Vendors

The gateway to acquire in-demand technical skills in cybersecurity.

EC-Council Certified Security Specialist (E|CSS) is a beginner-friendly cybersecurity program that builds a strong, practical foundation in ethical hacking, network security, and digital forensics, enabling you to understand attacks, defend systems, and investigate incidents.

The program builds your skills to identify security threats, apply essential security controls, and understand network components, communication protocols, and forensic techniques for investigating and responding to incidents.

With structured, hands-on training and extensive 114 labs, the program helps develop job-ready skills, including threat detection, network analysis, vulnerability assessment, and investigation, empowering cybersecurity career aspirants to think and perform like real cybersecurity professionals while gaining clarity on their career path.

Cybersecurity is not optional. It’s Operational. Don’t wait for a breach. Build the skills. Earn the badge. Lead the defense. Explore our Top Cybersecurity Skills for Trainocate Digital Future campaign.

Be the reason your organization survives the next cyberattack.

 

img-course-overview.jpg

What You'll Learn

  • Key issues plaguing the information security, network security, and computer forensics
  • Fundamentals of networks and various components of the OSI and TCP/IP model
  • Various network security protocols
  • Various types of information security threats and attacks, and their countermeasures
  • Social engineering techniques, identify theft, and social engineering countermeasures
  • Different stages of hacking cycle
  • Identification, authentication, and authorization concepts
  • Different types of cryptography ciphers, Public Key Infrastructure (PKI), cryptography attacks, and cryptanalysis tools
  • Fundamentals of firewall, techniques for bypassing firewall, and firewall technologies such as Bastion Host, DMZ, Proxy Servers, Network Address Translation, Virtual Private Network, and Honeypot
  • Fundamentals of IDS and IDS evasion techniques
  • Data backup techniques and VPN security
  • Wireless Encryption, wireless threats, wireless hacking tools, and Wi-Fi security
  • Different types of web server and web application attacks, and countermeasures
  • Fundamentals of ethical hacking and pen testing
  • Incident handling and response process
  • Cyber-crime and computer forensics investigation methodology
  • Different types of digital evidence and digital evidence examination process
  • Different type of file systems and their comparison (based on limit and features)
  • Gathering volatile and non-volatile information from Windows and network forensics analysis mechanism
  • Steganography and its techniques
  • Different types of log capturing, time synchronization, and log capturing tools
  • E-mails tracking and e-mail crimes investigation
  • Writing investigation report

Who Should Attend

ECSS is designed for anyone who want to enhance their skills and make career in information security, network security, and computer forensics fields.

img-who-should-learn.png

Prerequisites

There are no prerequisites required to attend this course.

Learning Journey

Coming Soon...

Module 01: Network Security Fundamentals

Topics Covered

  • Fundamentals of Network Security and Defense
  • Network Security Controls
  • Network Security Protocols

Lab Exercises

  • No labs in this module

Module 02: Identification, Authentication, and Authorization

Topics Covered

  • Access Control Principles, Terminologies, and Models
  • Identity and Access Management (IAM) Concepts
  • Authentication Mechanisms
  • Authorization Systems and User Accounting

Lab Exercises

  • Implement Access Controls in Windows Machine
  • Manage Access Controls in Linux Machine
  • Implement and Configure Role-Based Access Control

Module 03: Network Security Controls – Administrative Controls

Topics Covered

  • Regulatory Frameworks and Compliance Requirements
  • Security Policies and Governance
  • Security and Awareness Training

Lab Exercises

  • Implement Internet Access Policies
  • Implement Password Policies in Windows and Linux

Module 04: Network Security Controls – Physical Controls

Topics Covered

  • Physical Security Concepts and Attack Vectors
  • Physical Security Controls and Mechanisms
  • Workplace Security and Asset Protection
  • Environmental Controls and Safety Measures

Lab Exercises

  • No labs in this module

Module 05: Network Security Controls – Technical Controls

Topics Covered

  • Network Segmentation and Perimeter Isolation
  • Firewall Technologies, Architectures, and Best Practices
  • Intrusion Detection and Prevention Systems (IDS/IPS)
  • Proxy Servers, VPNs, and Secure Network Communication
  • SIEM, UBA/UEBA, and Endpoint Security Solutions

Lab Exercises

  • Implement Host-based Firewall Protection and Functionality
  • Implement Network-Based Firewall Functionality
  • Implement Host-based Intrusion Detection Functionality
  • Set Up Proxy Server for Secure and Anonymous Browsing
  • Detect Malicious Network Traffic
  • Establish Virtual Private Network Connection

Module 06: Virtualization and Cloud Computing

Topics Covered

  • Virtualization Concepts and Security Considerations
  • Containerization Technologies and Security Challenges
  • Cloud Computing Models and Architecture
  • Cloud Security Risks, Attacks, and Best Practices

