Vendors

Gain technical ability to match your technical knowledge.

ISACA’s Certified Cybersecurity Operations Analyst™ (CCOA™) certification focuses on the technical skills to evaluate threats, identify vulnerabilities, and recommend countermeasures to prevent cyber incidents. As emerging technologies like automated systems using AI evolve, the role of the cyber analyst will only become more critical in protecting digital ecosystems. Analysts specialize in understanding the what, where and how behind cybersecurity incidents. By identifying patterns, anomalies and indicators of compromise, you become the eyes and ears of your organization’s defense.

CCOA is administered through a hybrid exam that assesses a candidate’s knowledge and skills using a blend of traditional multiple-choice and performance-based questions.

This five-session exam-prep course combines knowledge and practice to prepare learners for the CCOA exam. Instructors are encouraged to tailor the course to the learners’ experience level. The initial domains may be better suited for review, providing more time to focus on the complex concepts in Domains 4 and 5.

img-course-overview.jpg

What You'll Learn

The CCOA exam covers five globally validated domains:

  • Technology Essentials
  • Cybersecurity Principles and Risk
  • Adversarial Tactics, Techniques, and Procedures
  • Incident Detection and Response
  • Securing Assets

Who Should Attend

CCOA’s development process was backed by an extensive amount of qualitative and quantitative research. ISACA validated that feedback further with a beta that consisted of over 200 SMEs. Those individuals piloted the program and provided critical feedback giving us the confidence this program aligns to the target audience:

  • Cybersecurity Analyst
  • Information Security Analyst
  • SOC Analyst
  • Vulnerability Analyst
  • Incident Response Analyst
  • Tier 1 and 2 SOC Support
img-who-should-learn.png

Prerequisites

There are no prerequisites required to attend this course.

Learning Journey

Coming Soon...

Module 1: Technology Essentials

Learning Objectives:

  • Identify the key components of both computer and cloud networking.
  • Understand how databases, virtualization, and containerization are leveraged.
  • Become familiar with command line interfaces.
  • Identify the purpose, benefits, and use of APIs.
  • Understand the principles and concepts of DevOps, SecDevOps, and the CI/CD pipeline.
  • Fundamentally understand programming and scripting.

Part A: Networking ? Computer Networking Models ? Devices Ports Protocols ? Network Access Controls ? Network Tools ? Network Topology ? Segmentation

Part B: System & Endpoint ? Databases ? Command Line ? Containers and Virtualization ? Middleware ? Operating Systems

Part C: Applications ? Application Programming Interface ? Automated Deployment ? Programming and Scripting

Module 2: Cybersecurity Principles and Risk

Learning Objectives:

  • Understand cybersecurity governance and alignment with business drivers.
  • Define cybersecurity strategy based on enterprise objectives.
  • Establish effective cross-organizational communication for cybersecurity.
  • Define roles and responsibilities for cybersecurity initiatives.
  • Develop metrics for evaluating cybersecurity program performance.
  • Inform stakeholders about investment needs for asset protection.
  • Implement repeatable processes for cybersecurity risk management.
  • Recognize internal and external compliance requirements.
  • Document risk associated with enterprise operations.

Part A: Cybersecurity Principles ? Compliance ? Governance ? Risk Management ? Roles and Responsibility ? Security Models

Part B: Cybersecurity Risk ? Application Security Risk ? Cloud Technology Risk ? Data Risk ? Network Security Risk ? Supply Chain Risk ? System Endpoint Risk ? Web Application Risk ? User Risk

Module 3: Adversarial Tactics, Techniques, and Procedures

Learning Objectives:

  • Understand common adversarial tactics, techniques, and procedures (TTPs).
  • Develop critical and creative thinking skills for threat detection and response.
  • Differentiate between dashboard events and attacker mindset insights.
  • Tune baseline detections for malicious and anomalous behaviors.
  • Implement time-optimized reactive detection capabilities.
  • Engage in proactive threat-hunting activities.
  • Explore the threat landscape, including attack vectors and threat actors.
  • Identify motivations behind cyberattacks.
  • Utilize threat intelligence sources effectively.
  • Recognize various attack types and cyberattack stages.
  • Analyze exploit techniques used by threat actors.
  • Understand the significance of security testing in cybersecurity.

Part A: Treat Landscape ? Attack Vectors ? Threat Actors and Agents ? Threat Intelligence Sources

Part B: Means and Methods ? Attack Types ? Cyber Attack Stages ? Exploit Techniques ? Security Testing

Module 4: Incident Detection and Response

Learning Objectives:

  • Understand the inevitability of cybersecurity incidents and the importance of incident preparedness.
  • Recognize the significance of incident detection and response in mitigating the impact of cybersecurity events.
  • Appreciate the role of proactive planning, practice, and process refinement in effective incident response.
  • Identify the components and techniques involved in incident detection, from data analytics to security logs and alerts.
  • Learn to develop detection use cases and recognize indicators of compromise for early threat identification.
  • Explore the various security monitoring tools and technologies essential for effective incident detection.
  • Master the fundamentals of incident response, including containment strategies and handling procedures.
  • Gain proficiency in forensic analysis, malware analysis, network traffic analysis, packet analysis, and threat analysis for comprehensive incident response.
  • Explore the various security monitoring tools and technologies essential for effective incident detection.
  • Master the fundamentals of incident response, including containment strategies and handling procedures.
  • Gain proficiency in forensic analysis, malware analysis, network traffic analysis, packet analysis, and threat analysis for comprehensive incident response.

