|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/comptia-combo-pack-comptia-casp-cysa-pentest/
课程评论:没有评论
课程名称:CompTIA Combo Pack (CompTIA CASP+, CySA+, PenTest+): 2025 课程概述:本课程涵盖三个主要的CompTIA认证:CompTIA高级安全从业人员(CASP+),CompTIA网络安全分析师(CySA+)和CompTIA渗透测试专家(PenTest+)。CASP+认证是针对安全架构师和高级安全工程师的高级网络安全认证,强调在复杂的企业环境中实施综合性的网络安全解决方案。CySA+则专注于通过行为分析来识别和应对网络安全威胁,注重数据分析和窗口分析。PenTest+则是一个涵盖渗透测试全部阶段的认证,注重渗透测试技术的具体应用。 课程内容包括: 1. **安全架构**: - 安全需求和目标分析 - 组织的基础设施安全设计 - 集成应用程序的安全性 - 数据安全技术实施 - 身份验证和授权控制的安全设计 - 云和虚拟化安全解决方案 - 密码学与公钥基础设施(PKI)的应用 2. **安全运营**: - 恶意行为的管理与响应 - 漏洞管理活动 - 事件响应流程和法证概念 - 使用法证分析工具 3. **安全工程与密码学**: - 企业移动设备的安全配置 - 终端安全控制的实施 - 云技术对组织安全的影响 - PKI解决方案的实施 4. **治理、风险与合规性**: - 风险策略的应用 - 供应商风险管理 - 合规框架和法律考量 - 业务连续性和灾难恢复概念 5. **安全分析与渗透测试**: - 漏洞管理的流程与实施 - 网路威胁检测和响应 - 安全框架及工具集的分析和应用 本课程的目标是为IT专业人员提供在网络安全领域进行深入学习和实践的机会,帮助他们在复杂的网络环境中有效地应对威胁和挑战,提升安全意识和防护能力。这些认证将有助于他们在职业生涯中获得更高的认可和发展。
CompTIA Advanced Security Practitioner (CASP)CompTIA Advanced Security Practitioner (CASP+) CAS-004 is an advanced-level cybersecurity certification for security architects and senior security engineers charged with leading and improving an enterprise's cybersecurity readinessCASP+ is the only hands-on, performance-based certification for advanced practitioners - not managers - at the advanced skill level of cybersecurity. While cybersecurity managers help identify what cybersecurity policies and frameworks could be implemented, CASP+ certified professionals figure out how to implement solutions within those policies and frameworksUnlike other certifications, CASP+ covers both security architecture and engineering - CASP+ is the only certification on the market that qualifies technical leaders to assess cyber readiness within an enterprise, and design and implement the proper solutions to ensure the organization is ready for the next attackCourse Content0 Security ArchitectureGiven a scenario, analyze the security requirements and objectives to ensure an appropriate, secure network architecture for a new or existing networkServicesSegmentationDeperimeterization/zero trustMerging of networks from various organizationsSoftware-defined networking (SDN)Given a scenario, analyze the organizational requirements to determine the proper infrastructure security designScalabilityResiliencyPerformanceAutomationContainerizationVirtualizationContent delivery networkCachingGiven a scenario, integrate software applications securely into an enterprise architectureBaseline and templatesSoftware assuranceConsiderations of integrating enterprise applicationsIntegrating security into development life cycleGiven a scenario, implement data security techniques for securing enterprise architectureData loss preventionData loss detectionData classification, labeling, and taggingObfuscationAnonymizationEncrypted vs. unencryptedData life cycleData inventory and mappingData integrity managementData storage, backup, and recoveryGiven a scenario, analyze the security requirements and objectives to provide the appropriate authentication and authorization controlsCredential managementPassword policiesFederationAccess controlProtocolsMultifactor authentication (MFA)One-time password (OTP)Hardware root of trustSingle sign-on (SSO)JavaScript Object Notation (JSON) web token (JWT)Attestation and identity proofingGiven a set of requirements, implement secure cloud and virtualization solutionsVirtualization strategiesProvisioning and deprovisioningMiddlewareMetadata and tagsDeployment models and considerationsHosting modelsService modelsCloud provider limitationsExtending appropriate on-premises controlsStorage modelsExplain how cryptography and public key infrastructure (PKI) support security objectives and requirementsPrivacy and confidentiality requirementsIntegrity requirementsNon-repudiationCompliance and policy requirementsCommon cryptography use casesCommon PKI use casesExplain the impact of emerging technologies on enterprise security and privacy.Artificial intelligenceMachine learningQuantum computingBlockchainHomomorphic encryptionSecure multiparty computationDistributed consensusBig DataVirtual/augmented reality3-D printingPasswordless authenticationNano technologyDeep learningBiometric impersonation2.0 Security OperationsGiven a scenario, perform threat management activitiesIntelligence typesActor typesThreat actor propertiesIntelligence collection methodsFrameworksGiven a scenario, analyze indicators