Lab Exercises

  • Scan Container Images for Vulnerabilities
  • Implement Cloud Identity and Access Management
  • Secure Cloud Storage

Module 07: Wireless Network Security

Topics Covered

  • Wireless Network Fundamentals and Standards
  • Wireless Encryption and Authentication Mechanisms
  • Wireless Security Implementation and Defense Strategies

Lab Exercises

  • Configure Security on a Wireless Router

Module 08: Mobile Device Security

Topics Covered

  • Mobile Device Connection Methods
  • Mobile Device Management (MDM) Concepts
  • Mobile Usage Policies in Enterprise
  • Enterprise-level Mobile Security Management
  • Mobile Device Threats and Security Risks
  • Mobile Security Controls and Best Practices

Lab Exercises

  • Implement Enterprise Mobile Security
  • Secure Mobile Devices

Module 09: IoT Device Security

Topics Covered

  • IoT Architecture, Devices, and Communication Models
  • IoT Security Challenges and Attack Vectors
  • IoT Security Controls and Best Practices

Lab Exercises

  • Secure IoT Device Communication

Module 10: Cryptography and PKI

Topics Covered

  • Cryptographic Techniques
  • Cryptographic Algorithms and Tools
  • Public Key Infrastructure (PKI) and Digital Certificates

Lab Exercises

  • Calculate One-way and MD5 Hashes
  • Encrypt and Decrypt Messages
  • Create a Self-signed Certificate

Module 11: Data Security

Topics Covered

  • Data Security Concepts
  • Data Encryption Techniques
  • Data Backup and Retention
  • Data Loss Prevention (DLP) Concepts

Lab Exercises

  • Encrypt Data at Rest and Implement Disk Encryption
  • Perform Data Recovery
  • Back Up and Restore Data

Module 12: Network Traffic Monitoring

Topics Covered

  • Network Traffic Monitoring Concepts
  • Baseline Traffic Analysis and Signature Identification
  • Network Sniffing Techniques and Traffic Analysis
  • Monitoring and Analyzing Network Protocol Traffic

Lab Exercises

  • Capture Network Traffic
  • Apply Traffic Filters
  • Analyze Network Packet Headers

Module 13: Information Security Fundamentals

Topics Covered

  • Overview of Information Security
  • Defense Strategies in Information Security
  • Threats, Threat Sources, and Vulnerabilities
  • Cryptography Concepts
  • Information Security Laws, Regulations, and Standards

Lab Exercises

  • No labs in this module

Module 14: Ethical Hacking Fundamentals

Topics Covered

  • Hacking Concepts and Hacker Classes
  • Ethical Hacking Concepts, Scope, and Limitations
  • Phases of Hacking Cycle
  • Hacking Methodologies and Frameworks

Lab Exercises

  • No labs in this module

Module 15: Malware Threats and Countermeasures

Topics Covered

  • Malware Concepts, Types, and Attack Mechanisms
  • Malware Propagation Techniques and Indicators
  • Malware Countermeasures

Lab Exercises

  • Create and Deploy Malware to Compromise Target Systems
  • Detect, Analyze, and Remove Malware from Systems

Module 16: Ethical Hacking Phases

Topics Covered

  • Reconnaissance, Footprinting, and OSINT Techniques
  • Scanning and Enumeration Methodologies
  • Vulnerability Scanning and Assessment Concepts
  • Gaining Access, Maintaining Access, and Covering Tracks
  • Countermeasures across Hacking Phases

Lab Exercises

  • Gather Information using Advanced Google Hacking Techniques
  • Perform DNS Footprinting, Host Discovery, Port Scanning, and Banner Grabbing
  • Perform NetBIOS and SNMP Enumeration
  • Perform Vulnerability Scanning and Exploitation
  • Perform Image Steganography

Module 17: Password Cracking Techniques and Countermeasures

Topics Covered

  • Introduction to Password Cracking
  • Password Cracking Techniques
  • Password Cracking Countermeasures

Lab Exercises

  • Perform Password Attacks and Audit Password Strength

Module 18: Social Engineering Techniques and Countermeasures

Topics Covered

  • Social Engineering Concepts
  • Social Engineering Techniques
  • Insider Threats and Identity Theft
  • Social Engineering Countermeasures

Lab Exercises

  • Perform Social Engineering to Capture User Credentials
  • Detect Phishing Attacks

Module 19: Network Level Attacks and Countermeasures

Topics Covered

  • Packet Sniffing Concepts
  • DoS and DDoS Attack Methods
  • Session Hijacking Techniques and Attack Methods
  • Network Attack Detection and Countermeasures

