A new session of each course opens each month, allowing you to enroll whenever your busy schedule permits!
How does it work? Once a session starts, two lessons will be released each week, for the six-week duration of your course. You will have access to all previously released lessons until the course ends.
Keep in mind that the interactive discussion area for each lesson automatically closes 2 weeks after each lesson is released, so you’re encouraged to complete each lesson within two weeks of its release.
The Final Exam will be released on the same day as the last lesson. Once the Final Exam has been released, you will have 2 weeks plus 10 days to complete the Final and finish any remaining lessons in your course. No further extensions can be provided beyond these 10 days.
Lesson 01 - Authentication
You'll start off with a brief review of the Security+ exam and its objectives. Then you'll jump right into learning about access control. Authentication—verifying that a user requesting entry to a system or network is who they claim to be—is the first step in access control, which protects valuable and sensitive resources from unauthorized users and evildoers. In this lesson, you'll explore authentication, as well as its methods, protocols, and devices.
Lesson 02 - Authorization and Access Control
You previously learned about the authentication step in access control. In this lesson, you're going to continue your exploration of access control with a closer look at authorization and types of access control. Both of these are extremely important parts of the security policies protecting network resources. You'll take a detailed look at the elements that make up these two processes.
Lesson 03 - Managing and Securing User Accounts
This lesson will cover the policy and administration of accounts in a secure environment. It will first go over the different types of accounts you might work with, including individual accounts and group accounts. Then you'll learn about password policies, which govern how to make passwords as strong as possible, when passwords should expire, and how to deal with lost or forgotten passwords. Lastly, the lesson will discuss permissions, privileges, and the administrative actions required to minimize vulnerability.
Lesson 04 - Risk Management
Network administrators are constantly managing risk. But what does that really mean? In this lesson, you'll investigate the elements of the risk management process, including vulnerabilities, threats, risks, and likelihood and the methods used to identify, determine, or calculate each. The ultimate goal of risk management is to reduce risk to a level that's acceptable to the system and organization. In this lesson, you'll discover the methods that are used to figure out what level of risk is acceptable.
Lesson 05 - Cryptography
If you work in network security, being cryptic is just part of the job! Cryptography, or encryption, is used to prevent unauthorized people from being able to understand or use intercepted data. In this lesson, you'll explore the concepts behind encryption and the primary types of encryption in use. You'll learn about the most common encryption algorithms and ciphers and about the secure transport of encrypted data.
Lesson 06 - Public Key Infrastructure
With the Internet being so integrated these days, everyone depends on a security and validation system that's easy to take for granted: the public key infrastructure (PKI). The PKI protects you, often unknowingly, from people and companies that may be untrustworthy. In this lesson, you'll learn about the PKI and the security elements that work to protect you, including how and why they work.
Lesson 07 - Data Security
How can you protect the crucial data that allows your organization to function day in and day out? That's the question that will be addressed in this lesson. You'll start with a look at data loss prevention systems, which manage, identify, and protect data in its various states. You'll get acquainted with data encryption applications and hardware-based encryption devices. And you'll cover some considerations for off-site and remote data storage—what should you keep in mind about data when deciding where to store it and back it up? Maintaining your data's integrity and security is incredibly important, so you won't want to miss this lesson.
Lesson 08 - Securing Mobile Devices
As businesses go global and standard business hours no longer apply, mobile devices are becoming more common in organizational networks. In this lesson, you'll look at the threats that mobile devices introduce and the security methods for removing these threats. You'll investigate some internal measures for dealing with mobile devices, including what you can to protect data if a device is lost or stolen. You'll also explore what you should include in external security policies for mobile devices, and you'll see how technologies like mobile biometrics, voice encryption, and GPS tracking can help on the mobile security front. Mobile devices are only getting more essential to people's business and personal lives, so securing them is an increasingly important priority.
Lesson 09 - Virtualization and Cloud Computing
If you're working in IT these days, chances are you're working with virtualization in some form. But what exactly is virtualization? This lesson will build on what you learned about it in the first course. You'll find out how server virtualization works and explore virtualization software and hardware. You'll also learn how virtualization can benefit an organization as well as the particular security concerns that come along with it. You'll finish up with a look at the various types of cloud computing available today.
Lesson 10 - Application, Host, and Hardware Security
In this lesson, you'll focus on the security of application software. There are a few ways to make applications more secure, including application hardening and careful patch management. You'll see how these work and take a look at some common application attacks. You'll also see how to make sure the in-house software development process is as secure as you can make it. The lesson will even discuss the ways in which a host computer is secured both internally and externally.
Lesson 11 - Penetration Testing, Vulnerability Scanning, and Data Recovery
Do you know the differences between penetration testing and vulnerability scanning? When is it best to use each? In this lesson, you'll find out the answers to those questions. You'll take a look at the six phases of the penetration testing process and find out how vulnerability management works. Then you'll look at methods of software vulnerability testing, including black box, white box, and gray box testing. The lesson will conclude with a discussion of disaster recovery plans and data backup methods.
Lesson 12 - Preparing for the Security+ Exam
The CompTIA Security+ exam covers a wide-range of security concepts, topics, terminology, and practices, as well as a bit of hardware and software. In this lesson, which is the last of the two prep courses for the Security+ exam, you'll review the key terms and concepts that will be on the exam. The lesson will revisit what you really must know, and you'll get some final tips for taking a CompTIA exam.