Module 1 - Cybersecurity and The Security Operations Center
Module 1 - Cybersecurity and The Security Operations Center
ASSURANCE &
SECURITY 2
MODULE 1
CYBERSECURITY AND THE SECURITY
OPERATIONS CENTER
OBJECTIVES
Upon completion of this module, the student would be able to:
➢ Explain why networks and data are attacked.
➢ Outline features of examples of cybersecurity incidents.
➢ Explain the motivations of the threat actors behind specific security
incidents.
➢ Explain the potential impact of network security attacks.
OBJECTIVES
Upon completion of this module, the student would be able to:
➢ Explain how to prepare for a career in Cybersecurity operations.
➢ Explain the mission of the security operations center (SOC).
➢ Describe resources available to prepare for a career in Cybersecurity
operations
THE DANGER
War Stories
Hijacked People
▪ A hacker set up an open “rogue” wireless hotspot posing as a legitimate wireless network.
▪ A customer logged onto her bank’s website.
▪ The hacker hijacked her session.
▪ The hacker gained access to her bank accounts.
War Stories
Ransomed Companies
▪ An employee receive an email from his CEO, containing an attached PDF.
▪ Preferred uptime is often measured in the number of down minutes in a year. A “five nines” uptime means
that the network is up 99.999% of the time (or down for no more
than 5 minutes a year).
▪ Trade off between strong security and permitting business functions.
Becoming a Defender
Certifications
▪ A variety of cybersecurity certifications are available:
• CCNA Cyber Ops
• CompTIA Cybersecurity Analyst Certification (CSA+)
• (ISC)² Information Security Certifications (including CISSP)
• Global Information Assurance Certification (GIAC)
Becoming a Defender
Further Education
▪ Consider pursuing a technical degree or bachelor’s
degree in computer science, electrical engineering,
information technology, or information security.
• Emmett Dulaney and Chuck Easttom. CompTIA Security+ Study Guide: Exam SY0-501 7th Edition
• David L. Prowse (2018) Pearson. CompTIA Security+ SY0-501 Cert Guide (4th Edition)
• Omar Santos/ Joseph Muniz /Stefano De Crescenzo(June 17, 2017)CCNA Cyber Ops (SECFND #210-
250 and SECOPS #210-255)Official Cert Guide Library 1st Edition