competency in skills and knowledge through assessment tests,
but are not required to complete a specific number of hours.
Cyber Security Analyst
Anonymous
Work Process Content
On the Job Training
Period 1 General Practices - Foundations
5
- Demonstrate a working understanding of the organization’s structure, personnel rules, responsibilities, and general understanding of work ethics, interpersonal communications, and related policies. Understands and practices safety procedures and rules.
- Demonstrate a working understanding of the organization’s goals, mission, and vision.
- Demonstrate a working understanding of the organization’s office tools such as copiers, fax machines, etc.
- Demonstrate a working knowledge of the components of a computer and perform basic troubleshooting on communication issues within a computer. Example of On-the-Job Duties: Identify the components of standard desktop personal computers. Install and configure computer components. Maintain and troubleshoot peripheral components. Install and configure operating systems.
- Demonstrate a working knowledge of the hardware components of a computer and perform basic troubleshooting on hardware related issues. Example of On-the-Job Duties: Install and configure system components. Troubleshoot system components.
General Practices - Computer Basics
4
- Demonstrate a working knowledge of the Microsoft Office suite and basic troubleshooting on a computer. Example of On-the-Job Duties: Identify the components of standard desktop personal computers. Install and configure computer components. Maintain and troubleshoot peripheral components. Install and configure operating systems.
- Demonstrate a basic knowledge of troubleshooting, networking, and security across a variety of devices. Example of On-the-Job Duties: Install and configure system components. Troubleshoot system components.
- Demonstrate a basic knowledge of the cloud components of a network and perform basic troubleshooting on hardware related issues. Example of On-the-Job Duties: Manage, maintain, troubleshoot, install, operate, and configure basic cloud infrastructure or services.
- Demonstrate a basic knowledge of “best practices” in general network security. Example of On-the-Job Duties: Implement secured network communications. Designate how to manage public key infrastructure and certificates.
Period 2 General Practices - Security Basics
0
General Practices – Advanced Networking
0
Period 3 General Practices – Advanced Networking Cont.
0
Period 4 General Practices – Advanced Security
0
Related Instruction Content
Training Provider(s):
NETWORK ENGINEER - Analyze Various Data Sources to Confirm Suspected Infection
1
Apprentices will be proficient with being able to confirm the presence of malicious activity using the various tools including wireshark and VIrusTotal.com.
NETWORK ENGINEER - CompTIA Linux+
14
Apprentices will have a training that will prepare them with the knowledge to become a certified Linux+ expert, spanning a curriculum that covers Linux maintenance task, user assistance and installation and configuration.
NETWORK ENGINEER - CompTIA Linux+ LX0-103
32
Apprentices will be proficient at Linux administration and also prepared to take their CompTIA LX0-103 Linux+ certification exam.
NETWORK ENGINEER - CompTIA LX0-103: Linux+
22
The practice certification test will prepare apprentices to confidently ace part 1 of the Linux+ certification exam.
NETWORK ENGINEER - CompTIA Linux+ LX0-104
32
Apprentices will have knowledge on basic Linux concepts such as package management, commands, and devices.
NETWORK ENGINEER - Scanning and Mapping Networks
3
Apprentices will be able to scan and map any network using Zenmap, be able to compare the current network system baseline to the previously recorded network map and annotate any discrepancies, and create and save two documents (.xml and .nmap) detailing the findings concerning each system on the network.
NETWORK ENGINEER - Firewall Set-up and Configuration
3
The candidate has demonstrated the ability to set-up a firewall from the command line interface, configure a firewall from a web interface, and learn how to create a firewall rule to manage network traffic at different levels.
NETWORK ENGINEER - Setting up Zones in a Firewall
2
Apprentices will be able to be able to configure a pfSense firewall to create/isolate various network segments.
NETWORK ENGINEER - Block Incoming Traffic on Known Port
1
Apprentices will be able to respond to an incident by blocking incoming traffic of a known port from a specific IP.
