Learning security without guesswork
Most people encounter information security as a list of rules handed down from IT. This program takes a different approach — starting with how attacks actually happen, then working backward to understand why defenses are structured the way they are.
What the program covers in numbers
The curriculum spans four structured modules delivered across live sessions. Each module builds directly on the previous one, so the sequence matters — concepts introduced early reappear in more complex scenarios later.
How the modules are structured
Each module opens with a real-world scenario — a breach, a misconfiguration, a phishing chain — before introducing the technical concept it illustrates. Theory follows practice, not the other way around.
Sessions run for 90 minutes. The first 60 minutes are instructor-led; the final 30 are open for questions, discussion, and walking through participant-submitted examples.
Foundations of security thinking
What constitutes a threat, an asset, and a vulnerability. Sessions use real breach case studies to ground abstract concepts before any technical terminology is introduced.
Network and system exposure
How attackers map and probe networks, common protocol weaknesses, and how to read traffic with Wireshark in a guided lab environment accessible from a standard browser.
Access control and identity
Authentication models, privilege escalation risks, and practical configuration of role-based access policies across common platforms including Active Directory and cloud IAM.
Incident detection and response
Participants work through a simulated incident — from alert triage to containment decisions — using a structured response framework discussed and refined live.
Program details
- 90-minute sessions, live broadcast
- Browser-accessible, no installs required
- Recordings available after each session
- Certificate issued on completion
- Small cohort — max 30 participants
Six areas the program addresses directly
Rather than surveying every possible topic, the curriculum focuses on the six areas where gaps in knowledge most frequently lead to real incidents. Each area connects to at least one hands-on exercise.
Threat recognition
Identifying attack patterns in real traffic logs and system events before they escalate to a breach.
Authentication hardening
Practical setup of multi-factor authentication and session management across web and enterprise systems.
Network segmentation
Understanding how flat networks amplify breaches and how basic segmentation limits lateral movement.
Vulnerability management
Reading CVE advisories, prioritizing patch cycles, and applying compensating controls when patching is delayed.
Policy and compliance basics
How security policies translate into technical controls, and where common compliance frameworks like ISO 27001 intersect with daily operations.
Social engineering awareness
Phishing simulation analysis, pretexting scenarios, and how to build organizational habits that reduce susceptibility.
Questions participants ask before enrolling
These come up consistently in pre-enrollment conversations. If something specific is not covered here, the contact page has a direct line to the program team.
