Security + PDF Print E-mail

Security +

Authentication Methods

Defining Security Terms
Authentication, Multifactor, Single
Sign-on and Mutual Authentication
User Name and Password
Understanding Kerberos
Certificates
Token-Based and Challenge Handshake
Authentication Protocol (CHAP)
Smart Cards
Biometrics
Extensible Authentication Protocol (EAP)

Access Control

Access Control Terminology and
Concepts and Methods
Balancing Responsibilities of Security

Cryptography Essentials

Cryptography and Encryption
Hash, Symmetric-Key, Asymmetric-
Key and Applied Encryption
Creating a Security Matrix

Public Key Infrastructure

Public Key Infrastructure (PKI)
Essentials Key Management and the Certificate Life Cycle

Network Attacks and Vulnerabilities

Network Attack Overview
Protocol Overview
Spoofing and Scanning
Denial-of-Service(DOS)
Distributed Denial-of-Service(DDOS)
Man-in-the-Middle
Password-Guessing Attacks
Profile of an Attack
Software Exploitation
Attacks Against Encryption
Social Engineering
Malicious Code and Auditing

Operating System and Application Hardening

Security Baselines
Client Security Issues
Server-Side Issues: Application Hardening
Operating System Hardening

Securing Remote Access

Remote Access Concepts and Terminology
Overview of Remote Access Methods
Virtual Private Networks (VPNs)
Terminal Access Controller Access Control System (TACACS) and TACACS+
Remote Authentication Dial-In User Service (RADIUS), IPsec and 802.1x
Remote Administration Methods
Secure Shell (SSH)

Wireless Network Security

Wireless Network Technologies
Wireless Application Protocol (WAP)
Wireless Security Vulnerabilities
Solutions for Wireless Network
Vulnerabilities

Site Surveys

Security Topologies and Infrastructure Security
Firewall Overview
Security Topologies
Traffic Control Methods
Configuring Firewalls
Network Hardening, Network Security and Physical Security Concerns
Cabling and Network Security

Risk Analysis, Intrusion Detection and Business Continuity

Risk Identification
Intrusion Detection
Elements of an Incident Response
Policy, Forensics and Disaster
Recovery
Business Continuity

Security Policy Management

Security Policy, Privilege Management,
Training Secure Practices and Documentation