In lieu of my Cybersecurity Training and Labs group there are a ton more out there - and I'm pretty sure I haven't even grabbed them all. Some of these are mixed with Red Team learning as well so DYOR.
— Sponsored by John Hammond and Don Donzal from INE. Tons of classes and knowledge from Cyber leaders. Their insights and resources there are invaluable as well!
— Comparable to SANS training, but a little more difficult to obtain. They require already working hours and you have to catch their training specifically when they schedule it.
— You'll be using lots of Autopsy / Eric Zimmerman Tools throughout your carving journey.
KQL (Kusto Query Language)
Most corporations are Windows, therefore Defender should be part of their arsenal. KQL is the query language used to identify malicious emails, hashes, scan for qishing etc.