CompTIA Security+ Certification Training

CompTIA Security+ Certification Training

Print Friendly, PDF & Email

Introduction:

CompTIA Security+ Certification Training Course with Detailed Hands-on Labs

CompTIA Security+ is the certification globally trusted to validate foundational, vendor-neutral IT security knowledge and skills. As a benchmark for best practices in IT security, this official Security+ Training course helps students prepare to write the actual CompTIA Security+ certification which covers the essential principles for network security and risk management – making it an important stepping stone to an IT security career.

Led by a CompTIA authorized instructor, the Security+ Training and course material for this official Security+ training program will provide students with a comprehensive review of network security, compliance and operation security, threats and vulnerabilities as well as application, data and host security. Additionally, this CompTIA Security+ Certification Training course will also help students successfully prepare for the CompTIA Security+ exam.

Aside from a reserved seat in an upcoming Security+ training seminar, the resources registered students are provided include CompTIA Approved Quality Content (CAQC) – such as up-to-date courseware, a helpful student study guide and a challenging practice exams. When you combine our Security+ Training instructor-led training with the course material, this Security+ training seminar is a great resource for those interested in passing the Security+ exam or reviewing/refreshing their IT security knowledge and skills.

Students will benefit most from this course if they intend to take the CompTIA Security+ SY0-501 exam. Read our white paper titled “New Topics on the New Security+ SY0-501 Exam.” This Security+ Training course supports a certification that is a DoD Approved 8570 Baseline Certification and meets DoD 8140/8570 training requirements.

What’s Included

  • Five days of hands-on Security+ Certification Training, plus time to take the Security+ exam
  • Immediate access to in-depth Security+ pre-study course
  • ENO Institute proprietary digital courseware (physical textbooks available to purchase)
  • SY0-501 CompTIA Security+ exam voucher
  • 100% Satisfaction Guarantee
  • Exam Pass Guarantee

Related Courses:

Exams Objectives:

In addition to a traditional multiple-choice format, the Security+ exam includes performance-based questions. Performance-based questions test your ability to solve a problem in a simulated environment. Preparing you for this type of test taking is an integral part of our curriculum. The Security+ exam places greater emphasis on knowing how to address specific security issues, rather than simply being able to recognize these issues.

  • The new Security+ Certification exam covers six major objectives, or topics:
  • Threats, attacks and vulnerabilities
  • Technologies and tools
  • Architecture and design
  • Identity and access management
  • Risk management
  • Cryptography and PKI

Resources:

  • CompTIA Security+ Certification Training (Exam SY0-501) by Mike Chapple pdf
  • CompTIA Security+ Training (Exam SY0-501) by Darril Gibson – Kindle/Paperback/Amazon
  • CompTIA Security+ Training (Exam SY0-501) by Emmett Dulaney, Chuck Easttom, et al. – Paperback/Amazon
  • CompTIA Security+ Certification Training (Exam SY0-501) by by Ian Neil – Kindle Book/Paperback/Amazon
  • CompTIA Security+ Training (Exam SY0-501) by Mike Meyers – Kindle/Paperback/Hardcover/Amazon
  • Security+ Training Practice Test (Exam SY0-501) by Mike Chapple Amazon Kindle

CompTIA Security+ Certification Training – Customize It:

  • If you are familiar with some aspects of CompTIA Security+ Certification Training, we can omit or shorten their discussion.
  • We can adjust the emphasis placed on the various topics or build the Security+ Certification Training course around the mix of technologies of interest to you (including technologies other than those included in this outline).
  • If your background is nontechnical, we can exclude the more technical topics, include the topics that may be of special interest to you (e.g., as a manager or policy-maker), and present the Security+ Certification Training course in manner understandable to lay audiences.

Security+ Certification Training – Audience / Target Group:

The target audience for this CompTIA Security+ Certification Training course is defined here:

  • Network Administrators
  • Cybersecurity Associates
  • IT personnel interested in pursuing a career in cybersecurity

Security+ Certification Training – Prerequisites:

This CompTIA Security+ Certification Training course assumes basic knowledge of using and maintaining individual workstations.

