Description
CompTIA Cybersecurity Analyst (CySA+) is an international, vendor-neutral cybersecurity certification that applies behavioral analytics to improve the overall state of IT security. CySA+ validates critical knowledge and skills that are required to prevent, detect, and combat cybersecurity threats. As attackers have learned to evade traditional signature-based solutions such as firewalls, this course teaches participants an analytics-based approach within the IT security industry which is increasingly important for most organizations. Participants will identify and combat malware and advanced persistent threats (APTs) resulting in enhanced threat visibility across a broad attack surface. This course prepares IT Professionals for the CompTIA CySA+ examination to certify the participant has the knowledge and skills required to configure and use threat detection tools, perform data analysis, and interpret results to identify vulnerabilities, threats, and risks to an organization with the end goal of securing and protecting applications and systems within an organization.
Details
Length
PDU
Delivery Method
Prerequisites
None
Materials
- Access to the Solarity LMS including the recording for the training
- Course materials and other resources as provided by the trainer
- Course files and lab exercises
Objectives
- Apply environmental reconnaissance techniques using appropriate tools and processes;
- Analyze the results of a network reconnaissance;
- Implement or recommend the appropriate response and countermeasure;
- Explain the purpose of practices used to secure a corporate environment;
- Implement an information security vulnerability management process;
- Analyze the output resulting from a vulnerability scan;
- Compare and contrast common vulnerabilities found in the following targets within an organization;
- Distinguish threat data or behavior to determine the impact of an incident;
- Prepare a toolkit and use appropriate forensics tools during an investigation;
- Explain the importance of communication during the incident response process;
- Analyze common symptoms to select the best course of action to support incident response;
- Summarize the incident recovery and post-incident response process;
- Explain the relationship between frameworks, common policies, controls, and procedures;
- Use data to recommend remediation of security issues related to identity and access management;
- Review security architecture and make recommendations to implement compensating controls;
- Use application security best practices while participating in the Software Development Life Cycle (SDLC); and
- Compare and contrast the general purpose and reasons for using various cybersecurity tools and technologies.