Crisis management Playbook for Teams
RCCE students will learn incident detection, containment procedures, evidence preservation, communication protocols, and post-incident analysis. RCCE students will learn to respond to security incidents with structured methodologies, coordinate cross-functional teams under pressure, execute containment and recovery operations, and drive continuous improvement through thorough post-incident reviews. This team-oriented course builds collaborative workflows and organizational playbooks for security operations. Building on core knowledge, RCCE students will learn to create and implement standardized procedures that enable consistent performance across team members and shifts. Students develop the documentation, communication, and coordination skills needed for effective team-based security operations.
- Security Engineers building defensive controls
- Security Analysts and Blue Team members
- Systems Administrators with security responsibilities
- GRC and Risk Professionals supporting controls
- Professionals implementing Crisis management Playbook for Teams
- Execute hands-on tasks for crisis management playbook for
- Explain Course Overview fundamentals
- Execute hands-on tasks for what you will learn
- Execute hands-on tasks for course structure — covering 6 hours of instruction and labs.
- Build detections and response workflows for privilege escalation, including Preparation phase emphasis.
- Build detections and response workflows for privilege escalation
- Execute hands-on tasks for crisis management team structure
- Execute hands-on tasks for incident commander
- Execute hands-on tasks for triage lead
- Execute hands-on tasks for containment lead
- Execute hands-on tasks for comms lead
| Module 01 | Crisis Management Playbook for |
| Module 02 | Course Overview |
| Module 03 | What You Will Learn |
| Module 04 | Course Structure |
| Module 05 | Incident Response Frameworks |
| Module 06 | Incident Response Lifecycle |
| Module 07 | Preparation ▶ Detection ▶ Containment ▶ Eradication ▶ |
| Module 08 | Crisis Management Team Structure |
| Module 09 | Incident Commander |
| Module 10 | Triage Lead |
| Module 11 | Containment Lead |
| Module 12 | Comms Lead |
| Module 13 | Recovery Lead |
| Module 14 | Core Responsibilities |
All hands-on labs run on Rocheston Rose X OS. Students practice crisis management playbook for teams by implementing the controls discussed in class, with a focus on real-world deployment, monitoring, and validation.
- Lab 1: Execute hands-on tasks for crisis management playbook for
- Lab 2: Explain Course Overview fundamentals
- Lab 3: Execute hands-on tasks for what you will learn
- Lab 4: Execute hands-on tasks for course structure
- Lab 5: Build detections and response workflows for privilege escalation
Upon successful completion of this course, students will receive an official RCCE Course Completion Certificate for Crisis management Playbook for Teams, verifiable through the Rocheston certification portal.
- Full access to all course materials and slide decks
- Hands-on lab access on Rocheston Rose X OS environment
- Access to Rocheston CyberNotes
- Access to Rocheston Zelfire — EDR/XDR SIEM platform
- Access to Rocheston Raven — online cyber range exercise platform
- Access to Rocheston Vulnerability Vines AI