  • Attendees should be CompTIA A+ certified (or have equivalent experience) and CompTIA Network+ certified (or have equivalent experience) with 2-3 years networking experience.

CompTIA Security+ Certification Training – Objectives:

Upon completing this CompTIA Security+ Certification Training course, learners will be able to meet these objectives:

  • Security threats and controls
  • Cryptography and access control
  • Network security
  • Host, data, and appliance security
  • Operational security

CompTIA Security+ Certification Training – Course Syllabus:

DAY 1

1.1 Indicators of compromise

  • Why is security important?
  • Security policy
  • Threat actor types
  • The kill chain
  • Social engineering
  • Phishing
  • Malware types
  • Trojans and spyware
  • Open source intelligence

1.2 Critical security controls

  • Security control types
  • Defense in depth
  • Frameworks and compliance
  • Vulnerability scanning and pentests
  • Security assessment techniques
  • Pentesting concepts
  • Vulnerability scanning concepts
  • Exploitation frameworks

1.3 Security posture assessment tools

  • Topology discovery
  • Service discovery
  • Packet capture
  • Packet capture tools
  • Remote access Trojans
  • Honeypots and honeynets

1.4 Security+ Training – Incident response

  • Incident response procedures
  • Preparation phase
  • Identification phase
  • Containment phase
  • Eradication and recovery phases
DAY 2

2.1 Security+ Training – Cryptography

  • Uses of cryptography
  • Cryptographic terminology and ciphers
  • Cryptographic products
  • Hashing algorithms
  • Symmetric algorithms
  • Asymmetric algorithms
  • Security+ Training
  • Diffie-Hellman and elliptic curve
  • Transport encryption
  • Cryptographic attacks

2.2 Security+ Training – Public key infrastructure

  • PKI standards
  • Digital certificates
  • Certificate authorities
  • Types of certificate
  • Implementing PKI
  • Storing and distributing keys
  • Key status and revocation
  • PKI trust models
  • PGP/GPG

2.3 Identification and authentication

  • Access Control systems
  • Identification
  • Authentication
  • LAN manager/NTLM
  • Kerberos
  • PAP, CHAP and MS-CHAP
  • Password attacks
  • Token-based authentication
  • Biometric authentication
  • Common access card

2.4 Identity and access services

  • Authorization
  • Directory services
  • Radius and TACACS+
  • Federation and trusts
  • Federated identity protocols
  • Security+ Training
  • CompTIA Security+ Certification Training Workshop

2.5 Security+ Training – Account management

  • Formal access control models
  • Account types
  • Windows active directory
  • Creating and managing accounts
  • Account policy enforcement
  • Credential management policies
  • Account restrictions
  • Accounting and auditing
DAY 3

3.1 Security+ Training – Secure network design

  • Network zones and segments
  • Subnetting
  • Switching infrastructure
  • Switching attacks and hardening
  • Endpoint security
  • Network access control
  • Routing infrastructure
  • Network address translation
  • Software defined networking

3.2 Firewalls and load balancers

  • Basic firewalls
  • Stateful firewalls
  • Implementing a firewall or gateway
  • Web application firewalls
  • Proxies and gateways
  • Denial-of-service attacks
  • Load balancers

3.3 Security+ Training – IDS and SIEM

  • Intrusion detection systems
  • Configuring IDS
  • Log review and SIEM
  • Data loss prevention
  • Malware and intrusion response

3.4 Security+ Training – Secure wireless access

  • Wireless LANs
  • WEP and WPA
  • Wi-Fi authentication
  • Extensible authentication protocol
  • Additional Wi-Fi security settings
  • Wi-Fi site security
  • Personal area networks
  • Security+ Training
  • CompTIA Security+ Certification Training Workshop