NETWORK ENGINEER - Network Miner
1
Apprentices will be able to use the Network Miner tool, analyze pcap files and extract potentially malicious files.
NETWORK ENGINEER - CompTIA Network+
40
Apprentices will have the tools to have a successful career in network administration.
NETWORK ENGINEER - CompTIA Network+ N10-007
36
Apprentices will have hands on labs to learn VPN Technologies and Services.
NETWORK ENGINEER - CompTIA - N10-007 Network+
4
Upon completion of the test apprentices will have a good understanding of network infrastructure, networking concepts, vulnerabilities, network operations, and troubleshooting.
NETWORK ENGINEER - Preliminary Scanning
1
Apprentice will know how to utilize Nmap, to identify the systems on a network of responsibilities.
NETWORK ENGINEER - Open Systems Interconnection model (OSI model)
1
Apprentices will be able to operate the OSI model and be prepared to obtain their OSI model certification.
NETWORK ENGINEER - TCP/IP
1
Apprentices will have the knowledge of core networking principles that are essential for advancing a career in cyber security or information assurance.
NETWORK ENGINEER - Network Devices
3
Network devices will solidify apprentice’s knowledge in networking and allow them the opportunity to work hands on with a variety of essential equipment, furthering their cyber security career and provide a valuable skill set that will always be in demand.
NETWORK ENGINEER - Comparing Controls
1
Apprentices will know how to evaluate policies in place on a domain and apply the policies in accordance to organizational standards.
NETWORK ENGINEER - Cisco CCNA
20
Apprentices will become proficient in operating, installing, configuring, and troubleshooting WAN, LAN, and dial access services for medium-sized networks.
NETWORK ENGINEER - Cisco Certified Network Associate (CCNA 200-125)
35
Apprentices will have the skills and knowledge they need to successfully complete their 200-152 Cisco Certified Network Associate certification exam.
SOC ANALYST - Intro to InfoSec
1
Apprentices will be ready to launch a new career.
SOC ANALYST - CompTIA Security+
10
Apprentices will be properly prepared to successfully complete the CompTIA Security+ certification exam.
SOC ANALYST - CompTIA Security+ 501
30
Apprentice will know the information to confidently ace the CompTIA Security+ certification exam.
SOC ANALYST - CompTIA SY0-501: Security+
2
Based upon a passing score, this test will prove that apprentices have the knowledge threats, attacks and vulnerabilities, technologies and tools, architecture and design. Identity and access management, risk management, cryptography and PKI.
SOC ANALYST - Penetration Testing and Ethical Hacking
14
Apprentices will be able to exploit networks in the manner of an attacker and be able to protect the network from the attacker.
SOC ANALYST - Certified Ethical Hacker (CEH)
25
Apprentice will have the skills to become a skillful capable ethical hacker and be able to confidently ace their Certified Ethical Hacker certification exam.
SOC ANALYST - Ethical Hacking (CEH Preparation)
4
Based upon a passing score, apprentices will have the knowledge of mapping networks, packet sniffing, social engineering and planting a backdoor.
SOC ANALYST - Open Source Password Cracking
7
Open Source Password Cracking lab teaches apprentices how to use the open source tool, John the Ripper, to crack passwords of various file types on both a Windows and a Linux virtual machine. Apprentices will learn about using tools to crack passwords on Windows and Linux machines. There are many methods to crack passwords, this skill is a key part of the Cyber Operator work role and builds to the ability to use tools, techniques, and procedures to remotely exploit and establish persistence on a target.
SOC ANALYST - Intro to Malware Analysis and Reverse Engineering
10
Apprentices will be able to perform dynamic and static analysis on all major file types. Apprentices will know how to carve malicious executables from documents and how to recognize common malware tactics and debug and disassemble malicious binaries.
SOC ANALYST - Participate in Attack Analysis Using Trusted Tool Set
3
Apprentices will be able to participate in the attack analysis and incident response to identify vulnerabilities. Apprentices will also be able to capture a list of the current environmental variables that later will be analyzed for any anomalies in the variables.
