Module 01: Network Security Fundamentals
Topics Covered
- Fundamentals of Network Security and Defense
- Network Security Controls
- Network Security Protocols
Lab Exercises
Module 02: Identification, Authentication, and Authorization
Topics Covered
- Access Control Principles, Terminologies, and Models
- Identity and Access Management (IAM) Concepts
- Authentication Mechanisms
- Authorization Systems and User Accounting
Lab Exercises
- Implement Access Controls in Windows Machine
- Manage Access Controls in Linux Machine
- Implement and Configure Role-Based Access Control
Module 03: Network Security Controls – Administrative Controls
Topics Covered
- Regulatory Frameworks and Compliance Requirements
- Security Policies and Governance
- Security and Awareness Training
Lab Exercises
- Implement Internet Access Policies
- Implement Password Policies in Windows and Linux
Module 04: Network Security Controls – Physical Controls
Topics Covered
- Physical Security Concepts and Attack Vectors
- Physical Security Controls and Mechanisms
- Workplace Security and Asset Protection
- Environmental Controls and Safety Measures
Lab Exercises
Module 05: Network Security Controls – Technical Controls
Topics Covered
- Network Segmentation and Perimeter Isolation
- Firewall Technologies, Architectures, and Best Practices
- Intrusion Detection and Prevention Systems (IDS/IPS)
- Proxy Servers, VPNs, and Secure Network Communication
- SIEM, UBA/UEBA, and Endpoint Security Solutions
Lab Exercises
- Implement Host-based Firewall Protection and Functionality
- Implement Network-Based Firewall Functionality
- Implement Host-based Intrusion Detection Functionality
- Set Up Proxy Server for Secure and Anonymous Browsing
- Detect Malicious Network Traffic
- Establish Virtual Private Network Connection
Module 06: Virtualization and Cloud Computing
Topics Covered
- Virtualization Concepts and Security Considerations
- Containerization Technologies and Security Challenges
- Cloud Computing Models and Architecture
- Cloud Security Risks, Attacks, and Best Practices
Lab Exercises
- Scan Container Images for Vulnerabilities
- Implement Cloud Identity and Access Management
- Secure Cloud Storage
Module 07: Wireless Network Security
Topics Covered
- Wireless Network Fundamentals and Standards
- Wireless Encryption and Authentication Mechanisms
- Wireless Security Implementation and Defense Strategies
Lab Exercises
- Configure Security on a Wireless Router
Module 08: Mobile Device Security
Topics Covered
- Mobile Device Connection Methods
- Mobile Device Management (MDM) Concepts
- Mobile Usage Policies in Enterprise
- Enterprise-level Mobile Security Management
- Mobile Device Threats and Security Risks
- Mobile Security Controls and Best Practices
Lab Exercises
- Implement Enterprise Mobile Security
- Secure Mobile Devices
Module 09: IoT Device Security
Topics Covered
- IoT Architecture, Devices, and Communication Models
- IoT Security Challenges and Attack Vectors
- IoT Security Controls and Best Practices
Lab Exercises
- Secure IoT Device Communication
Module 10: Cryptography and PKI
Topics Covered
- Cryptographic Techniques
- Cryptographic Algorithms and Tools
- Public Key Infrastructure (PKI) and Digital Certificates
Lab Exercises
- Calculate One-way and MD5 Hashes
- Encrypt and Decrypt Messages
- Create a Self-signed Certificate
Module 11: Data Security
Topics Covered
- Data Security Concepts
- Data Encryption Techniques
- Data Backup and Retention
- Data Loss Prevention (DLP) Concepts
Lab Exercises
- Encrypt Data at Rest and Implement Disk Encryption
- Perform Data Recovery
- Back Up and Restore Data
Module 12: Network Traffic Monitoring
Topics Covered
- Network Traffic Monitoring Concepts
- Baseline Traffic Analysis and Signature Identification
- Network Sniffing Techniques and Traffic Analysis
- Monitoring and Analyzing Network Protocol Traffic
Lab Exercises
- Capture Network Traffic
- Apply Traffic Filters
- Analyze Network Packet Headers
Module 13: Information Security Fundamentals
Topics Covered
