CompTIA CySA+® Certification Training
Course 2047
5 DAY COURSE
Course Outline
CompTIA CySA+ CSO-004 Training prepares cybersecurity professionals to proactively defend and monitor modern IT environments through behavioral analytics, threat detection, and incident response. The course focuses on the skills needed to identify vulnerabilities, analyze threats, secure applications and systems, and respond effectively to cybersecurity incidents. Participants learn how to use security tools and data to investigate suspicious activity, assess risk, and strengthen an organization’s overall security posture. Ideal for security analysts, SOC team members, and IT security professionals, this training helps build the practical knowledge needed to support the responsibilities covered by the CompTIA CySA+ certification.
U.S. DoDM 8140.03 APPROVED BY DEPARTMENT OF DEFENSE
CompTIA CySA+® Certification Training Benefits
-
In this course, you will learn how to:
- Identify vulnerabilities, assess risk, and prioritize remediation activities
- Analyze logs, alerts, and behavioral indicators to detect suspicious or malicious activity
- Investigate security events, support response efforts, and apply best practices for containment and recovery
- Use data from security tools and monitoring platforms to strengthen an organization’s security posture
- Evaluate and improve defensive controls across modern IT environments
- Document findings, communicate risks, and support decision-making with actionable security insights
-
Prerequisites
Candidates should have Network+ and Security+ level knowledge or equivalent experience, along with approximately 3–4 years of hands-on experience in information security, security operations, vulnerability management, or incident response.
-
Who should attend
This course is designed for cybersecurity professionals who are responsible for threat detection, monitoring, vulnerability management, and incident response within an organization. It is well suited for security analysts, SOC analysts, vulnerability analysts, incident responders, threat intelligence analysts, and IT security professionals who want to strengthen their ability to analyze threats, secure systems, and respond effectively to security events.
CompTIA CySA+® Certification Training Course Outline
Module 1: Identifying Security Operations Fundamentals
1.1 Cybersecurity Foundations
1.2 Governance, Policies, and Controls
1.3 Introduction to Incident Response in the SOC
Module 2: Applying Risk Management Strategies
2.1 Risk Concepts
2.2 Threat Modeling Frameworks
Module 3: Managing System Security Configurations
3.1 Attack Surface Management
3.2 System Hardening
Module 4: Comparing System Architectures
4.1 Infrastructure and System Architecture
4.2 Modern Network Architectures
4.3 Critical Infrastructure and Industrial Controls
Module 5: Applying Access Management
5.1 Identity and Access Management
5.2 Device and Endpoint Management
5.3 Data Protection and Cryptography
Module 6: Threat Intelligence and Threat Hunting
6.1 Threat Actor Concepts
6.2 Threat Intelligence Sources
6.3 Threat Hunting
Module 7: Assessing Network Vulnerabilities
7.1 Vulnerability Scanning Foundations
7.2 Vulnerability Scan Types
7.3 Select Vulnerability Tools
Module 8: Managing Incident Response and Communication
8.1 Manage Logs
8.2 Incident Escalation
8.3 Post-Incident Actions
8.4 Incident Response Metrics
Module 9: Executing Incident Response Plans
9.1 Attack Methodology Frameworks
9.2 The Incident Response Process
9.3 Incident Response Techniques
Module 10: Analyzing Malicious Activity
10.1 Threat Detection and Analysis Tools
10.2 Host Indicators of Compromise
10.3 Network Indicators of Compromise
10.4 Application and Web-based Indicators
Module 11: Automating Data Analysis
11.1 Scripting Fundamentals
11.2 Scripting Languages
11.3 Security Analytics and Pattern Recognition
11.4 Technology and Tool Integration
Module 12: Improving Processes with Automation
12.1 Standardization and Team Coordination
12.2 Automation, Orchestration, and Enrichment
12.3 AI Risks and Governance
12.4 AI in Security Operations
Module 13: Assessing Application Vulnerabilities
13.1 Web and Application Vulnerability Analysis
13.2 Cloud Vulnerability Assessment
Module 14: Securing Applications
14.1 Secure Software Development and Testing
14.2 Application Attack Identification and Mitigation
- choosing a selection results in a full page refresh