of compromise and formulate an appropriate responseIndicators of compromiseResponseGiven a scenario, perform vulnerability management activities.Vulnerability scansSecurity Content Automation Protocol (SCAP)Self-assessment vs. third- party vendor assessmentPatch managementInformation sourcesGiven a scenario, use the appropriate vulnerability assessment and penetration testing methods and toolsMethodsToolsDependency managementRequirementsGiven a scenario, analyze vulnerabilities and recommend risk mitigationsVulnerabilitiesInherently vulnerable system/applicationAttacksGiven a scenario, use processes to reduce riskProactive and detectionSecurity data analyticsPreventiveApplication controlSecurity automationPhysical securityGiven an incident, implement the appropriate responseEvent classificationsTriage eventPreescalation tasksIncident response processSpecific response playbooks/processesCommunication planStakeholder managementExplain the importance of forensic conceptsLegal vs. internal corporate purposesForensic processIntegrity preservationCryptanalysisSteganalysisGiven a scenario, use forensic analysis toolsFile carving toolsBinary analysis toolsAnalysis toolsImaging toolsHashing utilitiesLive collection vs. post-mortem tools3.0 Security Engineering and CryptographyGiven a scenario, apply secure configurations to enterprise mobilityManaged configurationsDeployment scenariosSecurity considerationsGiven a scenario, configure and implement endpoint security controlsHardening techniquesProcessesMandatory access controlTrustworthy computingCompensating controlsExplain security considerations impacting specific sectors and operational technologiesEmbeddedICS/supervisory control and data acquisition (SCADA)ProtocolsSectorsExplain how cloud technology adoption impacts organizational securityAutomation and orchestrationEncryption configurationLogsMonitoring configurationsKey ownership and locationKey life-cycle managementBackup and recovery methodsInfrastructure vs. serverless computingApplication virtualizationSoftware-defined networkingMisconfigurationsCollaboration toolsStorage configurationsCloud access security broker (CASB)Given a business requirement, implement the appropriate PKI solutionPKI hierarchyCertificate typesCertificate usages/profiles/templatesExtensionsTrusted providersTrust modelCross-certificationConfigure profilesLife-cycle managementPublic and private keysDigital signatureCertificate pinningCertificate staplingCertificate signing requests (CSRs)Online Certificate Status Protocol (OCSP) vs. certificate revocation list (CRL)HTTP Strict Transport Security (HSTS)Given a business requirement, implement the appropriate cryptographic protocols and algorithms.HashingSymmetric algorithmsAsymmetric algorithmsProtocolsElliptic curve cryptographyForward secrecyAuthenticated encryption with associated dataKey stretchingGiven a scenario, troubleshoot issues with cryptographic implementationsImplementation and configuration issuesKeys4.0 Governance, Risk, and ComplianceGiven a set of requirements, apply the appropriate risk strategiesRisk assessmentRisk handling techniquesRisk typesRisk management life cycleRisk trackingRisk appetite vs. risk tolerancePolicies and security practicesExplain the importance of managing and mitigating vendor riskShared responsibility model (roles/responsibilities)Vendor lock-in and vendor lockoutVendor viabilityMeeting client requirementsSupport availabilityGeographical considerationsSupply chain visibilityIncident reporting requirementsSource code escrowsOngoing vendor assessment toolsThird-party dependenciesTechnical considerationsExplain compliance frameworks and legal considerations, and their organizational impactSecurity concerns of integrating diverse industriesData considerationsGeographic considerationsThird-party attestation of complianceRegulations, accreditations, and standardsLegal considerationsContract and agreement typesExplain the importance of business continuity and disaster recovery conceptsBusiness impact analysisPrivacy impact assessmentDisaster recovery plan (DRP)/ business continuity plan (BCP)Incident response planTesting plansCompTIA Cybersecurity Analyst (CySA+)CompTIA Cybersecurity Analyst (CySA+) is an international, vendor-neutral cybersecurity certification that applies behavioral analytics to improve the overall state of IT security. CySA+ validates critical knowledge and skills