Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Certificate
Course Outline
DOMAIN 1: CYBERSECURITY CONCEPTS
- 1.1 Understanding information assurance (IA) principles applied to managing risks associated with the use, processing, storage, and transmission of information or data.
- 1.2 Comprehension of security management frameworks.
- 1.3 Familiarity with risk management processes, including the steps and methods used for risk assessment.
- 1.4 Knowledge of an organization’s enterprise information technology (IT) goals and objectives.
- 1.5 Awareness of various operational threat environments (e.g., first-generation [script kiddies], second-generation [non-nation state sponsored], and third-generation [nation-state sponsored] actors).
- 1.6 Understanding of information assurance (IA) principles and organizational requirements relevant to confidentiality, integrity, availability, authentication, and non-repudiation.
- 1.7 Familiarity with common adversary tactics, techniques, and procedures (TTPs) within specific areas of responsibility (e.g., historical country-specific TTPs and emerging capabilities).
- 1.8 Knowledge of different classes of attacks (e.g., passive, active, insider, close-in, and distributed attacks).
- 1.9 Awareness of relevant laws, policies, procedures, and governance requirements.
- 1.10 Understanding of relevant laws, policies, procedures, or governance standards applicable to work impacting critical infrastructure.
DOMAIN 2: CYBERSECURITY ARCHITECTURE PRINCIPLES
- 2.1 Understanding network design processes, including security objectives, operational goals, and associated trade-offs.
- 2.2 Knowledge of security system design methods, tools, and techniques.
- 2.3 Familiarity with network access and identity and access management (e.g., public key infrastructure [PKI]).
- 2.4 Understanding of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption).
- 2.5 Knowledge of current industry methods for evaluating, implementing, and disseminating IT security assessment, monitoring, detection, and remediation tools and procedures, utilizing standards-based concepts and capabilities.
- 2.6 Understanding network security architecture concepts, including topology, protocols, components, and principles (e.g., the application of defense in depth).
- 2.7 Familiarity with malware analysis concepts and methodologies.
- 2.8 Knowledge of intrusion detection methodologies and techniques for identifying host- and network-based intrusions using intrusion detection technologies.
- 2.9 Understanding defense in depth principles and network security architecture.
- 2.10 Knowledge of encryption algorithms (e.g., Internet Protocol Security [IPSEC], Advanced Encryption Standard [AES], Generic Routing Encapsulation [GRE]).
- 2.11 Familiarity with cryptology.
- 2.12 Understanding of encryption methodologies.
- 2.13 Knowledge of traffic flow across networks (e.g., Transmission Control Protocol and Internet Protocol [TCP/IP], Open Systems Interconnection model [OSI]).
- 2.14 Familiarity with network protocols (e.g., Transmission Control Protocol and Internet Protocol).
DOMAIN 3: SECURITY OF NETWORK, SYSTEM, APPLICATION AND DATA
- 3.1 Understanding computer network defense (CND) and vulnerability assessment tools, including open-source tools and their capabilities.
- 3.2 Knowledge of basic system administration, network, and operating system hardening techniques.
- 3.3 Awareness of risks associated with virtualization.
- 3.4 Understanding penetration testing principles, tools, and techniques (e.g., Metasploit, NeoSploit).
- 3.5 Familiarity with network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.
- 3.6 Knowledge of remote access technology concepts.
- 3.7 Understanding systems administration concepts.
- 3.8 Familiarity with the Unix command line.
- 3.9 Awareness of system and application security threats and vulnerabilities.
- 3.10 Knowledge of system lifecycle management principles, including software security and usability.
- 3.11 Understanding local specialized system requirements (e.g., critical infrastructure systems that may not use standard IT) for safety, performance, and reliability.
- 3.12 Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channels, replay attacks, return-oriented attacks, and malicious code).
- 3.13 Awareness of the social dynamics of computer attackers in a global context.
- 3.14 Understanding secure configuration management techniques.
- 3.15 Knowledge of capabilities and applications of network equipment, including hubs, routers, switches, bridges, servers, transmission media, and related hardware.
- 3.16 Understanding communication methods, principles, and concepts that support network infrastructure.
- 3.17 Familiarity with common networking protocols (e.g., Transmission Control Protocol and Internet Protocol [TCP/IP]) and services (e.g., web, mail, Domain Name System [DNS]) and their interactions in providing network communications.
- 3.18 Knowledge of different types of network communications (e.g., Local Area Network [LAN], Wide Area Network [WAN], Metropolitan Area Network [MAN], Wireless Local Area Network [WLAN], Wireless Wide Area Network [WWAN]).
- 3.19 Understanding virtualization technologies and virtual machine development and maintenance.
- 3.20 Awareness of application vulnerabilities.
- 3.21 Knowledge of information assurance (IA) principles and methods applicable to software development.
- 3.22 Understanding of risk and threat assessment.
DOMAIN 4: INCIDENT RESPONSE
- 4.1 Understanding incident categories, response strategies, and response timelines.
- 4.2 Knowledge of disaster recovery and continuity of operations plans.
- 4.3 Familiarity with data backup, backup types (e.g., full, incremental), and recovery concepts and tools.
- 4.4 Understanding incident response and handling methodologies.
- 4.5 Knowledge of security event correlation tools.
- 4.6 Awareness of the investigative implications of hardware, operating systems, and network technologies.
- 4.7 Understanding processes for seizing and preserving digital evidence (e.g., chain of custody).
- 4.8 Knowledge of types of digital forensics data and how to recognize them.
- 4.9 Familiarity with basic concepts and practices of processing digital forensic data.
- 4.10 Understanding anti-forensics tactics, techniques, and procedures (TTPs).
- 4.11 Knowledge of common forensic tool configuration and support applications (e.g., VMware, Wireshark).
- 4.12 Understanding network traffic analysis methods.
- 4.13 Knowledge of system files (e.g., log files, registry files, configuration files) that contain relevant information and their locations.
DOMAIN 5: SECURITY OF EVOLVING TECHNOLOGY
- 5.1 Awareness of new and emerging information technology (IT) and information security technologies.
- 5.2 Understanding of emerging security issues, risks, and vulnerabilities.
- 5.3 Awareness of risks associated with mobile computing.
- 5.4 Understanding cloud concepts related to data and collaboration.
- 5.5 Awareness of risks associated with migrating applications and infrastructure to the cloud.
- 5.6 Understanding of risks associated with outsourcing.
- 5.7 Familiarity with supply chain risk management processes and practices.
Requirements
There are no specific prerequisites required to attend this course.
28 Hours
Testimonials (2)
The trainer was helpful..
Attila - Lifial
Course - Compliance and the Management of Compliance Risk
The report and rules setup.