Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Hacking Techniques for IT Professionals 2.0 Complete Course
Rating: 4.2 out of 5(254 ratings)
8,795 students

Hacking Techniques for IT Professionals 2.0 Complete Course

One of the best Ethical Hacking courses. Covers CISS, CompTIA, CISSP programs. Hacking Academy Certificate included.
Last updated 11/2024
English

What you'll learn

  • Become Certified IT Security Professional
  • Application attacks and how to prevent them.
  • Application security assessment.
  • Global management of user software.
  • Cryptography and cryptanalysis.
  • Symmetric and asymmetric encryption.
  • Public key infrastructure management.
  • Modelling and classifying threats.
  • Managing risk.
  • Attack methodologies.
  • How to use and deal with social engineering and rogue software.
  • Defence-in-depth.
  • Immutable security laws.

Course content

12 sections117 lectures9h 26m total length
  • Welcome to the course0:05
  • Security policies - introduction1:56

    Examine why building an effective computer security policy is hard, and how threat modeling, attacker perspectives, and changing thinking about security inform policy decisions.

  • What is security?3:53

    Define security as preserving confidentiality, integrity, and availability while avoiding damage from risks, and examine why complete security is unrealistic through risk assessment, threat classification, and balancing functionality.

  • Information security4:13

    Protect data by prioritizing confidentiality, integrity, and availability; use encryption and file access control, balance authentication and policy, and rely on high-availability and replication for resilient data access.

  • Information security - level up4:04

    Balance security with cost and functionality by weighing trade-offs in data and system protection, noting you cannot have cheap, functional, and secure.

  • Security issues4:50

    Explain common security policy mistakes, including user resistance, information gaps, and unawareness of threats, and show how involving users and clear policies prevent bypass and ineffectiveness.

  • Why are security solutions fallible?5:42

    Explore why security solutions fail due to unclear security policy and usability issues, illustrating flawed key-logger protections and inconvenient smart-card PINs, and adopt a four-element process: protect, detect, react, restore.

  • Security policy issues4:50

    Define a security policy clearly marking allowed and forbidden uses to prevent bypass. Outline a privacy policy describing threats, responsibility, access conditions, data categories (public, private, confidential, sensitive), and authentication.

  • Introduction to threat modelling and classification5:14

    Identify threats from an attacker’s perspective through threat modeling and classification. Analyze entry points, data flow paths, and protected resources to establish trust boundaries and protection levels for security policies.

  • Threat modelling - STRIDE4:06

    Define attacker risks by mapping vulnerabilities to attacker methods, using STRIDE threat modelling to categorize spoofing, tampering, repudiation, information disclosure, denial of service, and elevation of privilege.

  • STRIDE: Spoofing identity5:03

    Expose how identity spoofing enables impersonation across real-world and online spaces, from fake identities to spoofed websites and stolen credentials, highlighting password vulnerabilities.

  • STRIDE: Tampering with Data4:28

    Explore how data tampering threatens trusted sites, automated operations, and markets, and examine non repudiation weaknesses, data leaks, and real-world incidents like Sony and drone systems.

  • STRIDE: Denial of Service3:51

    Examine denial of service threats with STRIDE, including avalanche flooding and privilege escalation, and apply database threat modeling with monitoring, auditing, encryption, and access controls to protect confidentiality and integrity.

  • Threat Modelling and Classification - notes for the examination19:00

Requirements

  • Finished IT Security Beginner Training
  • IT knowledge
  • Programming skills will be useful
  • Basics of Linux systems

Description

LAST UPDATED: 11/2024

BONUS: Finishing this ethical hacking course, you will get a free voucher for ISA CISS Examination!


Before we begin: the practical use of the course you are going to see has been proven by thousands of people all over the world – beginners and computer geeks as well. People who make their first steps in computer / network security and professionals: network administrators, programmers, pentesters, black- and white hat hackers. Please, read carefully what we'd like to share with you.

Welcome to IT Secutiry Academy! IT Security Academy (ISA) is a company that associates ITsec Professionals. Now we are proud to share our knowledge online. Certified experts (CISS, MCSE:MS, CEH, CISSP) have created courses from Beginner to Advanced level. Our goal is to provide the highest quality materials you've ever seen online and prepare you not only for certification exams, but also teach you pratical skills. You're welcome to join us and start your training now.
     

About the training

This course is ideal for everyone, regardless of their skills and expertise. The arrangement and presentation of learning resources will let both novices and more advanced students broaden their knowledge of IT security. 

Training is starting with IT Security current threat and trends. Afterwards we are discussing popular security myths. Great part of the training relates to Network security. 

We will start with local networks, talk about protocols and theirs vulnerabilities. You will learn how to design secure computer networks and subnets. You will become real network administrator. 

Next you will discover why wireless networks could be so dangerous. You will learn standards, protocols and security solutions. Wi-Fi networks are an integral part of our lives, but not everyone realizes that if it is inadequately protected, your enterprise or home network can disclose your confidential passwords and give attackers easy access to the machines you’re administrating. 

Topics covered include core issues related to effectively securing the most popular Microsoft OS: identity theft, authentication, authorization, encryption. We identify typical mistakes and guide you towards achieving good OS protection. 

Who this course is for:

  • Future IT Security Managers
  • Network and Enterprise OS Administrators
  • IT Professionals