Courses Catalog
(27 courses)Explore our complete collection of technical courses, hands-on lab environments, and downloadable assets.
SEC556: IoT Penetration Testing
SEC556 focuses on the unique security challenges posed by the growing number of Internet of Things (IoT) devices. This course teaches participants how to identify, exploit, and secure vulnerabilities in IoT devices and their supporting infrastructures. Topics include network attacks, device manipulation, weak authentication, insecure communications, and firmware analysis. Through practical labs, students will perform hands-on penetration testing on a range of IoT devices, from consumer gadgets to industrial systems. SEC556 equips professionals with the skills needed to understand IoT-specific attack vectors, develop mitigation strategies, and improve the overall security of connected ecosystems in both personal and enterprise environments.
SEC565: Red Team Operations and Adversary Emulation
SEC565 focuses on the strategies, tactics, and techniques used by red teams to emulate advanced adversaries and conduct realistic penetration testing. This course provides in-depth training on planning, executing, and reporting red team operations, with an emphasis on simulating real-world cyberattacks across various attack vectors, such as phishing, social engineering, lateral movement, and privilege escalation. Participants will learn how to apply the MITRE ATT&CK framework for adversary emulation and how to tailor their operations to test an organization’s defenses. Through hands-on labs and real-world scenarios, SEC565 equips professionals with the skills to conduct thorough red team assessments, identify vulnerabilities, and improve an organization’s overall security resilience.
SEC555: SIEM with Tactical Analytics
SEC555 is a hands-on course that teaches security professionals how to effectively leverage Security Information and Event Management (SIEM) platforms for detecting, analyzing, and responding to cyber threats. The course focuses on configuring, tuning, and optimizing SIEM solutions to gather actionable intelligence from logs, events, and network data. Participants will explore advanced analytics techniques, threat hunting methodologies, and real-world scenarios to identify malicious activity and improve incident response. Through practical exercises and case studies, SEC555 equips attendees with the skills to transform their SIEM into a powerful tool for proactive defense and tactical decision-making in dynamic security environments.
SEC542: Web App Penetration Testing and Ethical Hacking
SEC542 provides hands-on training for identifying and exploiting vulnerabilities in web applications while teaching the ethical hacking techniques necessary to secure them. Participants will explore critical areas such as injection flaws, cross-site scripting (XSS), authentication bypasses, and security misconfigurations. The course includes advanced topics like automated scanning, manual testing techniques, and analyzing modern web technologies such as APIs, frameworks, and single-page applications. Through practical labs and real-world scenarios, SEC542 equips security professionals with the skills to assess web applications effectively and provide actionable remediation strategies to strengthen overall security posture.
SEC540: Cloud Security and DevSecOps Automation
SEC540 teaches security professionals how to integrate security into the DevOps pipeline and automate security practices for cloud-native environments. The course focuses on securing infrastructure-as-code (IaC), containerized applications, and CI/CD workflows across platforms like AWS, Azure, and Google Cloud. Participants will learn how to use tools and techniques for vulnerability scanning, compliance checks, and automated threat detection. Hands-on labs emphasize implementing DevSecOps principles, creating secure deployment pipelines, and leveraging cloud-native security services. SEC540 equips attendees with the skills to build scalable, secure, and automated solutions that align with modern development and operational practices.
MGT551: Building and Leading Security Operations Centers
MGT551 equips leaders with the knowledge and skills to design, build, and manage effective Security Operations Centers (SOCs). This course covers the entire lifecycle of a SOC, from establishing objectives and defining workflows to implementing technologies and recruiting the right talent. Participants will explore topics such as threat detection, incident response, automation, and metrics for measuring SOC performance. The curriculum emphasizes strategic planning and operational excellence, ensuring that SOCs can adapt to evolving threats and business needs. Through case studies and practical exercises, MGT551 prepares security leaders to create high-performing SOCs that deliver measurable security value to their organizations.
SEC503: Network Monitoring and Threat Detection In-Depth
SEC503 is an advanced course designed to help security professionals master network monitoring, intrusion detection, and threat analysis. The course covers essential topics such as packet analysis, network forensics, SIEM optimization, and anomaly detection techniques. Participants will learn how to detect and respond to cyber threats by analyzing network traffic, logs, and attack patterns. The course also dives into advanced tactics used by attackers, including evasion techniques and encrypted traffic analysis. Through hands-on labs and real-world scenarios, SEC503 equips security analysts, SOC teams, and incident responders with the skills needed to enhance network visibility, improve detection capabilities, and respond effectively to cyber threats.
SEC450: Blue Team Fundamentals: Security Operations and Analysis
SEC450 is an entry-level course designed to provide a strong foundation in cybersecurity operations, threat detection, and incident response. This course focuses on core Blue Team concepts, including network defense, security monitoring, log analysis, and threat intelligence. Participants will learn how to use SIEM tools, detect malicious activity, and respond to cyber threats effectively. The curriculum includes hands-on labs that simulate real-world attacks, helping students develop critical skills in security operations. SEC450 is ideal for aspiring SOC analysts, security engineers, and IT professionals looking to build a solid understanding of defensive cybersecurity strategies and techniques.
FOR710: Reverse-Engineering Malware: Advanced Code Analysis
FOR710 is an expert-level course designed for cybersecurity professionals who want to master the art of reverse engineering and analyzing advanced malware threats. The course focuses on dissecting sophisticated malware, including rootkits, fileless malware, and evasive techniques used by advanced persistent threats (APTs). Participants will learn how to analyze malicious code at the assembly level, use dynamic and static analysis techniques, and leverage tools such as IDA Pro, Ghidra, and debuggers. Through hands-on labs and real-world case studies, FOR710 equips malware analysts, incident responders, and forensic investigators with the skills needed to uncover hidden malware behaviors, develop signatures, and enhance enterprise defense strategies.
FOR572: Advanced Network Forensics: Threat Hunting, Analysis, and Incident Response
FOR572 is an advanced course designed for cybersecurity professionals seeking to master network forensics, threat hunting, and incident response. The course focuses on deep packet analysis, intrusion detection, and uncovering adversary activity within large-scale enterprise environments. Participants will learn how to analyze network traffic, identify anomalies, and reconstruct cyber attacks using tools such as Zeek (Bro), Suricata, Wireshark, and Security Information and Event Management (SIEM) solutions.
SEC401: Security Essentials – Network, Endpoint, and Cloud
SEC401 is a comprehensive cybersecurity fundamentals course designed to equip professionals with the essential skills needed to secure networks, endpoints, and cloud environments. The course covers key security concepts, including risk management, cryptography, access controls, incident response, and security operations. Participants will learn how to identify vulnerabilities, defend against cyber threats, and implement security best practices across modern IT infrastructures.
FOR528: Ransomware and Cyber Extortion
FOR528 is a specialized course designed to equip cybersecurity professionals with the skills to investigate, respond to, and mitigate ransomware and cyber extortion attacks. The course covers the entire lifecycle of a ransomware incident, from initial infection and encryption to ransom negotiation, recovery, and forensic analysis.











