CompTIA's Security+ certification is aimed at IT professionals who have two years on-the-job networking experience, with an emphasis on security. The Security+, exam code SY0–101, was introduced in December 2002. It is an entry-level, vendor-neutral certification which makes a great stepping stone to more advanced certifications, such as the (ISC)2® SSCP® and CISSP®, and the SANS GIAC. It also may be used in some Microsoft certification tracks.
Thes certifications are well suited to network and security administrators independent of what industry they work in.
The Security+ designation is achieved by passing one conventional format exam that covers topics such as communication security, infrastructure security, cryptography, access control, authentication, external attack and operational and organization security. The Security+ certification thus demonstrates the candidate's knowledge of information security and will help equip the candidate with the skills necessary to withstand hackers and decrease costs associated with security breaches. Like other CompTIA offerings, once a person achieves the Security+, the certification will not expire.
Who Should Attend: This 5-day SSCP® and COMPTIA Security + Bootcamp class is ideal for those working toward or who have already attained positions as Senior Network Security Engineers, Senior Security Systems Analysts or Senior Security Administrators and looking for their first security credentials.
Hands-on labs for each class COMPTIA Security+Class Outline:
Security overview
Introduction to network security
Understanding security threats
Creating a secure network strategy
Windows 2000 server access control
Authentication
Introduction to authentication
Kerberos
Challenge Handshake Authentication Protocol
Digital certificates
Security tokens
Biometrics
Attacks and malicious code
Denial of service attacks
Man-in-the-middle attacks
Spoofing
Replays
TCP session hijacking
Social engineering
Attacks against encrypted data
Software exploitation
Cryptography
Concepts of cryptography
Public Key Infrastructure (PKI)
Key management and life cycle
Setting up a certificate server
Physical security
Access control
Environment
Disaster recovery and business continuity
Disaster recovery
Business continuity
Policies and procedures
Privilege management
Computer forensics and advanced topics
Understanding computer forensics
Risk identification
Education and training
Auditing