Incident Response, BC, and DR Concepts (Coursera)

Offered by (ISC)²,
Incident Response, BC, and DR Concepts (Coursera)

Welcome to course 2 of 5 of this Specialization, Incident Response, BC, and DR Concepts. This course focuses on the availability part of the CIA triad and the importance of maintaining availability of both human and system resources. These are usually accomplished through the implementation of Incident Response (IR), Business Continuity (BC) and Disaster Recovery (DR) plans. While these three plans may seem to overlap in scope, they are three distinct plans that are vital to the survival of any organization.

Class Deals by MOOC List - Click here and see Coursera's Active Discounts, Deals, and Promo Codes.

After completing this course, the participant will be able to: 
Explain how organizations respond to, recover from and continue to operate during unplanned disruptions.

  • Recall the terms and components of incident response.
  • Summarize the components of a business continuity plan.
  • Identify the components of disaster recovery.
  • Practice the terminology of and review incident response, business continuity and disaster recovery concepts.

Agenda
Course Introduction
Module 1: Incident Response (IR)
Module 2: Business Continuity (BC)
Module 3: Disaster Recovery (DR)
Module 4: Incident Response, Business Continuity, and Disaster Recovery Review
This training is for IT professionals, career changers, college students, recent college graduates, advanced high school students and recent high school graduates looking to start their path toward cybersecurity leadership by taking the Certified in Cybersecurity entry-level exam.
There are no prerequisites to take the training or the exam. It is recommended that candidates have basic Information Technology (IT) knowledge. No work experience in cybersecurity or formal education diploma/degree is required.

Course 2 of 5 in the Certified in Cybersecurity Specialization.

Syllabus

WEEK 1
Course Introduction
This course focuses on the availability part of the CIA triad and the importance of maintaining availability of both human and system resources. These are usually accomplished through the implementation of Incident Response (IR), Business Continuity (BC) and Disaster Recovery (DR) plans. While these three plans may seem to overlap in scope, they are three distinct plans that are vital to the survival of any organization.Here are the primary things to remember in this course: first, the Incident Response plan responds to unexpected changes in operating conditions to keep the business operating; second, the Business Continuity plan enables the business to continue operating throughout the crisis; and finally, if both the Incident Response and Business Continuity plans fail, the Disaster Recovery plan is activated to help the business to return to normal operations as quickly as possible. When it comes to a career in cybersecurity, the day-to-day focus is monitoring information systems and looking out for abnormal network activity, malicious software and threat actors. Security professionals spend their days ensuring the confidentiality, integrity and availability of systems and data, but in addition to safeguarding networks and securing the exchange of data and shared resources, it’s important to realize that cybersecurity goes beyond the technical aspects. Its scope encompasses the protection of people and their personal information. There is nothing more important than the health and safety of our users, coworkers and customers.

WEEK 2
Incident Response (IR)
Throughout this module, we will focus on the goal and the individual components of Incident Response.

WEEK 3
Business Continuity (BC)
Throughout this module, we will focus on the goal and the individual components of Business Continuity (BC).

WEEK 4
Disaster Recovery (DR)
Throughout this module, we will focus on the goal and the individual components of Disaster Recovery (DR).

WEEK 5
Incident Response, Business Continuity, and Disaster Recovery Review
This module will test your knowledge on what you have learned throughout this course.

Go to Class
MOOC List is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Related Courses

Tencent Cloud Solutions Architect Associate (Coursera) Coursera
Tencent Cloud

Tencent Cloud Solutions Architect Associate (Coursera)

This course is primarily aimed at cloud professionals that are interested in learning about Tencent Cloud‘s cloud architectures. The course equips learners with a foundational knowledge in cloud architecture design and prepares them to take the Tencent Cloud Solutions Architect Associate examination. After completing this course, learners will be able to design cloud solutions that incorporate the principles of high availability, high security, high scalability, and cost optimization.

Aug 17th 2026
5-12 Weeks
Network Security (Coursera) Coursera
(ISC)²

Network Security (Coursera)

Welcome to course 4 of 5 of this Specialization, Network Security. In this course, we will look at computer networking and securing the network. In today’s world, the internet connects nearly everyone and everything, and this is accomplished through networking. While most see computer networking as a positive, criminals routinely use the internet, and the networking protocols themselves, as weapons and tools to exploit vulnerabilities and for this reason we must do our best to secure the network. We will review the basic components of a network, threats and attacks to the network, and learn how to protect them from attackers.