Lab Exercises

  • Perform MAC Flooding to Compromise the Security of Network Switches
  • Perform ARP Poisoning and Detect ARP Spoofing Attempts
  • Perform DHCP Starvation Attack
  • Launch and Defend Against DoS/DDoS Attacks
  • Perform and Detect Session Hijacking

Module 20: Web Application Attacks and Countermeasures

Topics Covered

  • Web Server Attacks
  • Web Application Attack Techniques and Exploitation Methods and Countermeasures
  • SQL Injection Attacks and Countermeasures

Lab Exercises

  • Perform Web Server and Web Application Attacks
  • Exploit and Detect Web Application Vulnerabilities
  • Perform SQL Injection Attacks and Detection

Module 21: Wireless Attacks and Countermeasures

Topics Covered

  • Introduction to Wireless Networks
  • Wireless Network Security Fundamentals
  • Common Wireless Attack Techniques
  • Bluetooth Threats and Wireless Security Risks
  • Wireless Attack Countermeasures

Lab Exercises

  • Analyze Wireless Network Traffic
  • Perform Wireless Attacks to Compromise Network Security

Module 22: Mobile, IoT, and OT Attacks and Countermeasures

Topics Covered

  • Mobile Attack Vectors and Vulnerabilities
  • Mobile Device Management (MDM) and BYOD Security
  • Mobile Attack Countermeasures
  • IoT Attacks and Countermeasures
  • OT Attacks and Countermeasures

Lab Exercises

  • Perform Mobile Device Exploitation and Security Hardening
  • Capture and Analyze IoT Device Traffic

Module 23: Cloud Computing Threats and Countermeasures

Topics Covered

  • Cloud Computing Concepts
  • Containerization in Cloud Computing
  • Cloud Computing Threats and Attacks
  • Cloud Attack Countermeasures

Lab Exercises

  • Perform Cloud Resource Enumeration and Exploitation

Module 24: Penetration Testing Fundamentals

Topics Covered

  • Introduction to Penetration Testing
  • Types, Phases, and Approaches to Penetration Testing
  • Guidelines and Recommendations for Penetration Testing

Lab Exercises

  • No labs in this module

Module 25: Computer Forensics Fundamentals

Topics Covered

  • Introduction to Computer Forensics
  • Digital Evidence
  • Forensic Readiness
  • Roles and Responsibilities of a Forensic Investigator
  • Legal Compliance in Computer Forensics

Lab Exercises

  • No labs in this module

Module 26: Computer Forensics Investigation Process

Topics Covered

  • Forensic Investigation Process and Its Importance
  • Pre-investigation Phase
  • Investigation Phase
  • Post-investigation Phase

Lab Exercises

  • Perform Hash or HMAC Calculations
  • Compare Hash Values of Files to Check Integrity
  • View Files of Various Formats
  • Create a Disk Image File of a Hard Disk Partition

Module 27: Hard Disks and File Systems

Topics Covered

  • Disk Drive Types and Their Characteristics
  • Logical Structure of a Disk
  • Boot Processes Across Windows, Linux, and macOS
  • File Systems in Windows, Linux, and macOS
  • File System Analysis and Data Recovery

Lab Exercises

  • Analyze File System of a Linux Image
  • Recover Deleted Files from Hard Disks

Module 28: Data Acquisition and Duplication

Topics Covered

  • Data Acquisition Fundamentals
  • Types and Methods of Data Acquisition
  • Forensic Image Formats and Standards
  • Data Acquisition Methodology

Lab Exercises

  • Create a Disk Image of a System Drive
  • Acquire RAM Memory from Systems
  • View Contents of a Forensic Image File

Module 29: Defeating Anti-forensics Techniques

Topics Covered

  • Introduction to Anti-forensics
  • Data Deletion and File Recovery Concepts
  • Password Protection and Encryption Techniques
  • Steganography and Data Hiding Techniques
  • Artifact Wiping and Trail Obfuscation
  • Anti-forensics Countermeasures

Lab Exercises

  • Perform File Carving on a Linux File System
  • Recover Data from Lost or Deleted Disk Partitions
  • Crack Application Passwords
  • Extract Password Hashes from a Target System
  • Detect Steganography and Alternate Data Streams

Module 30: Windows Forensics

Topics Covered

  • Introduction to Windows Forensics
  • Collecting Volatile and Non-Volatile Information
  • Windows Memory Analysis
  • Windows Artifacts
  • Web Browser Forensics
  • Windows File and Metadata Analysis

Lab Exercises

  • Acquire and Investigate Volatile Memory from a Windows System
  • Examine Windows and Web Browser Artifacts
  • Extract Information about Loaded Processes on a Computer

Module 31: Linux and Mac Forensics

Topics Covered

  • Volatile and Non-Volatile Data Collection in Linux
  • File System Analysis
  • Linux Memory Analysis
  • Mac Forensics

