Security Education Courses
(66 courses)Explore all courses, labs, and learning resources from Security Education.
LDR520: Cloud Security for Leaders
LDR520 provides executives and managers with a strategic understanding of cloud security to enable informed decision-making and effective leadership in cloud adoption. The course explores cloud security principles, risk management, and governance frameworks, focusing on major platforms like AWS, Azure, and Google Cloud. Participants will learn to evaluate cloud security risks, ensure regulatory compliance, and align security strategies with business objectives. Through case studies and interactive discussions, LDR520 equips leaders to guide their organizations in securely leveraging cloud technologies, fostering collaboration between technical teams and business stakeholders, and responding to the unique challenges of the cloud environment.
MGT516: Building and Leading Vulnerability Management Programs
MGT516 is designed to help security leaders develop, implement, and manage effective vulnerability management programs that protect organizations from emerging threats. The course covers the entire vulnerability lifecycle, from identification and assessment to remediation and mitigation strategies. Participants will learn how to prioritize vulnerabilities based on risk, integrate vulnerability management into broader security operations, and measure the effectiveness of their programs. Through hands-on exercises and case studies, MGT516 equips professionals with the skills to lead cross-functional teams, communicate risks effectively to stakeholders, and continuously improve vulnerability management processes to reduce the organization’s attack surface.
MGT433: Managing Human Risk
MGT433 focuses on understanding and managing the human element in cybersecurity, recognizing that employees, contractors, and third-party vendors can be the weakest link in an organization’s security posture. The course explores the psychology of human behavior, common security risks posed by insiders, and how to mitigate them through training, awareness programs, and behavior-driven security policies. Participants will learn how to develop and implement strategies to reduce human risk, including phishing prevention, social engineering defenses, and fostering a security-aware culture. Through practical case studies and exercises, MGT433 equips leaders with the tools to manage human risk effectively and enhance overall organizational resilience.
ICS515: ICS Visibility, Detection, and Response
ICS515 is a hands-on course designed to equip cybersecurity professionals with the skills needed to detect, analyze, and respond to threats targeting Industrial Control Systems (ICS) and Operational Technology (OT) environments. The course covers key topics such as network visibility, threat intelligence, incident detection, and forensic analysis specific to critical infrastructure sectors like energy, manufacturing, and transportation. Participants will learn how to implement and optimize monitoring solutions, analyze ICS network traffic, and develop response strategies to mitigate cyber threats. Through real-world scenarios and hands-on labs, ICS515 prepares defenders to enhance the security and resilience of industrial environments against evolving cyber risks.
ICS410: ICS/SCADA Security Essentials
ICS410 provides foundational knowledge and practical skills for securing Industrial Control Systems (ICS) and Supervisory Control and Data Acquisition (SCADA) environments. The course covers ICS architectures, protocols, risk management frameworks, and common attack vectors targeting critical infrastructure. Participants will learn essential security controls, incident response strategies, and best practices for securing industrial networks. With hands-on labs and real-world case studies, ICS410 equips IT and OT professionals with the expertise needed to protect ICS/SCADA environments from cyber threats while ensuring operational reliability and safety.
SEC503: Network Monitoring and Threat Detection In-Depth
SEC503 is an advanced course designed to help security professionals master network monitoring, intrusion detection, and threat analysis. The course covers essential topics such as packet analysis, network forensics, SIEM optimization, and anomaly detection techniques. Participants will learn how to detect and respond to cyber threats by analyzing network traffic, logs, and attack patterns. The course also dives into advanced tactics used by attackers, including evasion techniques and encrypted traffic analysis. Through hands-on labs and real-world scenarios, SEC503 equips security analysts, SOC teams, and incident responders with the skills needed to enhance network visibility, improve detection capabilities, and respond effectively to cyber threats.
SEC450: Blue Team Fundamentals: Security Operations and Analysis
SEC450 is an entry-level course designed to provide a strong foundation in cybersecurity operations, threat detection, and incident response. This course focuses on core Blue Team concepts, including network defense, security monitoring, log analysis, and threat intelligence. Participants will learn how to use SIEM tools, detect malicious activity, and respond to cyber threats effectively. The curriculum includes hands-on labs that simulate real-world attacks, helping students develop critical skills in security operations. SEC450 is ideal for aspiring SOC analysts, security engineers, and IT professionals looking to build a solid understanding of defensive cybersecurity strategies and techniques.
FOR710: Reverse-Engineering Malware: Advanced Code Analysis
FOR710 is an expert-level course designed for cybersecurity professionals who want to master the art of reverse engineering and analyzing advanced malware threats. The course focuses on dissecting sophisticated malware, including rootkits, fileless malware, and evasive techniques used by advanced persistent threats (APTs). Participants will learn how to analyze malicious code at the assembly level, use dynamic and static analysis techniques, and leverage tools such as IDA Pro, Ghidra, and debuggers. Through hands-on labs and real-world case studies, FOR710 equips malware analysts, incident responders, and forensic investigators with the skills needed to uncover hidden malware behaviors, develop signatures, and enhance enterprise defense strategies.
FOR610: Reverse-Engineering Malware: Malware Analysis Tools and Techniques
FOR610 is an in-depth course designed to equip cybersecurity professionals with the skills needed to analyze and reverse-engineer malicious software. The course covers key malware analysis techniques, including static and dynamic analysis, behavioral analysis, and code disassembly. Participants will work with industry-standard tools such as IDA Pro, Ghidra, x64dbg, and Wireshark to dissect malware, identify indicators of compromise (IOCs), and understand obfuscation and anti-analysis techniques used by threat actors. Through hands-on labs and real-world case studies, FOR610 prepares malware analysts, incident responders, and forensic investigators to detect, analyze, and mitigate modern malware threats effectively.
FOR572: Advanced Network Forensics: Threat Hunting, Analysis, and Incident Response
FOR572 is an advanced course designed for cybersecurity professionals seeking to master network forensics, threat hunting, and incident response. The course focuses on deep packet analysis, intrusion detection, and uncovering adversary activity within large-scale enterprise environments. Participants will learn how to analyze network traffic, identify anomalies, and reconstruct cyber attacks using tools such as Zeek (Bro), Suricata, Wireshark, and Security Information and Event Management (SIEM) solutions.
SEC541: Cloud Security Attacker Techniques, Monitoring, and Threat Detection
SEC541 is an advanced course that focuses on understanding and defending against attacker techniques in cloud environments. Participants will learn how adversaries exploit misconfigurations, abuse cloud-native services, and bypass security controls across AWS, Azure, and Google Cloud. The course covers threat detection, cloud monitoring, and incident response strategies to counter real-world cloud threats.
SEC504: Hacker Tools, Techniques, and Incident Handling
SEC504 is a foundational course that provides a comprehensive understanding of the tools and techniques used by attackers, as well as strategies for detecting and responding to cyber incidents. The course teaches participants to think like an attacker while strengthening their defensive skills. Key topics include reconnaissance, scanning, exploitation, post-exploitation tactics, and malware analysis.











