Enterprise Cloud Forensics & Incident Response Poster

As more organizations move to the cloud, the need to perform digital forensics and incident response in such environments is becoming more prevalent. It can be a challenge to keep track of the differences between the cloud providers and how to respond in their respective environments. The new SANS Enterprise Cloud Forensics & Incident Response poster provides guidance on terminology and log sources across the major cloud providers (AWS, Google, and Microsoft), along with a CLI cheat sheet for gathering evidence from each cloud.  Authored by FOR509 course co-author Megan Roddie, this poster is a must have for those handling cloud Security, Forensics & Incident Response.  This free resource debuted at the DFIR Summit 2022 


February 7, 2023
FOR509_poster_thumb.png