96 hours
On-site- Schedule
- To be announced
- Format
- On-site
- Duration
- 24 weeks · 96 hours
- Language
- Confirm with advisor
Create account & apply
This hands-on, intensive four-month Cybersecurity course is designed to equip participants with both foundational and advanced cybersecurity knowledge and skills. It covers a broad spectrum of topics, including system security, networking, cyber hygiene, ethical hacking, threat detection, penetration testing, and digital forensics. Through a combination of theoretical lessons, practical labs, and real-world simulation exercises, students will develop the capabilities to defend, investigate, and ethically attack systems in controlled environments. The course follows a structured approach, starting from IT fundamentals and progressing toward advanced Red Team vs. Blue Team operations, culminating in a capstone ethical hacking challenge. Whether you're looking to start a cybersecurity career or level up your current skills, this course provides the practical experience and knowledge necessary to excel in the industry.
Modules stay collapsed for quick scanning. Open any module to inspect its topics.
Security Foundations CIA, AAA, non-repudiation, least privilege, defense in depth, Zero Trust, control tipləri.
Networking for Security IP ünvanlaşma, OSI/TCP-IP, portlar, DNS, DHCP, TCP handshake — praktiki.
Network Security Firewall, IDS/IPS, VPN, seqmentasiya, DMZ, NAC və təhlükəsiz arxitektura
Identity & Access (IAM) Autentifikasiya, MFA, SSO, RBAC/ABAC, PAM, hesab həyat dövrü.
Cryptography & PKI/TLS Encoding≠encryption≠hashing, simmetrik/asimmetrik, sertifikat, TLS, parol saxlanması
Threats, Phishing & Email Təhdid aktorları, social engineering; email təhlükəsizliyi: SPF/DKIM/DMARC, header analizi.
Malware & Vuln Management Malware növləri; CVE, CVSS, zəiflik prioritetləşdirmə
Hardening, Logging & IR Secure baseline/CIS, AV/EDR/XDR; event/alert/incident, IR və risk əsasları
Consolidation & Assessment Faza 1 təkrar və Security Essentials qiymətləndirməsi.
SOC Fundamentals & Roles SOC məqsədi, arxitektura, Tier 1/2/3, incident responder, threat hunter.
Monitoring Flow & SIEM Log toplama→normalizasiya→korrelyasiya→alert→araşdırma; SIEM (QRadar, Sentinel, Splunk).
Windows Log Analysis Login, hesab dəyişikliyi, process/service, PowerShell; investigation timeline
Linux Log Analysis Autentifikasiya, SSH, sudo, sistem logları, uğursuz girişlər.
Network Security Monitoring Firewall/DNS/proxy/VPN logları, NetFlow, PCAP və Wireshark.
Endpoint Monitoring EDR/XDR, process tree, parent/child, hash, command line, Sysmon
IOC/IOA/TTP & MITRE ATT&CK İndikator növləri; ATT&CK taktika/texnikalarının praktiki xəritələnməsi.
Threat Intel & Hunting Kəşfiyyat növləri, IOC zənginləşdirmə; hipotez əsaslı threat hunting
Detection Engineering Attack→observable→log→detection→alert; Sigma, korrelyasiya, tuning.
IR, Phishing, Ransomware IR dərinləşmə, phishing araşdırması; ransomware tabletop; Blue Team hesabatı
Ethical Hacking & Methodology Scope, rules of engagement; PT metodologiyası: planning→recon→exploit→report
Reconnaissance & OSINT Passiv/aktiv kəşfiyyat, DNS/domen, açıq mənbələrdən hədəf profili.
Discovery & Enumeration Host discovery, port scan, service enumeration, banner grabbing (Nmap, Netcat).
Vulnerability Assessment Zəiflik skanı, manual doğrulama, CVE araşdırması, CVSS, false positive.
Web Application Security HTTP manipulyasiya, SQLi, XSS, Broken Access Control, IDOR, file upload, path traversal, API
Password & Credential Attacks Brute force, spraying, credential stuffing; offline parol auditi və müdafiə.
Privilege Escalation Windows/Linux zəif icazələr, misconfigurasiya, local privesc konsepsiyaları
Active Directory Fundamentals Domain, Kerberos/NTLM, LDAP; excessive privilege və hücum yolları.
Exploitation & Post-Exploitation Exploitation/post-exploitation konsepsiyaları (nəzarətli lab).
Pentest Reporting Peşəkar finding: impact, evidence, CVSS, remediation prioriteti.
GRC Fundamentals Governance, risk, compliance; policy/standard/procedure/guideline; audit, evidence.
NIST CSF 2.0 Govern, Identify, Protect, Detect, Respond, Recover və texniki əməliyyatla əlaqə.
Risk Management & Register Asset×Threat×Vulnerability→Risk; inherent/residual, appetite; praktiki Risk Register.
Security Frameworks CIS Controls (IG1–IG3), ISO/IEC 27001, NIST SP 800-53 — məqsəd və fərqlər
Policy, Data & Third-Party Data təsnifat, owner/custodian, DLP, retention; vendor risk; metrik (KPI/KRI
Final Integrated Capstone Bütün fazalar birləşir: Attack→Detect→Respond→Risk→Control→Executive Summary
Only current, open groups are shown.
Course delivery is supported by practitioners across engineering, architecture and production backend development.
“The program helped me connect individual skills into the way real teams design, build and deliver software.”
See real graduate stories from the Ingress community.
Explore graduate resultsWe use one Portal account for applications, assessments and future learning progress. You will not need to email your details or select the training again.
Questions first? Talk to an advisorCreate or sign in to your Portal accountYour contact details stay connected to one student profile.
Confirm your application detailsCybersecurity is preselected.
Submit your applicationThe admissions team receives it immediately and can follow up from the Portal.
SELECTED TRAININGCybersecurityOn-site
Continue in Ingress Portal Already registered? The Portal will let you sign in instead.