Jul 6th 2026
5-12 Weeks
High Availability and Disaster Recovery with the SAP HANA Platform (openSAP) OpenSAP
SAP

High Availability and Disaster Recovery with the SAP HANA Platform (openSAP)

With the SAP HANA platform, you can easily set up high availability (HA) and disaster recovery (DR) operations as part of data center readiness. The platform provides HA/DR capabilities with multiple options to select RTO (recovery time objective) and RPO (recovery point objective) timelines based on planned and unplanned downtimes for your IT landscape. The course starts with a general overview of SAP HANA platform HA/DR features. It then expands on the different capabilities for high availability and disaster recovery. Demo video links will be provided that showcase the configurations and setup required for operations in a data center environment.

Self Paced
Self-Paced
Penetration Testing and Incident Response (edX) EdX
IBM

Penetration Testing and Incident Response (edX)

Learn about the various phases of penetration testing, incident response, and the forensic process. This course is part of the IBM Cybersecurity Analyst Professional Certificate! This course is suitable for individuals seeking a fundamental grasp of Cybersecurity or as the fifth installment in a series of courses to develop the skills essential for a career as a Cybersecurity Analyst.

Self Paced
Self-Paced
Cybersecurity Capstone and Case Studies (edX) EdX
IBM

Cybersecurity Capstone and Case Studies (edX)

Research real-world data breaches and explore different incident response methodologies and security models. This course is part of the IBM Cybersecurity Analyst Professional Certificate! Throughout this course, you will delve into incident response methodologies and security models through case studies, equipping yourself with effective strategies for handling security incidents. You will also learn to identify and categorize various types of vulnerabilities and associated attacks commonly faced by modern organizations.

Self Paced
Self-Paced
Deception As a Defense (Coursera) Coursera
Starweaver

Deception As a Defense (Coursera)

In this course, defensive concepts will be explored and the power of using deception at different layers of the network. The attacker depends on information that is gathered during their surveillance, and with deception we change the network at layer 2-4 and the result of this is the attacker’s collected data is no longer valid and useless for them, this requires the attacker to start the information gathering process over again.

Aug 17th 2026
2 Weeks
Splunk Administration and Advanced Topics (Coursera) Coursera
EDUCBA

Splunk Administration and Advanced Topics (Coursera)

This course provides a comprehensive understanding of Splunk administration, focusing on managing and maintaining the Splunk platform for efficient data collection, indexing, and analysis. The course includes main topics such as user authentication, role-based access control, data input configuration, system health monitoring, and resource management to optimize Splunk's performance and security.

Aug 3rd 2026
3 Weeks
Web3 and Blockchain Fundamentals (Coursera) Coursera
INSEAD

Web3 and Blockchain Fundamentals (Coursera)

There is a lot of hype around Web3 and blockchain. As with any disruptive technology, there are many competing sources of information. But if we look beyond the hype and mania—not to mention the fear, uncertainty, and doubt—we see something profound happening. We are witnessing one of the largest transformations of wealth in human history—from paper-based analog assets to digital ones. Blockchain represents the first native digital medium for value, and is foundational to the next generation of the Internet—also known as Web3.

Aug 17th 2026
1 Week
Check Point Jump Start: Quantum Management (Coursera) Coursera
Check Point Software Technologies Ltd

Check Point Jump Start: Quantum Management (Coursera)

"Check Point's Quantum is the best Threat Prevention solution on the Market! It offers uncompromising Security, consistently preventing both known and unknown Zero-day attacks. Check Point Quantum Network Security provides ultra-scalable protection against Gen V cyber attacks on your network, cloud, data center, IoT, and remote users.

Aug 17th 2026
5-12 Weeks
Automated Cyber Security Incident Response (Coursera) Coursera
EDUCBA

Automated Cyber Security Incident Response (Coursera)

This course aims to provide participants with a comprehensive understanding of incident response processes and workflows. The course covers various aspects of automating incident response mechanisms, including centralizing and automating operations, scaling the alert management process, and advanced topics such as correlation, impact assessments, and security use cases showcasing the end-to-end lifecycle of an incident.

Aug 3rd 2026
4 Weeks