DFIR Diva

DFIR Related Events for Beginners – December, 2020

This is geared toward beginners but there is something for all skill levels. All events listed are virtual. Type “free” in the search box to only show free events. Type “under” in the search box to show events under $50. Be sure to hit the “Load More Events” button until you see “No More Events”. If I missed something when I originally posted this, I’ll add it, so check back or subscribe for updates. CLICK THE “LOAD MORE EVENTS” BUTTON TO SEE ALL EVENTS Ongoing CTFs and challenges have been moved to the Free Training site. Ongoing Events Magnet Forensics...

Continue reading...

My Experience With Recon Infosec’s NDR Training

I had the opportunity to attend Recon Infosec’s first Network Defense Range (NDR) Training on November 16th and 17th. They also run an awesome competition called OpenSOC. I participated in OpenSOC for the first time three months earlier and LOVED it, so I was very excited for this training. It did not disappoint. I attended the two-day Essentials course taught by Eric Capuano. Eric is an excellent instructor who is very passionate about what he teaches. Discord was used for the training. Prior to this year I hadn’t even heard of Discord, but by the time I attended this training,...

Continue reading...

DFIR Related Events for Beginners – October, 2020

This is geared toward beginners but there’s something for all skill levels. All events listed are virtual. Type “free” in the search box to only show free events. Type “under” in the search box to show events $50 and under. Be sure to hit the “Load More Events” button until you see “No More Events”. If I missed something when I originally posted this, I’ll add it, so check back or subscribe for updates. Ongoing Events & Training are at the bottom of this page. CLICK THE “LOAD MORE EVENTS” BUTTON TO SEE ALL EVENTS Ongoing CTFs and Challenges have...

Continue reading...

My Cover6 Solutions Summer Cyber Camp Experience

I attended the Cover6 Solutions Summer Cyber Camp (Attack & Defend Workshop) from August 24th – 28th. The course was taught by Tyrone Wilson who is also the Founder and President of Cover6 Solutions. We foster a fun, collaborative, and open environment where we embrace trial and error, encourage creative thinking, and we treat failures as learning tools. -Cover6 Solutions The statement above is a perfect representation of what the class was like. It was held via GoToWebinar, and our microphones were unmuted to encourage participation and collaboration. Unfortunately for me, class was held during my work hours and I...

Continue reading...

DFIR Related Events for Beginners – September, 2020

I created a poll on Twitter and LinkedIn asking if I should keep this monthly blog post at events costing under $50 or a different price point. The majority voted for listing all events regardless of price. Since so many people also voted to keep it the way it was, I also tried to find a solution that allows you to filter the events. All events listed are virtual. Type “free” in the search box to only show free events. Type “under” in the search box to show events under $50. Be sure to hit the “Load More Events” button...

Continue reading...

My Experience With the SANS FOR500 Course and the GCFE Exam

After years of getting their course catalogs in the mail. I was very excited to finally be able to take a SANS course after landing my job in the DFIR field. I love to learn. I even like taking certification exams, but for the first time while studying for a certification (I already had 9 of them), I lost all focus and motivation for a while. I took the FOR500 OnDemand course with Rob Lee as the instructor. He was great! You get 4 months to complete the training and take the exam. The course started on March 20th and...

Continue reading...

DFIR Related Events for Beginners – August, 2020

A list of Digital Forensics and Incident Response related events and training that may be of interest to students/beginners for the month of August. All events listed are virtual. August 4th: Panoply (Free for Black Hat attendees) “Panoply is an network assessment/defense competition combined into a single event.” You can register HERE. August 5th: Susteen’s Digital Forensics Industry Day (Free) “Sign up for individual sessions, multiple sessions or an entire session track! Attendees will earn challenge pins for each session attended.” You can register here: https://datapilot.com/digital-forensic-industry-day/ August 5th and 6th: Black Hat (The Business Pass is Free). A Business Pass...

Continue reading...

DFIR Related Events for Beginners – July 2020

A list of Digital Forensics and Incident Response related events and training that may be of interest to students/beginners for the month of July. July 1st, 8th, 15th: Attack Detection Fundamentals (F-Secure) Free and Virtual “Our consultants will refer to live attack examples (like Emotet), explain how each detection technique is effective against different attacks, and map detection techniques to the cyber kill chain. Expect hands-on demonstrations that you can start using straight away.” The first workshop already happened, but you can view the accompanying lab and the video in the Tweet below. Go HERE to register. July 2nd: BSides TLV Free and Virtual. Includes...

Continue reading...

DFIR Related Events for Beginners – June, 2020

A list of Digital Forensics and Incident Response related events and training that may be of interest to students/beginners for the month of June. June 2nd: Cache Up This is weekly starting June 2nd on YouTube Live. Go here for more information: https://www.magnetforensics.com/blog/magnet-forensics-presents-cache-up/ June 3rd – 5th: DFRWS Virtual Conference This is a paid Digital Forensics conference. For more information and to register, go here: https://events.eventzilla.net/e/dfrws-virtual-europe-2020-2138771086 June 3rd: Join Us for a Chat About DFIR You can sign up here: https://cybersocialhub.com/dfir-mixology/ June 4-5th: SANS DFIR NetWars If you registered for a SANS class between March, 2020 and now, you are...

Continue reading...

How to Incorporate Home Lab Experience into Your Resume

Someone asked me an excellent question yesterday about how to go about framing home lab experience into professional experience. I thought I could explain it best in a blog post with examples, so here it goes… A decade prior to entering the DFIR field, I was in technical support for about a year. I then moved to a very non-technical Identity & Access Management role for several years (think Excel spreadsheets all day long). Most of my technical experience was from what I did in my home lab. Keep in mind, I am by no means a resume expert, but...

Continue reading...