SSCP- SYSTEMS SECURITY CERTIFIED PRACTITIONER
and COMPTIA SECURITY + Bootcamp
2 great certifications "together" for the first time.
Global Recognition for Information Security Practitioners
The Systems Security Certified Practitioner (SSCP ® ) credential offers information security tacticians, with implementation orientations, the opportunity to demonstrate their level of competence with the seven domains of the compendium of best practices for information security, the (ISC)² SSCP CBK ® .
Who Should Attend:
This 5 day SSCP and COMPTIA Security + Bootcamp class is ideal for those working toward or who have already attained positions as Senior Network Security Engineers, Senior Security Systems Analysts or Senior Security Administrators and looking for their first security credentials.
During this 5-day program, COMPTIA Security + and SSCP candidates will:
Class Outline
Security overview
Introduction to network security
Understanding security threats
Creating a secure network strategy
Windows 2000 server access control
Authentication
Introduction to authentication
Kerberos
Challenge Handshake Authentication Protocol
Digital certificates
Security tokens
Biometrics
Attacks and malicious code
Denial of service attacks
Man-in-the-middle attacks
Spoofing
Replays
TCP session hijacking
Social engineering
Attacks against encrypted data
Software exploitation
Cryptography
Concepts of cryptography
Public Key Infrastructure (PKI)
Key management and life cycle
Setting up a certificate server
Physical security
Access control
Environment
Disaster recovery and business continuity
Disaster recovery
Business continuity
Policies and procedures
Privilege management
Computer forensics and advanced topics
Understanding computer forensics
Risk identification
Education and training
Auditing
Access Control - Policies, standards and procedures that define who users are, what they can do, which resources they can access, and what operations they can perform on a system.
Administration - Identification of information assets and documentation of policies, standards, procedures and guidelines that ensure confidentiality, integrity and availability.
Audit and Monitoring - Determining system implementation and access in accordance with defined IT criteria. Collecting information for identification of and response to security breaches or events.
Risk, Response and Recovery - The review, analysis and implementation processes essential to the identification, measurement and control of loss associated with uncertain events.
Cryptography - The protection of information using techniques that ensure its integrity, confidentiality, authenticity and non-repudiation, and the recovery of encrypted information in its original form.
Data Communications - The network structure, transmission methods and techniques, transport formats and security measures used to operate both private and public communication networks.
Malicious Code - Countermeasures and prevention techniques for dealing with viruses, worms, logic bombs, Trojan horses and other related forms of intentionally created deviant code.