- Overview of Information Security
- Defense Strategies in Information Security
- Threats, Threat Sources, and Vulnerabilities
- Cryptography Concepts
- Information Security Laws, Regulations, and Standards
Lab Exercises
Module 14: Ethical Hacking Fundamentals
Topics Covered
- Hacking Concepts and Hacker Classes
- Ethical Hacking Concepts, Scope, and Limitations
- Phases of Hacking Cycle
- Hacking Methodologies and Frameworks
Lab Exercises
Module 15: Malware Threats and Countermeasures
Topics Covered
- Malware Concepts, Types, and Attack Mechanisms
- Malware Propagation Techniques and Indicators
- Malware Countermeasures
Lab Exercises
- Create and Deploy Malware to Compromise Target Systems
- Detect, Analyze, and Remove Malware from Systems
Module 16: Ethical Hacking Phases
Topics Covered
- Reconnaissance, Footprinting, and OSINT Techniques
- Scanning and Enumeration Methodologies
- Vulnerability Scanning and Assessment Concepts
- Gaining Access, Maintaining Access, and Covering Tracks
- Countermeasures across Hacking Phases
Lab Exercises
- Gather Information using Advanced Google Hacking Techniques
- Perform DNS Footprinting, Host Discovery, Port Scanning, and Banner Grabbing
- Perform NetBIOS and SNMP Enumeration
- Perform Vulnerability Scanning and Exploitation
- Perform Image Steganography
Module 17: Password Cracking Techniques and Countermeasures
Topics Covered
- Introduction to Password Cracking
- Password Cracking Techniques
- Password Cracking Countermeasures
Lab Exercises
- Perform Password Attacks and Audit Password Strength
Module 18: Social Engineering Techniques and Countermeasures
Topics Covered
- Social Engineering Concepts
- Social Engineering Techniques
- Insider Threats and Identity Theft
- Social Engineering Countermeasures
Lab Exercises
- Perform Social Engineering to Capture User Credentials
- Detect Phishing Attacks
Module 19: Network Level Attacks and Countermeasures
Topics Covered
- Packet Sniffing Concepts
- DoS and DDoS Attack Methods
- Session Hijacking Techniques and Attack Methods
- Network Attack Detection and Countermeasures
Lab Exercises
- Perform MAC Flooding to Compromise the Security of Network Switches
- Perform ARP Poisoning and Detect ARP Spoofing Attempts
- Perform DHCP Starvation Attack
- Launch and Defend Against DoS/DDoS Attacks
- Perform and Detect Session Hijacking
Module 20: Web Application Attacks and Countermeasures
Topics Covered
- Web Server Attacks
- Web Application Attack Techniques and Exploitation Methods and Countermeasures
- SQL Injection Attacks and Countermeasures
Lab Exercises
- Perform Web Server and Web Application Attacks
- Exploit and Detect Web Application Vulnerabilities
- Perform SQL Injection Attacks and Detection
Module 21: Wireless Attacks and Countermeasures
Topics Covered
- Introduction to Wireless Networks
- Wireless Network Security Fundamentals
- Common Wireless Attack Techniques
- Bluetooth Threats and Wireless Security Risks
- Wireless Attack Countermeasures
Lab Exercises
- Analyze Wireless Network Traffic
- Perform Wireless Attacks to Compromise Network Security
Module 22: Mobile, IoT, and OT Attacks and Countermeasures
Topics Covered
- Mobile Attack Vectors and Vulnerabilities
- Mobile Device Management (MDM) and BYOD Security
- Mobile Attack Countermeasures
- IoT Attacks and Countermeasures
- OT Attacks and Countermeasures
Lab Exercises
- Perform Mobile Device Exploitation and Security Hardening
- Capture and Analyze IoT Device Traffic
Module 23: Cloud Computing Threats and Countermeasures
Topics Covered
- Cloud Computing Concepts
- Containerization in Cloud Computing
- Cloud Computing Threats and Attacks
- Cloud Attack Countermeasures
Lab Exercises
- Perform Cloud Resource Enumeration and Exploitation
Module 24: Penetration Testing Fundamentals
Topics Covered
- Introduction to Penetration Testing
- Types, Phases, and Approaches to Penetration Testing
- Guidelines and Recommendations for Penetration Testing
Lab Exercises
Module 25: Computer Forensics Fundamentals
Topics Covered
