threat-intelligence-cti-analyst-skills-0