Telecommunications and Network Security
- Physical & Logical topologies
- The OSI Model, Layers, and Characteristics; TCP/IP architecture
- Communications and Network Security; VPN's
- Internet, Intranet and Extranets
- Wireless and VoIP;
- Network Attacks and Countermeasures
Access Control
- Introduction to Access Controls
- Access Control Techniques, Administration, and Security Models
- Identification and Authentication Techniques; Single Sign-On
- Access Control Methodologies
- Methods of Attack
- Monitoring Techniques
Operations Security
Application Security
- Distributed Environments
- Databases and Data Warehousing
- Data and Information Storage
- Knowledge Based Systems
- Malicious Code
- System/Software Development Life Cycles and Controls
- Change Control
- Application Security
- Methods of Attack
Business Continuity and Disaster Recovery Planning
- Business Continuity Planning
- Business Impact Analysis
- Managing Risk and Planning for Crisis
- BCP/DRP Planning & Events
- Disaster Recovery
Physical (Environmental) Security
- Facility Security Requirements
- Technical Controls
- Environment and Safety
- Physical Security Threats
Security Architecture and Design
- Architecture and Design Principles for Applications and Operating Systems
- Security Models, Architecture and Evaluation Criteria e.g. TCSEC and Common Criteria
- Trusted Computing Base, Reference Monitor, and Kernels
- System Architecture Security Issues
- Covert Channels, TOC/TOU, Emanations and Privileged Programs
- Certification and Accreditation
Cryptography
- Cryptography Defined
- Cryptography History & Concepts
- Symmetric and Asymmetric Cryptography
- Protocols and Implementation
- Public Key Infrastructure
- Hashing Functions
- Methods of Attack
Legal, Regulations, Compliance and Investigations
- Legal Systems
- Types of Law; Licensing
- Computer Crime
- Incident Handling, Investigations & Forensics
- Handling Evidence
- Ethics
Information Security and Risk Management
- Security Concept's and Principles
- Business Corporate, IT, and Security Governance
- Protection Mechanisms
- Change Control and Management
- Data Classification
- Employment Policies and Practises
- Policies, Standards, Guidelines and Procedures
- Roles and Responsibilities
- Risk Management and Cost Benefit
- Types of, and conducting, Risk Assessments
- Threats and Vulnerabilities and Residual Risk