- Introduction to Computer Forensics
- Digital Evidence
- Forensic Readiness
- Roles and Responsibilities of a Forensic Investigator
- Legal Compliance in Computer Forensics
Lab Exercises
Module 26: Computer Forensics Investigation Process
Topics Covered
- Forensic Investigation Process and Its Importance
- Pre-investigation Phase
- Investigation Phase
- Post-investigation Phase
Lab Exercises
- Perform Hash or HMAC Calculations
- Compare Hash Values of Files to Check Integrity
- View Files of Various Formats
- Create a Disk Image File of a Hard Disk Partition
Module 27: Hard Disks and File Systems
Topics Covered
- Disk Drive Types and Their Characteristics
- Logical Structure of a Disk
- Boot Processes Across Windows, Linux, and macOS
- File Systems in Windows, Linux, and macOS
- File System Analysis and Data Recovery
Lab Exercises
- Analyze File System of a Linux Image
- Recover Deleted Files from Hard Disks
Module 28: Data Acquisition and Duplication
Topics Covered
- Data Acquisition Fundamentals
- Types and Methods of Data Acquisition
- Forensic Image Formats and Standards
- Data Acquisition Methodology
Lab Exercises
- Create a Disk Image of a System Drive
- Acquire RAM Memory from Systems
- View Contents of a Forensic Image File
Module 29: Defeating Anti-forensics Techniques
Topics Covered
- Introduction to Anti-forensics
- Data Deletion and File Recovery Concepts
- Password Protection and Encryption Techniques
- Steganography and Data Hiding Techniques
- Artifact Wiping and Trail Obfuscation
- Anti-forensics Countermeasures
Lab Exercises
- Perform File Carving on a Linux File System
- Recover Data from Lost or Deleted Disk Partitions
- Crack Application Passwords
- Extract Password Hashes from a Target System
- Detect Steganography and Alternate Data Streams
Module 30: Windows Forensics
Topics Covered
- Introduction to Windows Forensics
- Collecting Volatile and Non-Volatile Information
- Windows Memory Analysis
- Windows Artifacts
- Web Browser Forensics
- Windows File and Metadata Analysis
Lab Exercises
- Acquire and Investigate Volatile Memory from a Windows System
- Examine Windows and Web Browser Artifacts
- Extract Information about Loaded Processes on a Computer
Module 31: Linux and Mac Forensics
Topics Covered
- Volatile and Non-Volatile Data Collection in Linux
- File System Analysis
- Linux Memory Analysis
- Mac Forensics
Lab Exercises
- Acquire Volatile and Non-volatile Data in Linux
- Perform Forensic Investigation on a Linux Memory Dump
- Recover Data from a Linux Memory Dump
Module 32: Network Forensics
Topics Covered
- Network Forensics Fundamentals
- Event Correlation Concepts and Techniques
- Identifying IoCs from Network Logs
- Network Traffic Investigation
Lab Exercises
- Identify and Investigate Various Network Attacks
Module 33: Investigating Web Attacks
Topics Covered
- Web Application Forensics
- IIS and Apache Web Server Logs
- Investigation of Attacks on Windows-based Web Servers
- Detection and Analysis of Web Application Attacks
Lab Exercises
- Identify and Investigate Web Application Attacks
Module 34: Dark Web Forensics
Topics Covered
- Dark Web Concepts
- Dark Web Investigation
- Tor Browser Forensics
Lab Exercises
- Detect Tor Browser Activity on a System
- Detect Tor Browser Browsing Artifacts
- Analyze RAM Dumps to Retrieve Tor Browser Artifacts
Module 35: Investigating Email Crimes
Topics Covered
- Email Basics
- Email Crime Investigation
- Email Acquisition and Analysis
- Email Header Analysis and Authentication
- Business Email Compromise (BEC) Investigations
Lab Exercises
- Investigate a Suspicious Email
- Recover Deleted Email Messages
Module 36: Malware Forensics
Topics Covered
- Malware Types, Components, and Distribution
- Malware Forensics Fundamentals
- Static Malware Analysis
- Suspicious Document Analysis
- Dynamic Malware Analysis
- System and Network Behavior Analysis
Lab Exercises
- Perform Static Analysis on a Suspicious File
- Forensic Examination of a Suspicious Microsoft Office Document
- Perform Port Monitoring