Course: CompTIA Advanced Security Practitioner CASP+ (Exam: CAS-004)
As low as
duration: 30 hours |
Language: English (US) |
access duration: 180 days |
Incompany available
Details
The current IT climate requires people with demonstrable skills. The information and activities in this training can help you develop the skills you need to confidently perform your duties as an advanced security professional. This CASP + course covers the technical knowledge and skills required to architect, engineer, integrate, and implement secure solutions across complex environments to support a resilient enterprise while considering the impact of governance, risk, and compliance requirements.
In this training you will learn:
- how to apply risk management frameworks to assess and mitigate risks.
- how to work with qualitative and quantitative risk analysis.
- identify different types of virtualization solutions, such as network virtualization, operating system virtualization, desktop and app virtualization.
- how to implement a cloud-based firewall, configure firewall routing and enable RDP through cloud firewalls.
- about cryptography and PKI.
- differentiate between authentication and authorization and also how to enable 2FA and MFA user authentication.
- about IT Governance and Security Compliance.
- how to search for vulnerable devices using the Shodan website.
- how Supervisory Control and Data Acquisition relates to industrial control systems.
- how to identify security risks associated with emerging technologies such as machine learning, artificial intelligence, blockchain, quantum computing and 3D printing.
- identify the top 10 threats to web apps and use the OWASP ZAP tool to identify vulnerabilities in web apps.
And much more.
This training will prepare you optimally for the CompTIA CASP+ (CAS-004) exam. The CAS-004 exam is available from October 2021, it replaces the CAS-003 exam.
Result
After completing this training you will be proficient at an advanced level in the field of security, research and collaboration, and integration of corporate security. This training also prepares you optimally for the CompTIA CASP + (CAS-004) exam.
Prerequisites
A minimum of ten years of general hands-on IT experience, with at least five years of broad hands-on security experience
Target audience
Security Specialist
Content
CompTIA Advanced Security Practitioner CASP+ (Exam: CAS-004)
CompTIA CASP+ (CAS-004): Assessing & Managing Risk
Recognizing threats and managing risk are key to hardening an
- organization's security posture. In this course, you'll explore how
- to apply risk management frameworks to assess and mitigate risk, as
- well as how to identify threat actors and physical risks. Next,
- you'll learn how to mitigate risks related to human resources and
- social engineering techniques. You'll then move on to examine how
- to work with qualitative and quantitative risk analysis. Lastly,
- you'll learn about insider threats, supply chain dependencies, and
- sources of threat intelligence. This course is one of a collection
- of courses that prepares learners for the CompTIA Advanced Security
- Practitioner (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Virtualization Security
Securing today's enterprise computing environments means
- understanding how virtualization is used. Organizations must
- consider how to secure virtualization solutions used both
- on-premises in and the cloud. In this course, you'll learn to
- identify various types of virtualization solutions such as network
- virtualization, operating system virtualization, desktop, and app
- virtualization. You will then learn to distinguish the difference
- between type 1 and type 2 hypervisors. Next, you'll focus on
- virtualization security and how to deploy virtual machines
- on-premises. Lastly, you'll learn to work with application
- containers. This course is one of a collection of courses that
- prepares learners for the CompTIA Advanced Security Practitioner
- (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Secure Cloud Computing
Cloud computing is widely used by individuals and enterprises to
- outsource IT solutions. In this course, you'll begin with learning
- how to identify cloud deployment and service models. Next, you'll
- review cloud service level agreements, cloud security solutions,
- and how to work with cloud VNets. Moving on, you'll learn how to
- configure cloud autoscaling to increase application availability.
- You'll also explore now to deploy a cloud-based firewall, configure
- firewall routing, and enable RDP through cloud firewalls. Lastly,
- you'll learn how to create a cloud key vault and enable cloud
- storage security. This course is one of a collection of courses
- that prepares learners for the CompTIA Advanced Security
- Practitioner (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Cryptography & PKI
Cryptography has long played a role in securing sensitive
- information. In this course, you'll begin with an overview of
- cryptography and how it can secure data at rest and data in motion.
- You’ll then learn how to enable EFS and BitLocker to protect data
- at rest. You’ll explore how to identify methods by which
- cryptography can protect data in transit and configure network
- security via IPsec. Finally, you'll examine how PKI uses
- certificates to secure IT systems through HTTPS, SSH remote
- management, and generating file system hashes. This course is one
- of a collection of courses that prepares learners for the CompTIA
- Advanced Security Practitioner (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Storage & Network Security
On-premises and cloud-based storage security solutions are very
- similar in nature. In this course, you'll learn how to determine
- which RAID disk solution best applies in a given situation, as well
- as how to secure various network storage solutions and DNS. Next,
- you'll learn to recognize when to apply firewalls to secure
- networks and how to configure various firewall solutions. Moving
- on, you'll explore how to configure a VPN and secure wired and
- wireless networks. Lastly, you'll examine how to manage servers
- through a jump box and how attackers enable reverse shells. This
- course is one of a collection of courses that prepares learners for
- the CompTIA Advanced Security Practitioner (CASP+) CAS-004
- exam.