Lab Exercises

  • Acquire Volatile and Non-volatile Data in Linux
  • Perform Forensic Investigation on a Linux Memory Dump
  • Recover Data from a Linux Memory Dump

Module 32: Network Forensics

Topics Covered

  • Network Forensics Fundamentals
  • Event Correlation Concepts and Techniques
  • Identifying IoCs from Network Logs
  • Network Traffic Investigation

Lab Exercises

  • Identify and Investigate Various Network Attacks

Module 33: Investigating Web Attacks

Topics Covered

  • Web Application Forensics
  • IIS and Apache Web Server Logs
  • Investigation of Attacks on Windows-based Web Servers
  • Detection and Analysis of Web Application Attacks

Lab Exercises

  • Identify and Investigate Web Application Attacks

Module 34: Dark Web Forensics

Topics Covered

  • Dark Web Concepts
  • Dark Web Investigation
  • Tor Browser Forensics

Lab Exercises

  • Detect Tor Browser Activity on a System
  • Detect Tor Browser Browsing Artifacts
  • Analyze RAM Dumps to Retrieve Tor Browser Artifacts

Module 35: Investigating Email Crimes

Topics Covered

  • Email Basics
  • Email Crime Investigation
  • Email Acquisition and Analysis
  • Email Header Analysis and Authentication
  • Business Email Compromise (BEC) Investigations

Lab Exercises

  • Investigate a Suspicious Email
  • Recover Deleted Email Messages

Module 36: Malware Forensics

Topics Covered

  • Malware Types, Components, and Distribution
  • Malware Forensics Fundamentals
  • Static Malware Analysis
  • Suspicious Document Analysis
  • Dynamic Malware Analysis
  • System and Network Behavior Analysis

Lab Exercises

  • Perform Static Analysis on a Suspicious File
  • Forensic Examination of a Suspicious Microsoft Office Document
  • Perform Port Monitoring

img-exam-cert

Frequently Asked Questions (FAQs)

  • Why get EC-Council certified?

    EC-Council certifications are globally recognized standards in cybersecurity, validating your skills and knowledge in ethical hacking, penetration testing, and other critical security domains.

    These certifications enhance your career prospects, demonstrate your expertise to employers, and equip you with the knowledge to protect organizations from cyberthreats.

  • What to expect for the examination?

    EC-Council certification exams rigorously assess your knowledge and skills in specific cybersecurity domains.

    The exam format varies depending on the certification but can include multiple-choice questions, practical exercises, and scenario-based questions.

    Note: Certification requirements and policies may be updated by EC-Council from time to time. We apologize for any discrepancies; do get in touch with us if you have any questions.

  • How long is EC-Council certification valid for?

    EC-Council certifications are valid for three years from the date of certification.

    To maintain your certification, you will need to fulfill EC-Council's Continuing Education (ECE) requirements within the validity period.

    This can be done through various activities, such as attending training courses, conferences, or publishing whitepapers.

    Note: Certification requirements and policies may be updated by EC-Council from time to time. We apologize for any discrepancies; do get in touch with us if you have any questions.

  • Why take this course with Trainocate?

    Here’s what sets us apart:

    - Global Reach, Localized Accessibility: Benefit from our geographically diverse training hubs in 24 countries (and counting!).

    - Top-Rated Instructors: Our team of subject matter experts (with high average CSAT and MTM scores) are passionate to help you accelerate your digital transformation.

    - Customized Training Solutions: Choose from on-site, virtual classrooms, or self-paced learning to fit your organization and individual needs.

    - Experiential Learning: Dive into interactive training with our curated lesson plans. Participate in hands-on labs, solve real-world challenges, and take on comprehensive assessments.

    - Learn From The Best: With 30+ authorized training partnerships and countless awards from Microsoft, AWS, Google – you're guaranteed learning from the industry's elite.

    - Your Bridge To Success: We provide up-to-date course materials, helpful exam guides, and dedicated support to validate your expertise and elevate your career.

Keep Exploring

Course Curriculum

Course Curriculum

Training Schedule

Training Schedule

Exam & Certification

Exam & Certification

FAQs

Frequently Asked Questions

img-improve-career.jpg

Improve yourself and your career by taking this course.

img-get-info.jpg

Ready to Take Your Business from Great to Awesome?

Level-up by partnering with Trainocate. Get in touch today.

Name*
Email*
Phone*
I'm inquiring for
Inquiry Details

By submitting this form, you consent to Trainocate processing your data to respond to your inquiry and provide you with relevant information about our training programs, including occasional emails with the latest news, exclusive events, and special offers.

You can unsubscribe from our marketing emails at any time. Our data handling practices are in accordance with our Privacy Policy.