Quick Links
Upcoming Batches
Regular Batches
10th Jan-11th Jan, 2011
22nd-23rd Feb, 2011
3rd-4th May, 2011
5th-6th Jul, 2011
13th-14th Sep, 2011
15th-16th Nov, 2011
Weekend Batches
Begins 23rd & 29th Jan, 2011
Begins 20th & 26th Mar, 2011
Begins 29th May & 4th Jun, 2011
Begins 31st Jul & 6th Aug, 2011
Begins 15th & 16th Oct, 2011
Begins 11th & 17th Dec, 2011
Network Security
Network Security
The primary goal of the course is to introduce the participant to system and application design aspects of network security including systemic and computational security aspects of the network / internetwork systems.
Why should you attend this course?
The course covers fundamental aspects of security in a modern networked environment with the focus on system design aspects in the specific context of network / internetwork security. It provides information the participants can apply directly when they go back to work.
Who should attend this course?
  • Technical people who are working in security
  • Managers who are responsible or interface with security groups
  • Any executive who wants to better understand the risks their organization faces
Course Contents
By the end of the course participants will be able to:
Section One – Introduction and Overview of Network types, components and security issues
  • Module 1: Network topology / Overview of LAN-WAN
  • Module 2: Network design / Network components
  • Module 3: Network protocols, network software standards & procedures, Network data issues, transmission media and techniques including last mile connectivity
  • Module 4: Network logical security
Session Two - Networking Security Threats & Vulnerabilities
  • Module 5: Network port and port-scanning
  • Module 6: Network Active & Passive Attacks-Eavesdropping, sniffing, brute force, masquerading, man-in-middle attack / IP spoofing, phishing, message modification, Miniature fragment attack, source routing, Denial of service, (DOS), packet replay, session hijacking
  • Module 7: Virus scanning, spyware, worms, Trojan, malware
  • Module 8: Access from Internet / Third parties site / other offices
  • Module 9: Data Centre issues
Session Three – Network countermeasures
  • Module 10: Review of Secured Network design & topology, networking devices
  • Module 11: Hardening Operating system parameters and related issues
  • Module 12: DMZ configuration, hardening of OS parameters, networking authentication
  • Module 13: Protection from Internal attackers / Networking operation control
  • Module 14: Network Traffic Analysis & Monitoring Tools, securing Network gateways (encryption of password / data)
  • Module 15: Live case study and scenarios
Session Four – Network Operating controls
  • Module 16: Implementing Security policy & procedures
  • Module 17: Development & authorization of Network changes
  • Module 18: Network administration Roles & Responsibilities
  • Module 19: Full Network assessment reviews
  • Module 20: Intrusion detection / prevention
  • Module 21: Encryption / CRC Algorithm
  • Module 22: Filtering
  • Module 23: Scanning for virus, spyware, malware, Trojan, worm
  • Module 24: Periodic Network Penetration tests
  • Module 25: Unauthorized changes (access control list) and Audit logging
  • Module 26: Network Auditing - Networking components &transmission media
Session Five – Logging
  • Module 27: Log file location
  • Module 28: Integrity and confidentiality of logs
  • Module 29: Log Analysis
  • Module 30: Log Rotation
Session Six – Overview of Firewall, Types of Firewall and its
architecture as per security standards
Session Seven – Firewall components
Session Eight – Overview of IDS (NIDS & HIDS) / IPS and its components
(Sensor, analyzer, Admin-console, user interface)
Session Nine – Testing of Firewall security / Access rules
  • Module 31: Configuration mgmnt. for security base-lining, policy & procedures, Bastion host
  • Module 32: Verifying Firewall access rules, reviewing / monitoring logss
  • Module 33: Firewall failure mode - fail open / fail secure
  • Module 34: Admin access, lockdown rule, Internal use / External use
  • Module 35: Incident handling for detection of security breaches, response and containment
  • Module 36: Internet security
  • Module 37: Web server access
  • Module 38: POP access to mail server / Network perimeter security
  • Module 39: Honey pots / Honey Net
Session Ten – Network Change Control Mgmnt. system (rule based)
- modifying rules and other authentication mechanisms, Auditing on Network components
Section Eleven – Encryption methodology, third party software used as an additional service
Session Twelve – Router Security
  • Module 40: IOS Version on the router
  • Module 41: Password strength for configuration users
  • Module 42: Configuration access to routers, SNMP, configuration on Network components
  • Module 43: Location of offline configuration files
  • Module 44: Attacking routers - third party software used with Firewall as an additional service
Session Thirteen – Introduction to Switch / VLAN - Layered switch / VPN
  • Module 45: VLAN implementation and authentication mechanism
  • Module 46: VPN & its implementation
  • Module 47: IPSec - Encapsulation in transport / Tunnel mode
  • Module 48: Countermeasures for attacks
Session Fourteen – WI-FI and Security measures
  • Module 49: WLAN security, Access points/ translational points, SSID, EAP
  • Module 50: Bluetooth Technology, WEP (RC4), WPA, WPA2 (802.11I / 802.11g)
Session Fifteen – Tools
  • Checkpoint
  • Cisco PIX
  • Snort
  • Using hping to test firewall rule sets
  • NMAP, Nessus
  • Router Auditing Tools
  • Solarwinds Tools suite
  • IKEScan
  • VPN password brute - forcing