CompTIA CySA+ (CS0-002) Cert Prep: 1 Threat Management

CompTIA CySA+ (CS0-002) Cert Prep: 1 Threat Management

2h 25mAdvanced2020-04-03

Authors

Mike Chapple

Mike Chapple

Teaching Professor at the University of Notre Dame

Course details

As cybersecurity threats become more sophisticated and pervasive, the need for IT professionals with security analytics expertise has grown exponentially. Earning the CompTIA Cybersecurity Analyst (CySA+) certification shows potential employers that you understand how to tackle cybersecurity threats using a behavioral analytics-based approach. This course—the first installment in the CySA+ (CS0-002) Cert Prep series—can provide you with a foundational understanding of threat management practices, and prepare you for the Threat and Vulnerability Management domain of exam CS0-002. Instructor Mike Chapple includes coverage of cybersecurity threats, reconnaissance techniques, and attack frameworks. He also goes over a variety of malware threats and key cloud security topics.

Learning objectives
The goals of information security
Assessing and classifying threats
Managing threat indicators
Conducting threat research
Threat modeling
Using attack frameworks to structure your work
Advanced malware concepts, including rootkits
Social engineering attacks
Wireless reconnaissance techniques
Security implications of the DevOps approach
Cloud security risks

Skills covered

Incident ResponseCert PrepCybersecurity

Concepts

Introduction

  • how to manage security threats
  • what you need to know

Overview of the Role of a Cybersecurity Analyst

  • the goals of information security
  • role of the cybersecurity analyst

Understanding the Cybersecurity Threat

  • threat actors
  • zero-days and the apt
  • threat classification

Threat Intelligence

  • threat intelligence
  • intelligence cycle
  • managing threat indicators
  • intelligence sharing

Threat Modeling

  • threat research
  • identifying threats
  • understanding attacks
  • threat modeling
  • threat hunting

Attack Frameworks

  • mitre att&ck
  • diamond model of intrusion analysis
  • cyber kill chain analysis

Malware Threats

  • comparing viruses, worms, and trojans
  • comparing adware, spyware, and ransomware
  • understanding backdoors and logic bombs
  • looking at advanced malware
  • understanding botnets

Environmental Reconnaissance

  • social engineering
  • dns harvesting
  • network mapping
  • enumeration tools
  • protocol analyzers
  • wireless reconnaissance
  • the importance of perspective

Cloud Security

  • what is the cloud
  • cloud activities and the cloud reference architecture
  • cloud deployment models
  • public cloud tiers
  • devops
  • cloud security risks

Conclusion

  • what's next
80,000 Toman