|
via Udemy |
Go to Course: https://www.udemy.com/course/comptia-combo-pack-comptia-casp-cysa-pentest/
CompTIA Advanced Security Practitioner (CASP)CompTIA Advanced Security Practitioner (CASP+) CAS-004 is an advanced-level cybersecurity certification for security architects and senior security engineers charged with leading and improving an enterprise's cybersecurity readinessCASP+ is the only hands-on, performance-based certification for advanced practitioners - not managers - at the advanced skill level of cybersecurity. While cybersecurity managers help identify what cybersecurity policies and frameworks could be implemented, CASP+ certified professionals figure out how to implement solutions within those policies and frameworksUnlike other certifications, CASP+ covers both security architecture and engineering - CASP+ is the only certification on the market that qualifies technical leaders to assess cyber readiness within an enterprise, and design and implement the proper solutions to ensure the organization is ready for the next attackCourse Content0 Security ArchitectureGiven a scenario, analyze the security requirements and objectives to ensure an appropriate, secure network architecture for a new or existing networkServicesSegmentationDeperimeterization/zero trustMerging of networks from various organizationsSoftware-defined networking (SDN)Given a scenario, analyze the organizational requirements to determine the proper infrastructure security designScalabilityResiliencyPerformanceAutomationContainerizationVirtualizationContent delivery networkCachingGiven a scenario, integrate software applications securely into an enterprise architectureBaseline and templatesSoftware assuranceConsiderations of integrating enterprise applicationsIntegrating security into development life cycleGiven a scenario, implement data security techniques for securing enterprise architectureData loss preventionData loss detectionData classification, labeling, and taggingObfuscationAnonymizationEncrypted vs. unencryptedData life cycleData inventory and mappingData integrity managementData storage, backup, and recoveryGiven a scenario, analyze the security requirements and objectives to provide the appropriate authentication and authorization controlsCredential managementPassword policiesFederationAccess controlProtocolsMultifactor authentication (MFA)One-time password (OTP)Hardware root of trustSingle sign-on (SSO)JavaScript Object Notation (JSON) web token (JWT)Attestation and identity proofingGiven a set of requirements, implement secure cloud and virtualization solutionsVirtualization strategiesProvisioning and deprovisioningMiddlewareMetadata and tagsDeployment models and considerationsHosting modelsService modelsCloud provider limitationsExtending appropriate on-premises controlsStorage modelsExplain how cryptography and public key infrastructure (PKI) support security objectives and requirementsPrivacy and confidentiality requirementsIntegrity requirementsNon-repudiationCompliance and policy requirementsCommon cryptography use casesCommon PKI use casesExplain the impact of emerging technologies on enterprise security and privacy.Artificial intelligenceMachine learningQuantum computingBlockchainHomomorphic encryptionSecure multiparty computationDistributed consensusBig DataVirtual/augmented reality3-D printingPasswordless authenticationNano technologyDeep learningBiometric impersonation2.0 Security OperationsGiven a scenario, perform threat management activitiesIntelligence typesActor typesThreat actor propertiesIntelligence collection methodsFrameworksGiven a scenario, analyze indicators of compromise and formulate an appropriate responseIndicators of compromiseResponseGiven a scenario, perform vulnerability management activities.Vulnerability scansSecurity Content Automation Protocol (SCAP)Self-assessment vs. third- party vendor assessmentPatch managementInformation sourcesGiven a scenario, use the appropriate vulnerability assessment and penetration testing methods and toolsMethodsToolsDependency managementRequirementsGiven a scenario, analyze vulnerabilities and recommend risk mitigationsVulnerabilitiesInherently vulnerable system/applicationAttacksGiven a scenario, use processes to reduce riskProactive and detectionSecurity data analyticsPreventiveApplication controlSecurity automationPhysical securityGiven an incident, implement the appropriate responseEvent classificationsTriage eventPreescalation tasksIncident response processSpecific response playbooks/processesCommunication planStakeholder managementExplain the importance of forensic conceptsLegal vs. internal corporate purposesForensic processIntegrity preservationCryptanalysisSteganalysisGiven a scenario, use forensic analysis toolsFile carving toolsBinary analysis toolsAnalysis toolsImaging toolsHashing utilitiesLive collection vs. post-mortem tools3.0 Security Engineering and CryptographyGiven a scenario, apply secure configurations to enterprise mobilityManaged configurationsDeployment scenariosSecurity considerationsGiven a scenario, configure and implement endpoint security controlsHardening techniquesProcessesMandatory access controlTrustworthy computingCompensating controlsExplain security considerations impacting specific sectors and operational technologiesEmbeddedICS/supervisory control and data acquisition (SCADA)ProtocolsSectorsExplain how cloud technology adoption impacts organizational securityAutomation and orchestrationEncryption configurationLogsMonitoring configurationsKey ownership and locationKey life-cycle managementBackup and recovery methodsInfrastructure vs. serverless computingApplication virtualizationSoftware-defined networkingMisconfigurationsCollaboration toolsStorage configurationsCloud access security broker (CASB)Given a business requirement, implement the appropriate PKI solutionPKI hierarchyCertificate typesCertificate usages/profiles/templatesExtensionsTrusted providersTrust modelCross-certificationConfigure profilesLife-cycle managementPublic and private keysDigital signatureCertificate pinningCertificate staplingCertificate signing requests (CSRs)Online Certificate Status Protocol (OCSP) vs. certificate revocation list (CRL)HTTP Strict Transport