Special offers now — see discounted courses.
day
:
hour
:
min
:
sec
See special offers
CASP+ (CAS-004) Cert Prep: 2 Security Operations

CASP+ (CAS-004) Cert Prep: 2 Security Operations

7h 50mIntermediate2022-05-05

Authors

Jason Dion

Jason Dion

Cybersecurity Trainer at Dion Training Solutions

Course details

The CASP+ (CompTIA Advanced Security Practitioner+) (CAS-004) certification is a vendor-neutral certification that validates your knowledge and ability to conduct advanced-level cybersecurity skills. Designed for the advanced-level technical cybersecurity professional certification, the certification exam tests your ability to implement solutions within cybersecurity policies and frameworks. This second course in the series from information technology and cybersecurity expert Jason Dion focuses on the security operations topics covered in the exam. He covers aspects of threat management like threat hunting and intelligence collection. He then shows many different methods to assess vulnerabilities, including penetration tests and code analysis, and describes the risk reduction techniques you need to know for the exam. Jason shows how to analyze and attack vulnerabilities, how to recognize and respond to risk indicators, and wraps up with a look at digital forensic techniques and tools.

Skills covered

Incident ResponseCybersecurityCert Prep

Concepts

Introduction

  • Welcome
  • About the exam

Threat and Vulnerability Management

  • Threat and vulnerability management
  • Threat intelligence
  • Threat hunting
  • Intelligence collection
  • Threat actors
  • Threat management frameworks
  • Vulnerability management activities
  • Security Content Automation Protocol

Vulnerability Assessments

  • Vulnerability assessments
  • Penetration test
  • Pen test steps
  • Pen test requirements
  • Code analysis
  • Protocol analysis
  • Analysis utilities

Risk Reduction

  • Risk reduction
  • Deceptive technologies
  • Security data analytics
  • Preventative controls
  • Application controls
  • Security automation
  • Physical security

Analyzing Vulnerabilities

  • Analyzing vulnerabilities
  • Race conditions
  • Buffer overflows
  • Authentication and references
  • Ciphers and certificates
  • Improper headers
  • Software composition
  • Vulnerable web applications

Attacking Vulnerabilities

  • Attacking vulnerabilities
  • Directory traversals
  • Cross-Site Scripting (XSS)
  • Cross-site request forgery (CSRF)
  • SQL injections
  • XML injections
  • Other injection attacks
  • Authentication bypass
  • VM attacks
  • Network attacks
  • Social engineering

Indicators of Compromise

  • Indicators of compromise
  • Types of IoCs
  • PCAP files
  • NetFlow
  • Logs
  • IoC notifications
  • Response to IoCs

Incident Response

  • Incident response
  • Triage
  • Communication plan
  • Stakeholder management
  • Incident response process
  • Playbooks

Digital Forensics

  • Digital forensics
  • Forensic process
  • Chain of custody
  • Order of volatility
  • Forensic analysis

Digital Forensic Tools

  • Digital forensic tools
  • Forensic workstations
  • File carving tools
  • Binary analysis tools
  • Forensic analysis tools
  • Imaging tools
  • Collection tools

Conclusion

  • Conclusion

About us

LyndaKade is a leading learning platform that helps people learn business, software, technology, and creative skills to achieve personal and professional goals.

Phone numberAparat ChannelTelegram SupportTelegram ChannelInstagram Page

All rights to this site belong to LyndaKade.

Terms of Service|Privacy Policy

نماد الکترونیک enamad در صورت اتصال با آی‌پی داخل کشور، نمایش داده خواهد شد.
logo-samandehi - لوگو ساماندهی
Zarinpal
Zibal