Security+
Certification
Overview:
Security+ Certification is the primary course candidate
needs to take if their job responsibilities include securing network services,
network devices, and network traffic. It is also the main course that prepares
for the CompTIA Security+ examination. In this course, you will build on your
knowledge and professional experience with computer hardware, operating
systems, and networks as you acquire the specific skills required to implement
basic security services on any type of computer network.
Target Audience:
IT professional who has networking and administrative skills
in Windows-based TCP/IP networks and familiarity with other operating systems,
such as NetWare, Macintosh, UNIX/Linux, and OS/2, who wants to: further a
career in Information Technology by acquiring a foundational knowledge of
security topics; prepare for the CompTIA Security+ examination; or use
Security+ as the foundation for advanced security certifications or career
roles.
Steps to Security+
Certification
To become certified, a student must pass the CompTIA Security+ exam.
Required
Prerequisites:
Course Objectives:
- Identify security threats
- Harden internal systems and
services.
- Harden internetwork devices
and services.
- Secure network
communications.
- Manage a PKI
- Manage certificates.
- Enforce an organizational
security policy.
- Monitor the security
infrastructure.
- Respond to network attacks.
- Respond to software-based
attacks.
Exams:
Course Outline:
- Security overview
- Introduction to
network security
- Understanding security
threats
- Creating a secure
network strategy
- Windows 2000 server
access control
- Authentication
- Introduction to
authentication
- Kerberos
- Challenge Handshake
Authentication Protocol
- Digital certificates
- Security tokens
- Biometrics
- Attacks and malicious code
- Denial of service
attacks
- Man-in-the-middle
attacks
- Spoofing
- Replays
- TCP session hijacking
- Social engineering
- Attacks against
encrypted data
- Software exploitation
- Remote access
- Securing remote communications
- Authentication
- Virtual private
networks
- Telecommuting
vulnerabilities
- E-mail
- Secure e-mail and
encryption
- PGP and S/MIME
encryption
- E-mail vulnerabilities
- Web security
- SSL/TLS protocol
- Instant messaging
- Vulnerabilities of Web
tools
- Configuring Internet
Explorer security
- Directory and file transfer
services
- Introduction to
directory services
- File transfer services
- File sharing
- Wireless and instant
messaging
- IEEE 802.11
- WAP 1.x and WAP 2.0
- Wired equivalent
privacy
- Instant messaging
- Network devices
- Understanding
firewalls
- Routers
- Switches
- Telecom, cable modem,
and wireless devices
- Securing remote access
- Intrusion detection
systems
- Workstations and
servers
- Transmission and storage
media
- Transmission media
- Storage media
- Network security topologies
- Security topologies
- Network Address
Translation
- Tunneling
- Virtual Local Area
Networks
- Intrusion detection
- Intrusion detection
systems
- Network-based and
host-based IDS
- Active and passive
detection
- Honeypots
- Incident response
- Security baselines
- OS/NOS hardening
- Network hardening
- Application hardening
- Cryptography
- Concepts of
cryptography
- Public Key
Infrastructure (PKI)
- Key management and
life cycle
- Setting up a
certificate server
- Physical security
- Access control
- Environment
- Disaster recovery and
business continuity
- Disaster recovery
- Business continuity
- Policies and
procedures
- Privilege management
- Computer forensics and
advanced topics
- Understanding computer
forensics
- Risk identification
- Education and training
- Auditing
- Documentation
Delivery Method:
Instructor Led Classroom training.
Class Schedule: Boot camp,
Week-ends, Evenings
Duration: 40 hours
Retake Policy: Course can be retaken within 12 months of
completion depending upon availability.
Certificate: Certificate of
completion given to all students who meet the 85% attendance requirement and other course work completed during training.
|