Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Certificate
Course Outline
DOMAIN 1: CYBERSECURITY CONCEPTS
- 1.1 Understanding of information assurance (IA) principles applied to managing risks associated with the use, processing, storage, and transmission of information or data.
- 1.2 Insight into security management practices.
- 1.3 Understanding of risk management processes, including the steps and methods used to assess risk.
- 1.4 Awareness of the organization’s enterprise information technology (IT) goals and objectives.
- 1.5 Understanding of various operational threat environments (e.g., first generation [script kiddies], second generation [non-nation state sponsored], and third generation [nation state sponsored]).
- 1.6 Knowledge of information assurance (IA) principles and organizational requirements relevant to confidentiality, integrity, availability, authentication, and non-repudiation.
- 1.7 Understanding of common adversary tactics, techniques, and procedures (TTPs) within specific areas of responsibility (e.g., historical country-specific TTPs, emerging capabilities).
- 1.8 Knowledge of various classes of attacks (e.g., passive, active, insider, close-in, distribution).
- 1.9 Understanding of applicable laws, policies, procedures, and governance requirements.
- 1.10 Awareness of relevant laws, policies, procedures, or governance frameworks related to work impacting critical infrastructure.
DOMAIN 2: CYBERSECURITY ARCHITECTURE PRINCIPLES
- 2.1 Understanding of network design processes, including the comprehension of security objectives, operational goals, and associated trade-offs.
- 2.2 Knowledge of security system design methods, tools, and techniques.
- 2.3 Understanding of network access, identity, and access management (e.g., public key infrastructure [PKI]).
- 2.4 Knowledge of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption).
- 2.5 Awareness of current industry methods for evaluating, implementing, and disseminating IT security assessment, monitoring, detection, and remediation tools and procedures, utilizing standards-based concepts and capabilities.
- 2.6 Knowledge of network security architecture concepts, including topology, protocols, components, and principles (e.g., the application of defense in depth).
- 2.7 Understanding of malware analysis concepts and methodologies.
- 2.8 Knowledge of intrusion detection methodologies and techniques for identifying host- and network-based intrusions using intrusion detection technologies.
- 2.9 Understanding of defense in depth principles and network security architecture.
- 2.10 Knowledge of encryption algorithms (e.g., Internet Protocol Security [IPSEC], Advanced Encryption Standard [AES], Generic Routing Encapsulation [GRE]).
- 2.11 Understanding of cryptology.
- 2.12 Knowledge of encryption methodologies.
- 2.13 Understanding of how traffic flows across the network (e.g., Transmission Control Protocol and Internet Protocol [TCP/IP], Open System Interconnection model [OSI]).
- 2.14 Knowledge of network protocols (e.g., Transmission Control Protocol and Internet Protocol)
DOMAIN 3: SECURITY OF NETWORK, SYSTEM, APPLICATION AND DATA
- 3.1 Understanding of computer network defense (CND) and vulnerability assessment tools, including open-source options, and their respective capabilities.
- 3.2 Knowledge of basic system administration, network, and operating system hardening techniques.
- 3.3 Awareness of risks associated with virtualization.
- 3.4 Understanding of penetration testing principles, tools, and techniques (e.g., Metasploit, Neosploit).
- 3.5 Knowledge of network systems management principles, models, and methods (e.g., end-to-end systems performance monitoring) and associated tools.
- 3.6 Understanding of remote access technology concepts.
- 3.7 Knowledge of systems administration concepts.
- 3.8 Familiarity with the Unix command line.
- 3.9 Understanding of system and application security threats and vulnerabilities.
- 3.10 Knowledge of system lifecycle management principles, encompassing software security and usability.
- 3.11 Awareness of local specialized system requirements (e.g., critical infrastructure systems that may not utilize standard information technology [IT]) regarding safety, performance, and reliability.
- 3.12 Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] injections, race conditions, covert channels, replay attacks, return-oriented attacks, and malicious code).
- 3.13 Understanding of the social dynamics of computer attackers within a global context.
- 3.14 Knowledge of secure configuration management techniques.
- 3.15 Understanding of the capabilities and applications of network equipment, including hubs, routers, switches, bridges, servers, transmission media, and related hardware.
- 3.16 Knowledge of communication methods, principles, and concepts that support network infrastructure.
- 3.17 Understanding of common networking protocols (e.g., Transmission Control Protocol and Internet Protocol [TCP/IP]) and services (e.g., web, mail, Domain Name System [DNS]), and how they interact to facilitate network communications.
- 3.18 Knowledge of various types of network communication (e.g., Local Area Network [LAN], Wide Area Network [WAN], Metropolitan Area Network [MAN], Wireless Local Area Network [WLAN], and Wireless Wide Area Network [WWAN]).
- 3.19 Understanding of virtualization technologies, as well as virtual machine development and maintenance.
- 3.20 Knowledge of application vulnerabilities.
- 3.21 Understanding of information assurance (IA) principles and methods applicable to software development.
- 3.22 Knowledge of risk threat assessment.
DOMAIN 4: INCIDENT RESPONSE
- 4.1 Understanding of incident categories, response procedures, and response timelines.
- 4.2 Knowledge of disaster recovery and continuity of operations plans.
- 4.3 Understanding of data backup, various types of backups (e.g., full, incremental), and recovery concepts and tools.
- 4.4 Knowledge of incident response and handling methodologies.
- 4.5 Understanding of security event correlation tools.
- 4.6 Awareness of the investigative implications of hardware, operating systems, and network technologies.
- 4.7 Knowledge of processes for seizing and preserving digital evidence (e.g., chain of custody).
- 4.8 Understanding of different types of digital forensics data and methods to identify them.
- 4.9 Knowledge of basic concepts and practices for processing digital forensic data.
- 4.10 Understanding of anti-forensics tactics, techniques, and procedures (TTPs).
- 4.11 Knowledge of common forensic tool configuration and support applications (e.g., VMWare, Wireshark).
- 4.12 Understanding of network traffic analysis methods.
- 4.13 Knowledge of which system files (e.g., log files, registry files, configuration files) contain relevant information and their locations.
DOMAIN 5: SECURITY OF EVOLVING TECHNOLOGY
- 5.1 Awareness of new and emerging information technology (IT) and information security technologies.
- 5.2 Understanding of emerging security issues, risks, and vulnerabilities.
- 5.3 Awareness of risks associated with mobile computing.
- 5.4 Understanding of cloud concepts related to data and collaboration.
- 5.5 Awareness of risks involved in migrating applications and infrastructure to the cloud.
- 5.6 Understanding of risks associated with outsourcing
- 5.7 Knowledge of supply chain risk management processes and practices
Requirements
No specific prerequisites are required to participate in this course.
28 Hours
Testimonials (2)
The trainer was helpful..
Attila - Lifial
Course - Compliance and the Management of Compliance Risk
The report and rules setup.