Part A: Incident Detection ? Data Analysis ? Detection Analysis ? Indicators of Attack & Compromise ? Indicators of Attack Indicators of Compromise ? Logs and Alerts ? Advanced Log Analysis

Part B: Incident Response ? Incident Containment ? Incident Handling ? Forensic Analysis ? Network Traffic Analysis ? Packet Analysis Threat Analysis

Module 5: Domain 5: Securing Assets

Learning Objectives:

  • Understand the importance of designing countermeasures to protect digital assets.
  • Recognize the iterative nature of securing systems and their ecosystems.
  • Appreciate the holistic approach to securing assets, considering technical aspects and organizational products, services, and critical business processes.
  • Differentiate between the security needs of various industries based on the unique values assigned to digital assets and risk tolerance levels.
  • Gain insight into how an organization’s business goals and risk assessments influence the selection of security controls.
  • Develop foundational knowledge of contingency planning to ensure business continuity during security incidents.
  • Explore different control techniques applicable to securing digital assets.
  • Understand the principles and practices of identity and access management to ensure proper authorization and authentication.
  • Become familiar with industry best practices, guidance, frameworks, and standards relevant to asset security.
  • Master the processes of vulnerability assessment, identification, remediation, and tracking to effectively manage vulnerabilities and mitigate risk.

Part A: Controls ? Contingency Planning ? Controls and Techniques ? Identity and Access Management ? Industry Best ? Collecting and Verifying Integrity of Data ? Collecting and Documenting Incidents

Part B: Vulnerability Management ? Vulnerability Assessment ? Vulnerability Identification ? Vulnerability Remediation ? Vulnerability Tracking

img-exam-cert

Frequently Asked Questions (FAQs)

  • Why get ISACA certified?

    ISACA certifications validate your expertise in critical areas like IT governance, risk management, audit, and cybersecurity.

    These globally recognized credentials demonstrate your commitment to professional standards and best practices, enhancing your credibility and opening doors to career advancement.

    ISACA-certified professionals are highly sought after by employers worldwide, as they possess the knowledge and skills to navigate the complex landscape of IT governance, risk, and cybersecurity.

  • What to expect for the examination?

    ISACA certification exams are rigorous assessments designed to test your knowledge and understanding of specific domains.

    Exams typically consist of multiple-choice questions, and some may include scenario-based questions that assess your ability to apply your knowledge in real-world situations.

    Note: Certification requirements and policies may be updated by ISACA from time to time. We apologize for any discrepancies; do get in touch with us if you have any questions.

  • How long is ISACA certification valid for?

    ISACA certifications do not expire. However, to maintain your certified status and demonstrate your ongoing commitment to professional development, you must: adhere to the Continuing Professional Education (CPE) policy.

    This involves earning and reporting a specific number of CPE hours annually through activities like attending conferences, webinars, training courses, or self-study.

    Other requirements include paying an annual maintenance fee as well as complying with the annual CPE audit if selected.

    Note: Certification requirements and policies may be updated by ISACA from time to time. We apologize for any discrepancies; do get in touch with us if you have any questions.

  • Why take this course with Trainocate?

    Here’s what sets us apart:

    - Global Reach, Localized Accessibility: Benefit from our geographically diverse training hubs in 24 countries (and counting!).

    - Top-Rated Instructors: Our team of subject matter experts (with high average CSAT and MTM scores) are passionate to help you accelerate your digital transformation.

    - Customized Training Solutions: Choose from on-site, virtual classrooms, or self-paced learning to fit your organization and individual needs.

    - Experiential Learning: Dive into interactive training with our curated lesson plans. Participate in hands-on labs, solve real-world challenges, and take on comprehensive assessments.

    - Learn From The Best: With 30+ authorized training partnerships and countless awards from Microsoft, AWS, Google – you're guaranteed learning from the industry's elite.

    - Your Bridge To Success: We provide up-to-date course materials, helpful exam guides, and dedicated support to validate your expertise and elevate your career.

Keep Exploring

Course Curriculum

Course Curriculum

Training Schedule

Training Schedule

Exam & Certification

Exam & Certification

FAQs

Frequently Asked Questions

img-improve-career.jpg

Improve yourself and your career by taking this course.

img-get-info.jpg

Ready to Take Your Business from Great to Awesome?

Level-up by partnering with Trainocate. Get in touch today.

Name*
Email*
Phone*
I'm inquiring for
Inquiry Details

By submitting this form, you consent to Trainocate processing your data to respond to your inquiry and provide you with relevant information about our training programs, including occasional emails with the latest news, exclusive events, and special offers.

You can unsubscribe from our marketing emails at any time. Our data handling practices are in accordance with our Privacy Policy.