SOC ANALYST - Cross Site Request Forgery (CSRF)
1
Apprentices will be able to prevent ill-intent such as “Phishing” scams, downloadable files via a link, etc. that directs an end-user to a falsified server.
SOC ANALYST - Cross Site Request Forgery (CSRF) Defend
1
Apprentices will be able to defend against Cross-Site Request Forgery attacks.
SOC ANALYST - Web Application Penetration Testing
3
Apprentices will be able to develop their own pen testing environment.
SOC ANALYST - XSS Store Based Fishing
1
Apprentices will be able to perform the following duties: secure coding, web application security essentials, OWASP top 10-cross site scripting, and gain administrator access to illegal websites.
SOC ANALYST - XSS Stored
1
Apprentices will be able to perform a Stored XSS attack in their investigation of a website that is being used for illegal content.
SOC ANALYST - XSS Reflected
1
Apprentices will be able to identify XSS Reflected vulnerabilities, how to find XSS Reflected vulnerabilities, how to create a malicious link that will be used for XSS Reflected attack, and they will be able to insert the link into the website.
SOC ANALYST - Incident Response and Advanced Forensics
5
Apprentices will be able to integrate advanced authentication, how to manage risk in enterprise, how to conduct vulnerability assessments and how to analyze network security concepts and components.
SOC ANALYST - Botnet Takedown
3
Apprentices will have a proper knowledge to be able to disable a botnet.
PENETRATION TESTER - Network Discovery
2
Apprentices will be able to discover information about DNS servers, configure IPTables to impede malicious hackers, run traceroute scans, and running a query to see if the port is open to ICMP packets.
PENETRATION TESTER - Preliminary Scanning
1
Apprentices will be able to identify systems on a network of responsibilities. Apprentices will also be able to identify other devices on the laboratory network, to include computers and network infrastructure devices, such as routers.
PENETRATION TESTER - Parse Files Out of Network Traffic
1
Apprentices will be able to use the network traffic analysis tools, Wireshark and Network Miner to analyze network traffic and identify potential file transfers and extract files.
PENETRATION TESTER - Specialized Linux Port Scans
1
Apprentices will be able to leverage Hping3 to assess ports of various devices on the assigned network.
PENETRATION TESTER - CompTIA Security+
10
Apprentices will have the skills to perform proficiently in topics such as threats, vulnerabilities and attacks, systems security, network infrastructure, access control, cryptography, risk management, and organizational security.
PENETRATION TESTER - CompTIA Security+ 501
30
Apprentices will have the skills mastered that will be needed to be a security professional.
PENETRATION TESTER - Using Snort and Wireshark to Analyze Traffic
1
Apprentices will have the skills needed to critically inspect network traffic and detect suspicious activity. Apprentices will also be able to use Snort and Wireshark to quickly and effectively scan and understand what's happening in their network.
PENETRATION TESTER - Threat Designation
1
Apprentices will have the skills to conduct scans against a web server, a file share, a printer and a user’s host device.
PENETRATION TESTER - Fundamental Vulnerability Management
1
Apprentices will have the skills needed to use the popular scanning tools, delivery of progress reports, and implementation of increased systems coverages.
PENETRATION TESTER - Penetration Testing and Ethical Hacking
14
Apprentices will have the skills and tools that are required for the development and application of an effective vulnerability prevention strategy to prevent attackers from entering key systems.
PENETRATION TESTER - Certified Ethical Hacker (CEH)
25
Apprentices will have the skills mastered that are needed to be a capable ethical hacker.
PENETRATION TESTER - Applying Filters to TCPDump and Wireshark
1
Apprentices will have mastered the skills to becoming efficient and effective at conducting security task.
PENETRATION TESTER - Security Assessment & Testing
1
Apprentices will have the skills to manage risks involved in developing, operating, and sustaining systems and capabilities.