CompTIA CASP+ (CAS-004): Authentication & Authorization
Securing user and device logins, as well as access to IT
- resources, relates to authentication and authorization. In this
- course, you'll learn how to differentiate between authentication
- and authorization and also ow to enable 2FA and MFA user
- authentication. Next, you'll explore how to enable Wi-Fi RADIUS
- authentication, configure SELinux, and enable attribute-based
- control in Windows. Lastly, you'll examine how to use Group Policy
- to configure password policy settings, crack passwords using freely
- available tools like the Johnny tool, brute-force RDP using Hydra,
- and limit cloud admin access using role-based access control. This
- course is one of a collection of courses that prepares learners for
- the CompTIA Advanced Security Practitioner (CASP+) CAS-004
- exam.
CompTIA CASP+: IT Governance & Security Compliance
IT governance involves ensuring that business and regulatory
- compliance needs are met by IT solutions. In this course, you'll
- learn to identify common data privacy standards and regulations, as
- well as various types of business agreements. Next, you'll learn to
- classify personally identifiable information using various methods
- including Macie for data discovery and classification. You’ll
- explore how to use Azure Information Protection to enable DLP and
- tag cloud resources to facilitate resource management. You’ll then
- examine how to securely wipe a storage device and identify common
- organization security policies. Lastly, you'll learn how to
- identify data roles and configure cloud data retention. This course
- is one of a collection of courses that prepares learners for the
- CompTIA Advanced Security Practitioner (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Monitoring & Incident Response
Enterprise IT monitoring is crucial in detecting potential
- security incidents. In this course, you'll explore various
- monitoring methods for hosts, devices, and networks. Next, you'll
- learn to configure log forwarding and work with logs through
- PowerShell. Moving on, you'll learn to recognize when to use
- honeyfiles, honeypots, and honeynets, as well as SIEM and SOAR
- solutions. You’ll then examine intrusion detection and prevention
- and how they are used to secure a network. Lastly, you'll explore
- the use of tools such as Snort, tcpdump, nmap, and Wireshark for
- analyzing networks and network traffic. This course is one of a
- collection of courses that prepares learners for the CompTIA
- Advanced Security Practitioner (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Mobile & Embedded Devices
Mobile devices have become ubiquitous and as a result deserve
- the attention of cybersecurity specialists. In this course, you'll
- explore how mobile, embedded, drones, and IoT devices are used and
- their related security risks. Next, you'll learn how to search for
- vulnerable devices using the Shodan web site. Moving on, you'll
- explore how to secure remote network connectivity with a VPN and
- examine smartphone hardening techniques. Lastly, you'll learn how
- to register and manage an Android device using a Mobile Device
- Management solution. This course is one of a collection of courses
- that prepares learners for the CompTIA Advanced Security
- Practitioner (CASP+) CAS-004 exam.
CompTIA CASP+: Industrial Computing Environments
Industrial control systems present a unique security risk when
- it comes to public services such as power, water, and other
- industrial processes. In this course, you'll learn how to recognize
- common industrial network protocols and terminology. Next, you’ll
- learn how Supervisory Control and Data Acquisition relates to
- industrial control systems. You'll explore NIST ICS security
- control documentation. Lastly, you'll learn how to configure an S7
- PLC emulator and use Metasploit to stop the device. This course is
- one of a collection of courses that prepares learners for the
- CompTIA Advanced Security Practitioner (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Emerging Technologies & SecDevOps
Emerging technologies present unique security risks in that the
- technology is not yet mature. Software developers must adhere to
- secure development practices to minimize threat impacts. In this
- course, you'll learn how to identify security risks associated with
- emerging technologies such as machine learning, artificial
- intelligence, blockchain, quantum computing, and 3-D printing.
- You’ll also learn to identify the top 10 web app threats and use
- the OWASP ZAP tool to identify web app vulnerabilities. Next,
- you'll explore how to securely develop and deploy software
- solutions. Lastly, you learn to distinguish between various testing
- techniques. This course is one of a collection of courses that
- prepares learners for the CompTIA Advanced Security Practitioner
- (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Vulnerabilities & Hardening
Cybersecurity specialists must be able to identify
- vulnerabilities and apply security controls to mitigate threats. In
- this course, you'll learn how to identify the steps attackers take
- to gain access to resources and examine physical security issues.
- Next, you'll learn how network segmentation can increase security,
- how attackers use zombies and botnets, and how common attacks take
- place. Moving on, you'll explore common hardening techniques, how
- to scan for vulnerabilities, and how to setup up a WSUS server.
