Bridgeway International

CyberSec First Responder – Advanced (CFR-A)

Course Information

Need Group Training

Course Description

This course takes cybersecurity practice to the next level. It is an advanced experience that builds upon the defensive skills and knowledge taught by the CyberSec First Responder® (Exam CFR-410) course. It is an applied experience in that it almost entirely consists of hands-on exercises featuring many different tools and environments.

The “”A”” in CFR-A can also refer to the cybersecurity modes this course is built around:

  • Attack: Simulating attacks on computing assets to test security measures and learn more about threat vectors.
  • Analyze: Identifying, detecting, and assessing threats to learn more about how they operate and how they affect security.
  • Address: Implementing countermeasures and other protections to mitigate the impact of threats to security.

Course Objective

  • Get oriented to your tools and environment.
  • Exploit vulnerabilities in software.
  • Exploit vulnerabilities related to system access, networking, data, and file configurations.
  • Analyze attacks using passive and active methods.
  • Implement security protections to minimize the impact of attacks.

Course Outline

1 – Getting Oriented to Your Tools and Environment

  • Explore the CFR-A Activity Environment
  • Perform Reconnaissance
  • Simulate an Attack Using Metasploit

2 – Exploiting Software Vulnerabilities

  • Exploit Code-Execution and Injection Vulnerabilities
  • Exploit Web-Application Vulnerabilities

3 – Exploiting System Vulnerabilities

  • Exploit Access Vulnerabilities
  • Exploit Network Vulnerabilities
  • Exploit Data Vulnerabilities
  • Exploit File-Configuration Vulnerabilities

4 – Analyzing Attack

  • Analyze Logs for Signs of Attack
  • Detect Attack Using Active Monitoring Systems
  • Perform Digital Forensics

5 – Protecting Assets

  • Protect Data
  • Protect Access
  • Protect Software
  • Protect Networks and Systems