With Certification
Free
Xprenia

Xprenia

Established in 2020, Xprenia is a self-managed e-learning platform that presents first-hand stories and knowledge from industry experts, always keeping you up-to-date with insights across the world.

Price: SGD 2,800

If you are interested, please email media@xprenia.com for the enrolment dates.

 


Overview
This course covers the duties of those responsible for monitoring and detecting security incidents in information systems and networks and for executing a proper response to such incidents. Depending on the organisation's size, this individual may act alone or be a computer security incident response team member


The course introduces strategies, frameworks, methodologies, and tools to manage cybersecurity risks, identify various types of common threats, design and operate secure computing and networking environments, assess and audit the organisation's security, collect and analyse cybersecurity intelligence, and handle incidents as they occur.


The course also covers closely related information assurance topics such as auditing and forensics to provide a sound basis for a comprehensive approach to security aimed toward those on the front lines of defence.


This 5-Day course is intended for:

• Assess information security risk in computing and network environments

• Analyse the cybersecurity threat landscape

• Analyse reconnaissance threats to computing and network environments

• Analyse attacks on computing and network environments

• Analyse post-attack techniques in computing and network environments

• Evaluate the organisation's security posture within a risk management framework

• Collect cybersecurity intelligence

• Analyse data collected from security and event logs

• Perform active analysis of assets and networks

• Respond to cybersecurity incidents

• Investigate cybersecurity incidents


Who should attend?

This course is designed primarily for cybersecurity practitioners who perform job functions related to protecting information systems by ensuring their availability, integrity, authentication, confidentiality, and non-repudiation.


This course focuses on the knowledge, ability, and skills necessary to defend those information systems in a cybersecurity context, including protection, detection, analysis, investigation, and response processes. In addition, the course ensures that all members of an IT team—from the help desk staff to the Chief Information Officer—understand their roles in these security processes.



Modules

(1) Assessing Information Security Risk & Creating an Information Assurance Lifecycle Process

(2) Analysing threats to Computing and Network & Designing Security Computing and Network Environments 

(3) Operating Secure Computing and Network Environments & Assessing the Security Posture Within a Risk Management Framework

(4) Collecting Cybersecurity Intelligence Information & Analysing Cybersecurity Intelligence Information 

(5) Responding to Cybersecurity Incidents, Investigating Cybersecurity Incidents & Auditing Secure Computing and Network Environments

(6) Examination (CFR-310) 



Course Prerequisites 

To ensure your success in this course, you should have the following requirements:

• At least two years (recommended) of experience in computer network security technology or a related field

• Operate at a foundational level some of the common operating systems for computing environments

• Safeguards include, but are not limited to, basic authentication and authorisation, resource permissions, and anti-malware mechanisms

• Operate some of the common concepts for network environments at a foundational level, such as routing and switching

• Foundational knowledge of major TCP/IP networking protocols, including, but not limited to, TCP, IP, UDP, DNS, HTTP, ARP, ICMP, and DHCP

• Foundational knowledge of the concepts and operational framework of common assurance safeguards in network environments. Safeguards include but are not limited to firewalls, intrusion prevention systems, and virtual private networks (VPNs)



Course Content

Assessing Information Security Risk & Creating an Information Assurance Lifecycle Process


Module 1: Assessing Infomation Security Risk

• Identify the Importance of Risk Management
• Assess Risk

• Mitigate Risk

• Integrate Documentation into Risk Management


Module 2: Creating an Information Assurance Lifecycle Process

• Evaluate Information Assurance Lifecycle Models
• Align Information Security Operations to the Information Assurance Lifecycle

• Align Information Assurance and Compliance Regulations


Analysing Threats to Computing and Network & Designing Secure Computing and Network Environments


Module 3: Azure Storage

• Identify Threat Analysis Models
• Assess the Impact of Reconnaissance Incidents

• Assess the Impact of Systems Hacking Attacks

• Assess the Impact of Malware

• Assess the Impact of Hijacking and Impersonation Attacks

• Assess the Impact of Denial of Service Incidents

• Assess the Impact of Threats to Mobile Infrastructure

• Assess the Impact of Threats to Cloud Infrastructures


Module 4: Designing Secure Computing and Network Environments

• Information Security Architecture Design Principles
• Design Access Control Mechanisms

• Design Cryptographic Security Controls

• Design Application Security

• Design Computing Systems Security

• Design Network Security


Operating Secure Computing and Network Environments & Assessing the Security Posture Within a Risk Management Framework


Module 5: Operating Secure Computing and Network Environments

• Implement Change Management in Security Operations
• Implement Monitoring in Security Operations

• Test and Evaluate Information Assurance Architectures


Module 6: Assessing the Security Posture Within a Risk Management Framework

• Deploy a Vulnerability Assessment and Management Platform
• Conduct Vulnerability Assessments

• Conduct Penetration Tests on Network Assets

• Analyse and Report Penetration Test Results


Collecting Cybersecurity Intelligence Information & Analyzing Cybersecurity Intelligence Information 


Module 7: Collecting Cybersecurity Intelligence Information

• Deploy a Security Intelligence Collection and Analysis Platform
• Collect Data from Security Intelligence Sources

• Establish Baselines and Make Sense of Collected Data


Module 8: Analysing Cybersecurity Intelligence Information

• Analyse Security Intelligence to Address Incidents
• Incorporate Security Intelligence and Event Management


Responding to Cybersecurity Incidents, Investigating Cybersecurity Incidents & Auditing Secure Computing and Network Environments


Module 9: Responding to Cybersecurity Incidents

• Deploy an Incident Handling and Response Architecture
• Perform Real-Time Incident Handling Tasks

• Prepare for Forensic Investigation


Module 10: Investigating Cybersecurity Incidents

• Create a Forensics Investigation Plan
• Securely Collect Electronic Evidence

• Identify the Who, Why, and How of an Incident

• Follow Up on the Results of an Investigation


Module 11: Auditing Secure Computing and Network Environments

• Deploy a Systems and Processes Auditing Architecture
• Maintain a Deployable Audit Toolkit

• Perform Audits Geared Toward the Information Assurance Lifecycle



Trainer

Balasubramaniam Ramanaidoo

Balan is our star Trainer-Coach, an accomplished seasoned IT professional with over 19 years of experience in large global data centre operations, IT strategy, technology services and more. Balan coaches many of our students with TechSkills in Cybersecurity and Microsoft Azure, bringing them to understand what skills are needed in the job market. As the trainer for the CFR, Balan testifies to the importance of being the first responder for Cybersecurity incidences in the workplace and industry as Digital Transformation progresses.



Reimbursement Policy 

Eligible trainees can receive the CITREP+ course fee support of up to 70% or up to 90% for this CITREP+ Course. For full information on CITREP+ eligibility, please visit go.gov.sg/tesacitrep



For more information about the course

Please contact media@xprenia.com.

Title Date/Time Duration Status
Please login to leave comment.