PENETRATION TESTER - Identifying System Vulnerabilities with OpenVAS
1
Apprentices will be able to scan a system in OpenVAS to discover and identify systems on the network that have vulnerabilities.
PENETRATION TESTER - Implement Single System Changes in Firewall
1
Apprentices will have mastered the skills for network interface configuration, Pfsense firewall initial set-up, firewall rules, and the importance of blocking/allowing TCP/UDP ports.
PENETRATION TESTER - Manual Vulnerability Assessment
1
Apprentices will be able to perform a risk assessment based on the findings from the previous vulnerability audits and determine appropriate mitigation actions.
PENETRATION TESTER - Performing an Initial Attack Analysis
1
Apprentices will have the skills to perform incidence response on a compromised machine, collect volatile data and have the skill to ability to manipulate data
PENETRATION TESTER - Advanced Techniques for Malware Recovery
1
Apprentices will have the skills to analyze processes, DLLs, registry edits and other auto start functions to locate and remove malicious software from an infected Windows 7 victim machine.
PENETRATION TESTER - Analyze and Classify Malware
1
Apprentices will have the skills to create and conduct basic static analysis of a malicious executable file.
PENETRATION TESTER - Dynamic Malware Analysis Capstone
1
Apprentices will have the skills to capture network traffic by using the simple “man-in-the-middle” system.
PENETRATION TESTER - CompTIA Cybersecurity Analyst (CySA+)
15
Apprentices will have the skills to analysis and defense techniques leveraging data. Apprentices will have the tools to identify risks to an organization and they will know how to apply effective mitigation strategies.
PENETRATION TESTER - CompTIA CySA+
27
Apprentices will have the skills to identify and combat malware, and advanced persistent threats (APTs), resulting in enhanced threat visibility across a broad attack surface.
PENETRATION TESTER - Vulnerability Scan Analysis
2
Apprentices will have the skills to Identify, Mitigate, Scan, Analyze and Remediate Network Vulnerabilities pertaining to an organization's IT Infrastructure and assess the Threat Environment on the basis of confirmatory audits of the basic IT/Cyber Security CIAAN Privacy Principles.
PENETRATION TESTER - Vulnerability Scanner Set-up and Configuration
1
Apprentices will have the skills to perform a Risk assessment based on the findings from the previous vulnerability audits and determine appropriate mitigation actions.
PENETRATION TESTER - Vulnerability Scanner Set-up and Configuration, Pt. 2
1
Apprentices will have the skills to perform confirmatory assessments of systems or networks according to an audit policy.
PENETRATION TESTER - Monitoring Network Traffic
1
Apprentices will have the skills to interpret the information collected by network tools, detect host and network-based intrusions via intrusion detection technologies, and perform packet-level analysis.
PENETRATION TESTER - Analyze SQL Injection Attack
1
Apprentices will have the skills to recognize and validate SQL Injection Attacks against an environment.
PENETRATION TESTER - Creating Recommendations Based on Vulnerability Assessments
1
Apprentices will have the skills to perform assessments of systems or networks according to an audit policy.
PENETRATION TESTER - Advanced Penetration Testing
20
Apprentices will have the skills on how to attack from the web using cross-site scripting, SQL injection attacks, remote and local file inclusion and how to understand the defender of a network that they are breaking into.
PENETRATION TESTER - Denial of Service PCAP Analysis
1
Apprentices will have the skills to perform a Denial of Service attack.
PENETRATION TESTER - Centralized Monitoring
1
Apprentices will have the skills to remotely visualize and analyze data through various forms of technology.
PENETRATION TESTER - Computer and Hacking Forensics
10
Apprentices will have the skills to; determine potential online criminal activity at its inception, legally gather evidence, search and investigate wireless activity.
PENETRATION TESTER - Metasploit
6
Apprentices will have the skills to use the Metasploit framework software for penetration testing and be able to offer their organization even better security and protection from cyber-attacks.