This four-day course is designed to increase the depth of knowledge and skills of technical staff charged with administering and securing information systems and networks. Developed around a scenario in which a production network has failed an information security audit, students will implement numerous technical security solutions to bring the network into compliance. Participants will work in teams to integrate these solutions throughout the enterprise. Each student will have the use of a laptop for the duration of the course, as well as direct administrative access to a wide variety of networked systems.
The first two days of the course will cover host system hardening, system availability monitoring, network access control and applied encryption technologies, intrusion detection systems, as well as logging, forensics, and incident analysis and response techniques. Instructors will utilize lecture/presentations, demonstrations and hands-on exercises to teach these topic areas.
During the next one and a half days, instructors will facilitate participants through the implementation of the network's get-well plan and compliance task list. Students will use various software tools and operating system specific technologies to accomplish these tasks. Following are some examples of the required tasks:
On the final day, students will participate in several Technical Response Exercises during which they will have the opportunity to utilize the recently configured network security tools to analyze and troubleshoot various scenarios. Students will be required to classify the network activity as good or malicious using web proxy logs, firewall logs, application and security logs, IDS alerts, service availability tools, packet capture tools, and other configured network monitoring systems. They will be required to identify the type and source of various network-based attacks and recommend the appropriate remediation strategies.
Technical staff members who manage or support networked information systems and have (recommended)
U.S. Industry: |
$2900 |
U.S. Government/Academic: |
$2325 |
International: |
$5800 |
April 12 - 15, 2010 (SEI Arlington, VA)
This course may be offered by special arrangement at customer sites.
2009 Dates |
2010 Dates |
This course may be offered by special arrangement at customer sites.
Schedule
This four-day course meets at the following times:
Days 1-4, 9:00 a.m.-5:00 p.m.