|
|
|
You Will Learn How To
- Analyze your exposure to security threats and protect your organization's systems and data
- Reduce your susceptibility to an attack by deploying firewalls and data encryption
- Assess alternative user and host authentication mechanisms
- Manage risks emanating from inside the organization and from the Internet
- Protect network users from hostile applications and viruses
- Identify the security risks that need to be addressed within your organization
Course Benefits In today's Internet-dependent business environment, organizations must link their systems across enterprise-wide and virtual private networks as well as connect mobile users. Each connection increases exposure to customers, competitors and hackers, magnifying vulnerability to attack. In this course, you learn how to analyze risks to your networks and the steps needed to select and deploy the appropriate countermeasures to reduce your exposure to network threats.
Who Should Attend Those who require the fundamental skills to develop and implement security schemes designed to protect their organization's information from threats.
Workshop Course Workshops, providing you with experience analyzing system and network security, include:
- Cracking passwords using rainbow tables
- Scanning systems with Microsoft Baseline Security Analyzer (MBSA)
- Ensuring trusted server access via digital certificates
- Preventing unwanted network access with a personal firewall
- Encrypting and signing important data
- Exposing and rectifying communication vulnerabilities with remote hosts
Course 468 Content Building a Secure Organization
Real threats that impact cybersecurity
- Hackers inside and out
- Eavesdropping
- Spoofing
- Sniffing
- Trojan horses
- Viruses
- Wiretaps
A cybersecurity policy: the foundation of your protection
- Defining your information assurance objectives
- Assessing your exposure
A Cryptography Primer
Securing data with symmetric encryption
- Choosing your algorithm: DES, AES, RC4 and others
- Assessing key length and key distribution
Solving key distribution issueswith asymmetric encryption
- Generating keys
- Encrypting with RSA
- PGP and GnuPG
- Evaluating Web of Trust and PKI
Ensuring integrity with hashes
- Hashing with MD5 and SHA
- Protecting data in transit
- Building the digital signature
Verifying User and Host Identity
Assessing traditional static password schemes
- Creating a good-quality password policy to prevent password guessing and cracking
- Protecting against social engineering attacks
- Encrypting passwords to mitigate the impact of password sniffing
Evaluating strong authentication methods
- Challenge-response to prevent man-in-the-middle attacks
- Preventing password replay using one-time andtokenized passwords
- Employing biometrics as part of two-factor authentication
Authenticating hosts
- Shortcomings of IP addresses
- Address-spoofing issues and countermeasures
- Solutions for wireless networks
Preventing System Intrusions
Discovering system vulnerabilities
- Searching for operating system holes
- Discovering file permission issues
- Limiting access via physical security
Encrypting files for confidentiality
- Encryption with application-specific tools
- Recovering encrypted data
Hardening the operating system
- Locking down user accounts
- Securing administrator's permissions
- Protecting against viruses
Guarding against Network Intrusions
Scanning for vulnerabilities
- Restricting access to critical services
- Preventing buffer overflows
Reducing denial-of-service (DoS) attacks
- Securing DNS
- Limiting the impact of common attacks
Deploying firewalls to control network traffic
- Contrasting firewall architectures
- Preventing intrusions with filters
- Implementing cybersecurity policy
Building network firewalls
- Evaluating firewall features
- Selecting an architecture and a personal firewall
Ensuring Network Confidentiality
Threats from the LAN
- Sniffing the network
- Mitigating threats from connected hosts
- Partitioning the network to prevent data leakage
- Identifying wireless LAN vulnerabilities
Confidentiality on external connections
- Ensuring confidentiality with encryption
- Securing data-link layer with PPTP and L2TP
- Middleware information assurance with SSL and TLS
- Deploying SSH (the Secure Shell)
Protecting data with IPsec
- Authenticating remote locations
- Tunneling traffic between sites
- Exchanging keys
Managing Your Organization's Security
- Developing a security plan
- Responding to incidents
- Enumerating the six critical steps
|
<< Back to Security Course List
Related Courses
|
|
|
Training Dates
| Mar 20 - 23 | Ottawa enrol | | Jun 5 - 8 | Toronto enrol | | Aug 14 - 17 | Ottawa enrol | | Oct 2 - 5 | Toronto enrol | | Nov 20 - 23 | Ottawa enrol | US Dates | | Mar 20 - 23 | Reston, VA enrol | | Mar 27 - 30 | New York enrol | | Apr 2 - 5 | Chicago (Schaumburg) enrol | | May 8 - 11 | Rockville, MD enrol | | May 15 - 18 | Alexandria, VA enrol | | May 29 - Jun 1 | New York enrol | | Jun 12 - 15 | Reston, VA enrol | | Aug 21 - 24 | Rockville, MD enrol | | Sep 4 - 7 | Reston, VA enrol |
For AnyWare enrolments, please register at least 10 days prior to the start of the course.
More Dates and Locations.
|
|
|
|
On-Site &
Custom Training
Bring this or any Learning Tree course to your location or have it customized for your organization.
|
Course participants identifying network security risks.
|
|
Average Attendee Evaluation
|
Evaluations in the last 12 months |
|
5 stars:
|
|
82% |
|
4 stars:
|
|
18% |
|
3 stars:
|
|
0% |
|
2 stars:
|
|
0% |
|
1 star:
|
|
0% |
|
|
"Not everyone who's an expert in a particular technology is able to show others how to use it. However, all the Learning Tree instructors I've had knew their subjects cold and had the ability to present clearly and effectively. I also believe that because they use the same products in the real world, it helps them transfer their skills to the people attending the course."
– M. Yake Commonwealth Solutions, Inc.
|
 |
|
|