Security (HSTS)Given a business requirement, implement the appropriate cryptographic protocols and algorithms.HashingSymmetric algorithmsAsymmetric algorithmsProtocolsElliptic curve cryptographyForward secrecyAuthenticated encryption with associated dataKey stretchingGiven a scenario, troubleshoot issues with cryptographic implementationsImplementation and configuration issuesKeys4.0 Governance, Risk, and ComplianceGiven a set of requirements, apply the appropriate risk strategiesRisk assessmentRisk handling techniquesRisk typesRisk management life cycleRisk trackingRisk appetite vs. risk tolerancePolicies and security practicesExplain the importance of managing and mitigating vendor riskShared responsibility model (roles/responsibilities)Vendor lock-in and vendor lockoutVendor viabilityMeeting client requirementsSupport availabilityGeographical considerationsSupply chain visibilityIncident reporting requirementsSource code escrowsOngoing vendor assessment toolsThird-party dependenciesTechnical considerationsExplain compliance frameworks and legal considerations, and their organizational impactSecurity concerns of integrating diverse industriesData considerationsGeographic considerationsThird-party attestation of complianceRegulations, accreditations, and standardsLegal considerationsContract and agreement typesExplain the importance of business continuity and disaster recovery conceptsBusiness impact analysisPrivacy impact assessmentDisaster recovery plan (DRP)/ business continuity plan (BCP)Incident response planTesting plansCompTIA Cybersecurity Analyst (CySA+)CompTIA Cybersecurity Analyst (CySA+) is an international, vendor-neutral cybersecurity certification that applies behavioral analytics to improve the overall state of IT security. CySA+ validates critical knowledge and skills that are required to prevent, detect and combat cybersecurity threatsAs attackers have learned to evade traditional signature-based solutions such as firewalls, an analytics-based approach within the IT security industry is increasingly important for most organizations. The behavioral analytics skills covered by CySA+ identify and combat malware, and advanced persistent threats (APTs), resulting in enhanced threat visibility across a broad attack surface. CompTIA CySA+ is for IT professionals looking to gain the following security analyst skills:Configure and use threat detection toolsPerform data analysisInterpret the results to identify vulnerabilities, threats and risks to an organization.Course ContentThreat ManagementGiven a scenario, apply environmental reconnaissance techniques using appropriate tools and processesGiven a scenario, analyze the results of a network reconnaissanceGiven a network-based threat, implement or recommend the appropriate response and countermeasureExplain the purpose of practices used to secure a corporate environmentVulnerability ManagementGiven a scenario, implement an information security vulnerability management processGiven a scenario, analyze the output resulting from a vulnerability scanCompare and contrast common vulnerabilities found in the following targets within an organizationCyber Incident ResponseGiven a scenario, distinguish threat data or behavior to determine the impact of an incidentGiven a scenario, prepare a toolkit and use appropriate forensics tools during an investigation.Explain the importance of communication during the incident response processGiven a scenario, analyze common symptoms to select the best course of action to support incident responseSummarize the incident recovery and post-incident response processSecurity Architecture and Tool SetsExplain the relationship between frameworks, common policies, controls, and proceduresGiven a scenario, use data to recommend remediation of security issues related to identity and access managementGiven a scenario, review security architecture and make recommendations to implement compensating controlsGiven a scenario, use application security best practices while participating in the Software Development Life Cycle (SDLC)Compare and contrast the general purpose and reasons for using various cybersecurity tools and technologiesCompTIA PenTest+ is for cybersecurity professionals tasked with penetration testing (pentesting) and vulnerability managementCompTIA PenTest+ is the most comprehensive exam covering all penetration testing stages. Unlike other penetration testing exams that only cover a portion of stages with essay questions and hands-on, PenTest+ uses both performance-based and knowledge-based questions to ensure all stages are addressed. Pentest, ethical hacking, pentest+, comptia pentest, certified ethical hacker, hacking, pentesting, comptia pentest+, comptia, comptia pentest pt0-002, comptia, ceh, comptia pentest+ pt0-002PenTest+ is the only exam on the market to include all aspects of vulnerability management. It not only covers hands-on vulnerability assessment, scanning, and analysis, but also includes planning, scoping, and managing weaknesses, not just exploiting themPenTest+ is the most current penetration testing exam covering the latest techniques against expanded attack surfaces. It is a unique exam that requires a candidate to demonstrate the most relevant pen testing skills for the cloud, hybrid environments, web applications, Internet of Things (IoT), and traditional on-premisesCompTIA PenTest+ is an intermediate-skills level cybersecurity certification that focuses on offensive skills through pen testing and vulnerability assessment. Cybersecurity professionals with CompTIA PenTest+ know how plan, scope, and manage weaknesses, not just exploit themIT certifications show employers that candidates have the knowledge and skills they need to do the job, and they help IT pros advance in their careers. As cybersecurity has become a critical function, cybersecurity certifications are among the most popular IT certifications globallyThe CompTIA PenTest+ certification is a vendor-neutral, internationally targeted validation of intermediate-level penetration testing (or pen testing) knowledge and skills. It focuses on the latest pen testing techniques, attack surfaces, vulnerability management, post-delivery and compliance tasks