CompTIA Security+ (SY0-601) Cert Prep: 8 Network Security Design and Implementation

CompTIA Security+ (SY0-601) Cert Prep: 8 Network Security Design and Implementation

3h 57mBeginner2020-11-23

Authors

Mike Chapple

Mike Chapple

Teaching Professor at the University of Notre Dame

Course details

Networks carry sensitive data between systems and users. To protect the confidentiality, integrity, and availability of network traffic, cybersecurity professionals must implement strong security controls. In this course, the eighth installment in the CompTIA Security+ (SY0-601) Cert Prep series, dive into the topic of network security design and implementation as you prepare for the Security+ exam. Instructor Mike Chapple discusses TCP and IP—two of the main protocols that make up all modern networks— and how the components of the TCP/IP stack combine to facilitate network communications. Mike delves into secure network design, including how virtual LANs may be used to segment networks of differing security levels. Plus, he covers essential network security devices, such as firewalls and VPNs; using secure protocols; mobile device security; and more.

Skills covered

Network SecurityCert PrepCybersecurity

Concepts

Introduction

  • Network security
  • What you need to know
  • Study resources

TCP_IP Networking

  • Introducing TCP_IP
  • IP addresses and DHCP
  • Domain name system (DNS)
  • Network ports
  • ICMP

Secure Network Design

  • Security zones
  • VLANs and network segmentation
  • Security device placement
  • Software-defined networking (SDN)

Network Security Devices

  • Routers, switches, and bridges
  • Firewalls
  • Proxy servers
  • Load balancers
  • VPNs and VPN concentrators
  • Network intrusion detection and prevention
  • Protocol analyzers
  • Unified threat management

Network Security Techniques

  • Restricting network access
  • Network access control
  • Firewall rule management
  • Router configuration security
  • Switch configuration security
  • Maintaining network availability
  • Network monitoring
  • SNMP
  • Isolating sensitive systems
  • Deception technologies

Transport Encryption

  • TLS and SSL
  • IPsec
  • Securing common protocols

Wireless Networking

  • Understanding wireless networking
  • Wireless encryption
  • Wireless authentication
  • Wireless signal propagation
  • Wireless networking equipment

Network Attacks

  • Denial of service attacks
  • Eavesdropping attacks
  • DNS attacks
  • Layer 2 attacks
  • Network address spoofing
  • Wireless attacks
  • Propagation attacks
  • Preventing rogues and evil twins
  • Disassociation attacks
  • Understanding Bluetooth and NFC attacks
  • RFID security

Mobile Device Security

  • Mobile connection methods
  • Mobile device security
  • Mobile device management
  • Mobile device tracking
  • Mobile application security
  • Mobile security enforcement
  • Bring your own device (BYOD)
  • Mobile deployment models

Network Tools

  • Ping and traceroute
  • DNS tools
  • Ipconfig, ifconfig, and route
  • netstat
  • netcat
  • ARP
  • curl
  • theHarvester
  • Cuckoo
  • Port scanners
  • Vulnerability scanners

Conclusion

  • Continuing your studies
80,000 Toman