Quick Links |
|
Upcoming Batches
| Regular Batches |
| 10th Jan-11th Jan, 2011 |
| 22nd-23rd Feb, 2011 |
| 3rd-4th May, 2011 |
| 5th-6th Jul, 2011 |
| 13th-14th Sep, 2011 |
| 15th-16th Nov, 2011 |
| Weekend Batches |
| Begins 23rd & 29th Jan, 2011 |
| Begins 20th & 26th Mar, 2011 |
| Begins 29th May & 4th Jun, 2011 |
| Begins 31st Jul & 6th Aug, 2011 |
| Begins 15th & 16th Oct, 2011 |
| Begins 11th & 17th Dec, 2011 |
|
|
Network Security |
| Network Security |
The primary goal of the course is to introduce the participant to system and application design aspects of network security including systemic and computational security aspects of the network / internetwork systems.
|
| Why should you attend this course? |
|
The course covers fundamental aspects of security in a modern networked environment with the focus on system design aspects in the specific context of network / internetwork security. It provides information the participants can apply directly when they go back to work.
|
| Who should attend this course? |
- Technical people who are working in security
- Managers who are responsible or interface with security groups
- Any executive who wants to better understand the risks their organization faces
|
| Course Contents |
By the end of the course participants will be able to:
Section One – Introduction and Overview of Network types, components and security issues
- Module 1: Network topology / Overview of LAN-WAN
- Module 2: Network design / Network components
- Module 3: Network protocols, network software standards & procedures, Network data issues, transmission media and techniques including last mile connectivity
- Module 4: Network logical security
|
|
Session Two - Networking Security Threats & Vulnerabilities
- Module 5: Network port and port-scanning
- Module 6: Network Active & Passive Attacks-Eavesdropping, sniffing, brute force, masquerading, man-in-middle attack / IP spoofing, phishing, message modification, Miniature fragment attack, source routing, Denial of service, (DOS), packet replay, session hijacking
- Module 7: Virus scanning, spyware, worms, Trojan, malware
- Module 8: Access from Internet / Third parties site / other offices
- Module 9: Data Centre issues
|
|
Session Three – Network countermeasures
- Module 10: Review of Secured Network design & topology, networking devices
- Module 11: Hardening Operating system parameters and related issues
- Module 12: DMZ configuration, hardening of OS parameters, networking authentication
- Module 13: Protection from Internal attackers / Networking operation control
- Module 14: Network Traffic Analysis & Monitoring Tools, securing Network gateways (encryption of password / data)
- Module 15: Live case study and scenarios
|
|
Session Four – Network Operating controls
- Module 16: Implementing Security policy & procedures
- Module 17: Development & authorization of Network changes
- Module 18: Network administration Roles & Responsibilities
- Module 19: Full Network assessment reviews
- Module 20: Intrusion detection / prevention
- Module 21: Encryption / CRC Algorithm
- Module 22: Filtering
- Module 23: Scanning for virus, spyware, malware, Trojan, worm
- Module 24: Periodic Network Penetration tests
- Module 25: Unauthorized changes (access control list) and Audit logging
- Module 26: Network Auditing - Networking components &transmission media
|
|
Session Five – Logging
- Module 27: Log file location
- Module 28: Integrity and confidentiality of logs
- Module 29: Log Analysis
- Module 30: Log Rotation
|
|
Session Six – Overview of Firewall, Types of Firewall and its architecture as per security standards
|
|
Session Seven – Firewall components
|
|
Session Eight – Overview of IDS (NIDS & HIDS) / IPS and its components (Sensor, analyzer, Admin-console, user interface)
|
|
Session Nine – Testing of Firewall security / Access rules
- Module 31: Configuration mgmnt. for security base-lining, policy & procedures, Bastion host
- Module 32: Verifying Firewall access rules, reviewing / monitoring logss
- Module 33: Firewall failure mode - fail open / fail secure
- Module 34: Admin access, lockdown rule, Internal use / External use
- Module 35: Incident handling for detection of security breaches, response and containment
- Module 36: Internet security
- Module 37: Web server access
- Module 38: POP access to mail server / Network perimeter security
- Module 39: Honey pots / Honey Net
|
|
Session Ten – Network Change Control Mgmnt. system (rule based) - modifying rules and other authentication mechanisms, Auditing on Network components
|
|
Section Eleven – Encryption methodology, third party software used as an additional service
|
|
Session Twelve – Router Security
- Module 40: IOS Version on the router
- Module 41: Password strength for configuration users
- Module 42: Configuration access to routers, SNMP, configuration on Network components
- Module 43: Location of offline configuration files
- Module 44: Attacking routers - third party software used with Firewall as an additional service
|
|
Session Thirteen – Introduction to Switch / VLAN - Layered switch / VPN
- Module 45: VLAN implementation and authentication mechanism
- Module 46: VPN & its implementation
- Module 47: IPSec - Encapsulation in transport / Tunnel mode
- Module 48: Countermeasures for attacks
|
|
Session Fourteen – WI-FI and Security measures
- Module 49: WLAN security, Access points/ translational points, SSID, EAP
- Module 50: Bluetooth Technology, WEP (RC4), WPA, WPA2 (802.11I / 802.11g)
|
|
Session Fifteen – Tools
- Checkpoint
- Cisco PIX
- Snort
- Using hping to test firewall rule sets
- NMAP, Nessus
- Router Auditing Tools
- Solarwinds Tools suite
- IKEScan
- VPN password brute - forcing
|
|