- Lastly, you'll learn how to use the Metasploit framework and crack
- WPA2 Wi-Fi passphrases. This course is one of a collection of
- courses that prepares learners for the CompTIA Advanced Security
- Practitioner (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Digital Forensics
Gathering digital evidence for use in a court of law is done
- using very specific techniques. In this course, you'll learn to
- recognize the process by which hardware and software digital
- forensic tools are used to acquire and analyze evidence. Next,
- you'll learn to work with file system hashing and forensic disk
- image acquisition including creating and hashing a Linux disk
- image. You’ll also explore how to use FTK imager to acquire a
- forensic disk image. Lastly, you'll explore how to retrieve Android
- device information using the Android Debug Bridge and hide messages
- using steganography. This course is one of a collection of courses
- that prepares learners for the CompTIA Advanced Security
- Practitioner (CASP+) CAS-004 exam.
CompTIA CASP+ (CAS-004): Business Continuity
Business continuity measures ensure that business operations
- continue during disruptions. In this course, you'll learn how to
- identify common disaster recovery terms and techniques and plan how
- to respond to business disruptions. Next, you'll learn to identify
- how to use physical and logical redundancy, clustering and load
- balancing to increase system and application availability. Lastly,
- you'll explore cloud-based load balancing and backups including
- learning how to configure and deploy a Microsoft Azure Load
- Balancer as well as back up data using Microsoft Azure. This course
- is one of a collection of courses that prepares learners for the
- CompTIA Advanced Security Practitioner (CASP+) CAS-004 exam.
Course options
We offer several optional training products to enhance your learning experience. If you are planning to use our training course in preperation for an official exam then whe highly recommend using these optional training products to ensure an optimal learning experience. Sometimes there is only a practice exam or/and practice lab available.
Optional practice exam (trial exam)
To supplement this training course you may add a special practice exam. This practice exam comprises a number of trial exams which are very similar to the real exam, both in terms of form and content. This is the ultimate way to test whether you are ready for the exam.
Optional practice lab
To supplement this training course you may add a special practice lab. You perform the tasks on real hardware and/or software applicable to your Lab. The labs are fully hosted in our cloud. The only thing you need to use our practice labs is a web browser. In the LiveLab environment you will find exercises which you can start immediately. The lab enviromentconsist of complete networks containing for example, clients, servers,etc. This is the ultimate way to gain extensive hands-on experience.
Sign In
WHY_ICTTRAININGEN
Via ons opleidingsconcept bespaar je tot 80% op trainingen
Start met leren wanneer je wilt. Je bepaalt zelf het gewenste tempo
Spar met medecursisten en profileer je als autoriteit in je vakgebied.
Ontvang na succesvolle afronding van je cursus het officiële certificaat van deelname van Icttrainingen.nl
Krijg inzicht in uitgebreide voortgangsinformatie van jezelf of je medewerkers
Kennis opdoen met interactieve e-learning en uitgebreide praktijkopdrachten door gecertificeerde docenten
Orderproces
Once we have processed your order and payment, we will give you access to your courses. If you still have any questions about our ordering process, please refer to the button below.
read more about the order process
Een zakelijk account aanmaken
Wanneer u besteld namens uw bedrijf doet u er goed aan om aan zakelijk account bij ons aan te maken. Tijdens het registratieproces kunt u hiervoor kiezen. U heeft vervolgens de mogelijkheden om de bedrijfsgegevens in te voeren, een referentie en een afwijkend factuuradres toe te voegen.
Betaalmogelijkheden
U heeft bij ons diverse betaalmogelijkheden. Bij alle betaalopties ontvangt u sowieso een factuur na de bestelling. Gaat uw werkgever betalen, dan kiest u voor betaling per factuur.
Cursisten aanmaken
Als u een zakelijk account heeft aangemaakt dan heeft u de optie om cursisten/medewerkers aan te maken onder uw account. Als u dus meerdere trainingen koopt, kunt u cursisten aanmaken en deze vervolgens uitdelen aan uw collega’s. De cursisten krijgen een e-mail met inloggegevens wanneer zij worden aangemaakt en wanneer zij een training hebben gekregen.
Voortgangsinformatie
Met een zakelijk account bent u automatisch beheerder van uw organisatie en kunt u naast cursisten ook managers aanmaken. Beheerders en managers kunnen tevens voortgang inzien van alle cursisten binnen uw organisatie.
What is included?
Certificate of participation | Yes |
Monitor Progress | Yes |
Award Winning E-learning | Yes |
Mobile ready | Yes |
Sharing knowledge | Unlimited access to our IT professionals community |
Study advice | Our consultants are here for you to advice about your study career and options |
Study materials | Certified teachers with in depth knowledge about the subject. |
Service | World's best service |
Platform
Na bestelling van je training krijg je toegang tot ons innovatieve leerplatform. Hier vind je al je gekochte (of gevolgde) trainingen, kan je eventueel cursisten aanmaken en krijg je toegang tot uitgebreide voortgangsinformatie.
FAQ
Niet gevonden wat je zocht? Bekijk alle vragen of neem contact op.