that are required to prevent, detect and combat cybersecurity threatsAs attackers have learned to evade traditional signature-based solutions such as firewalls, an analytics-based approach within the IT security industry is increasingly important for most organizations. The behavioral analytics skills covered by CySA+ identify and combat malware, and advanced persistent threats (APTs), resulting in enhanced threat visibility across a broad attack surface. CompTIA CySA+ is for IT professionals looking to gain the following security analyst skills:Configure and use threat detection toolsPerform data analysisInterpret the results to identify vulnerabilities, threats and risks to an organization.Course ContentThreat ManagementGiven a scenario, apply environmental reconnaissance techniques using appropriate tools and processesGiven a scenario, analyze the results of a network reconnaissanceGiven a network-based threat, implement or recommend the appropriate response and countermeasureExplain the purpose of practices used to secure a corporate environmentVulnerability ManagementGiven a scenario, implement an information security vulnerability management processGiven a scenario, analyze the output resulting from a vulnerability scanCompare and contrast common vulnerabilities found in the following targets within an organizationCyber Incident ResponseGiven a scenario, distinguish threat data or behavior to determine the impact of an incidentGiven a scenario, prepare a toolkit and use appropriate forensics tools during an investigation.Explain the importance of communication during the incident response processGiven a scenario, analyze common symptoms to select the best course of action to support incident responseSummarize the incident recovery and post-incident response processSecurity Architecture and Tool SetsExplain the relationship between frameworks, common policies, controls, and proceduresGiven a scenario, use data to recommend remediation of security issues related to identity and access managementGiven a scenario, review security architecture and make recommendations to implement compensating controlsGiven a scenario, use application security best practices while participating in the Software Development Life Cycle (SDLC)Compare and contrast the general purpose and reasons for using various cybersecurity tools and technologiesCompTIA PenTest+ is for cybersecurity professionals tasked with penetration testing (pentesting) and vulnerability managementCompTIA PenTest+ is the most comprehensive exam covering all penetration testing stages. Unlike other penetration testing exams that only cover a portion of stages with essay questions and hands-on, PenTest+ uses both performance-based and knowledge-based questions to ensure all stages are addressed. Pentest, ethical hacking, pentest+, comptia pentest, certified ethical hacker, hacking, pentesting, comptia pentest+, comptia, comptia pentest pt0-002, comptia, ceh, comptia pentest+ pt0-002PenTest+ is the only exam on the market to include all aspects of vulnerability management. It not only covers hands-on vulnerability assessment, scanning, and analysis, but also includes planning, scoping, and managing weaknesses, not just exploiting themPenTest+ is the most current penetration testing exam covering the latest techniques against expanded attack surfaces. It is a unique exam that requires a candidate to demonstrate the most relevant pen testing skills for the cloud, hybrid environments, web applications, Internet of Things (IoT), and traditional on-premisesCompTIA PenTest+ is an intermediate-skills level cybersecurity certification that focuses on offensive skills through pen testing and vulnerability assessment. Cybersecurity professionals with CompTIA PenTest+ know how plan, scope, and manage weaknesses, not just exploit themIT certifications show employers that candidates have the knowledge and skills they need to do the job, and they help IT pros advance in their careers. As cybersecurity has become a critical function, cybersecurity certifications are among the most popular IT certifications globallyThe CompTIA PenTest+ certification is a vendor-neutral, internationally targeted validation of intermediate-level penetration testing (or pen testing) knowledge and skills. It focuses on the latest pen testing techniques, attack surfaces, vulnerability management, post-delivery and compliance tasks