3.5 Security+ Training  – Physical security controls

  • Site layout and access
  • Gateways and locks
  • Alarm systems
  • Surveillance
  • Hardware security
  • Environmental controls
DAY 4

4.1 Secure protocols and services

  • DHCP security
  • DNS security
  • Network management protocols
  • Http and web servers
  • SSL / TLS and HTTPS
  • Web security gateways
  • Email services
  • S/mime
  • File transfer
  • Voice and video services
  • Voice over IP (VOIP)

4.2 Security+ Training – Secure remote access

  • Remote access architecture
  • Virtual private networks
  • IPSEC and IKE
  • Remote access servers
  • Remote administration tools
  • Hardening remote access infrastructure

4.3 Security+ Training – Secure systems design

  • Trusted computing
  • Hardware / firmware security
  • Peripheral device security
  • Secure configurations
  • OS hardening
  • Patch management
  • Embedded systems
  • Security for embedded systems
  • CompTIA Security+ Certification Training

4.4 Secure mobile device services

  • Mobile device deployments
  • Mobile connection methods
  • Mobile access control systems
  • Enforcement and monitoring
  • Security+ Training

4.5 Secure virtualization and cloud services

  • Virtualization technologies
  • Virtualization security best practices
  • Cloud computing
  • Cloud security best practices
DAY 5

5.1 Security+ Training – Forensics

  • Forensic procedures
  • Collecting evidence
  • Capturing system images
  • Handling and analyzing evidence

5.2 Security+ Training – Disaster recovery and resiliency

  • Continuity of operations planning
  • Disaster recovery planning
  • Resiliency strategies
  • Recovery sites
  • Backup plans and policies
  • Resiliency and automation strategies
  • CompTIA Security+ Certification Training

5.3 Security+ Training – Risk management

  • Business impact analysis
  • Identification of critical systems
  • Risk assessment
  • Risk mitigation
  • Security+ Training

5.4 Security+ Training – Secure application development

  • Application vulnerabilities
  • Application exploits
  • Web browser exploits
  • Secure application design
  • Secure coding concepts
  • Auditing applications
  • Secure DevOps

5.5 Security+ Training Organizational security

  • Corporate security policy
  • Personnel management policies
  • Interoperability agreements
  • Data roles
  • Data sensitivity labeling and handling
  • Data wiping and disposal
  • Privacy and employee conduct policies
  • Security policy training

5.6 Security+ Training Course Wrap-Up

  • SY0-501 overview
  • Security+ exam cram
  • Take the SY0-501 exam
LABS
Security+ Certification Training – Understanding Attacks
  • Examining Phishing Attacks
  • Examining Malware
  • Probing a Site
  • Simulating a DOS Attack
  • Cracking Passwords
  • Simulating an Eavesdropping Attack
  • Exploring Application Vulnerabilities
  • Examining SQL Injection Attacks
  • Examining Client-side Attacks
Security+ Certification Training – Cryptography
  • Symmetric Encryption
  • Asymmetric Encryption
  • Creating File Hashes
  • Installing a Certificate Authority
  • Security+ Training
Security+ Certification Training – Network Fundamentals
  • Using TCP/IP Tools
Security+ Certification Training – Securing the Network
  • Configuring a Firewall
  • Examining Website Certificates
  • Securing a WAP
  • Viewing Event Logs
  • Scanning the Network
Security+ Certification Training – Securing Hosts and Data
  • Enabling BitLocker
Security+ Certification Training – Securing Network Services
  • Finding Vulnerable Code
Security+ Certification Training – Authentication
  • Installing a RADIUS Server
  • Examining Active Directory
  • Security+ Training
Security+ Certification Training – Access Control
  • Managing NTFS Permissions
  • Managing Active Directory Objects
  • Using Group Policy Objects
  • Creating a Security Template
Security+ Certification Training – Disaster planning and recovery
  • Using Windows Server Backup

Whether you are looking for general information or have a specific question, we want to help!

Request More Information

Time frame:

0