Security Education Courses
(78 courses)Explore all courses, labs, and learning resources from Security Education.
SEC488: Cloud Security Essentials
SEC488 provides foundational knowledge for securing cloud environments across various platforms, including AWS, Azure, and Google Cloud. This course is designed for security professionals seeking to understand cloud-specific risks, security controls, and compliance requirements. Participants will explore core topics such as identity and access management (IAM), secure configuration, data protection, and monitoring in cloud-native environments. With hands-on labs and practical exercises, students will gain the skills needed to identify vulnerabilities, implement security best practices, and safeguard cloud infrastructure. SEC488 is the ideal starting point for building a strong cloud security strategy and ensuring a secure adoption of cloud technologies.
SEC575: iOS and Android Application Security Analysis and Penetration Testing
SEC575 provides a comprehensive approach to identifying, analyzing, and exploiting vulnerabilities in mobile applications on iOS and Android platforms. This course equips security professionals with the skills to perform advanced penetration testing and reverse engineering of mobile apps. Topics include secure coding practices, mobile app architecture, API security, and common vulnerabilities such as insecure data storage, improper authentication, and cryptographic flaws. Through hands-on labs and real-world scenarios, participants will learn to evaluate the security of mobile applications, uncover weaknesses, and provide actionable recommendations for remediation. SEC575 prepares attendees to tackle the unique challenges of securing mobile ecosystems effectively.
SEC201: Computing & Technology Essentials
SEC201 is an entry-level course designed to provide a strong foundation in computing and technology concepts essential for cybersecurity professionals. The course covers fundamental topics such as computer hardware, operating systems, networking, and basic programming principles. Participants will also explore key cybersecurity concepts, including threat identification, basic encryption, and safe computing practices. Through practical exercises and real-world examples, SEC201 equips attendees with the essential technical knowledge and skills needed to succeed in more advanced cybersecurity training and roles, making it an ideal starting point for individuals new to the field.
SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals
SEC595 empowers cybersecurity professionals to leverage data science, artificial intelligence (AI), and machine learning (ML) to enhance threat detection, incident response, and security automation. This course provides a practical, hands-on approach to applying data-driven techniques for analyzing security data, identifying anomalies, and building predictive models. Participants will learn to work with popular tools and frameworks, explore real-world datasets, and develop ML models to solve cybersecurity challenges such as intrusion detection, malware classification, and phishing detection. SEC595 bridges the gap between data science and cybersecurity, equipping professionals with cutting-edge skills to tackle modern threats effectively.
SEC550: Cyber Deception – Attack Detection, Disruption and Active Defense
SEC550 explores the art and science of cyber deception as a proactive strategy for detecting, disrupting, and defending against adversaries. Participants will learn to design and implement deception technologies, such as honeypots, honey tokens, and decoy systems, to mislead attackers and gather actionable intelligence. The course covers strategies for embedding deception across networks, cloud environments, and applications, enabling organizations to detect threats early and minimize the impact of attacks. Through hands-on labs and real-world scenarios, SEC550 equips security professionals with innovative tools and techniques to outmaneuver attackers and strengthen their overall security posture.
SEC661: ARM Exploit Development
SEC661 is a specialized course focused on advanced exploitation techniques for ARM-based architectures. Tailored for experienced security professionals, the course delves into the intricacies of ARM assembly, reverse engineering, and vulnerability discovery. Participants will explore real-world exploitation scenarios, including stack overflows, return-oriented programming (ROP), and bypassing modern mitigation techniques like DEP and ASLR on ARM systems. With hands-on labs and detailed guidance, SEC661 prepares attendees to analyze and exploit vulnerabilities in IoT devices, mobile platforms, and embedded systems, equipping them with the skills to defend against sophisticated attacks targeting ARM-based technologies.
SEC566: Implementing and Auditing CIS Controls
SEC566 provides a practical guide to implementing and auditing the Center for Internet Security (CIS) Critical Security Controls (CIS Controls). This course is designed to help organizations improve their cybersecurity posture by effectively prioritizing and deploying the CIS Controls framework. Participants will learn how to assess current security practices, identify gaps, and align them with CIS guidelines to reduce risk. The course also covers techniques for auditing the implementation of controls to ensure compliance and effectiveness. Through hands-on exercises and real-world scenarios, SEC566 equips security professionals with actionable strategies to strengthen defenses and achieve measurable improvements in cybersecurity.
SEC537: Practical Open-Source Intelligence (OSINT) Analysis and Automation
SEC537 provides hands-on training in open-source intelligence (OSINT) gathering, analysis, and automation techniques. This course teaches participants how to collect actionable intelligence from publicly available sources, such as websites, social media, forums, and databases, while adhering to ethical and legal standards. Students will also explore tools and scripting methods to automate OSINT workflows, enabling efficient large-scale data collection and analysis. Real-world scenarios and exercises demonstrate how OSINT can be applied to threat intelligence, investigations, and risk assessments. SEC537 equips professionals with the skills to uncover critical information, gain insights, and enhance decision-making in cybersecurity and beyond.
SEC487: Open-Source Intelligence (OSINT) Gathering and Analysis
SEC487 is a foundational course focused on collecting, analyzing, and leveraging publicly available information for cybersecurity, investigations, and decision-making. Participants will learn techniques to gather OSINT from various sources, including social media, public records, websites, and dark web platforms, while maintaining ethical and legal compliance. The course emphasizes manual and automated methods for identifying and interpreting critical data. Through hands-on exercises and real-world case studies, SEC487 equips students with the skills to apply OSINT in threat intelligence, vulnerability assessments, and incident response, enabling professionals to uncover valuable insights and protect against evolving threats.
SEC556: IoT Penetration Testing
SEC556 focuses on the unique security challenges posed by the growing number of Internet of Things (IoT) devices. This course teaches participants how to identify, exploit, and secure vulnerabilities in IoT devices and their supporting infrastructures. Topics include network attacks, device manipulation, weak authentication, insecure communications, and firmware analysis. Through practical labs, students will perform hands-on penetration testing on a range of IoT devices, from consumer gadgets to industrial systems. SEC556 equips professionals with the skills needed to understand IoT-specific attack vectors, develop mitigation strategies, and improve the overall security of connected ecosystems in both personal and enterprise environments.
SEC699: Advanced Purple Teaming – Adversary Emulation & Detection Engineering
SEC699 is an advanced course that focuses on the collaboration between red and blue teams, known as purple teaming, to enhance an organization’s defense mechanisms. Participants will learn how to emulate real-world adversary tactics, techniques, and procedures (TTPs) to identify weaknesses, while also strengthening detection and response strategies within the defense team. The course covers the use of advanced emulation tools, developing detection engineering techniques, and improving incident response processes. With hands-on labs and simulated attack scenarios, SEC699 equips security professionals to fine-tune their offensive and defensive capabilities, ensuring robust security and effective threat mitigation.
SEC599: Defeating Advanced Adversaries – Purple Team Tactics & Kill Chain Defenses
SEC599 focuses on the integration of offensive and defensive strategies in purple team exercises to thwart advanced adversaries. This course explores how to use the kill chain model to identify and disrupt adversary tactics at every stage of an attack, from initial compromise to exfiltration. Participants will learn to emulate sophisticated threat actor techniques while developing and implementing effective defenses, detection systems, and countermeasures. Through hands-on exercises and attack simulations, students will gain expertise in strengthening their security posture by continuously improving their response to advanced persistent threats (APTs) and real-world attack scenarios.











