SEC504: Hacker Tools, Techniques, and Incident Handling

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usConnect, learn, and share with other cybersecurity professionals
Engage, challenge, and network with fellow CISOs in this exclusive community of security leaders
Become a member for instant access to our free resources.
Sign UpMission-focused cybersecurity training for government, defense, and education
Explore industry-specific programming and customized training solutions
Sponsor a SANS event or research paper
We're here to help.
Contact UsApply your credits to renew your certifications
Attend a live, instructor-led class at a location near you or remotely, or train on your time over 4 months
Course material is for individuals with an understanding of IT or cyber security concepts
Apply what you learn with hands-on exercises and labs
Gain fundamental knowledge and proficiency in Linux. With Linux security training, you’ll learn skills to secure Linux systems and implement the needed measures to protect them.
Even though I have been using Linux for a while, I learned a lot of things I didn't know or understand, and now it makes sense.
Many security professionals are more familiar with Windows than Linux, yet Linux is essential for cybersecurity roles. This Linux cybersecurity course provides hands-on training to build Linux skills for system security, threat detection, and risk mitigation. You’ll learn how misconfigurations create vulnerabilities, how attackers exploit them, and how to defend against threats. In the process, you’ll become an asset to any security team.
Charles “Charlie” Goldner is a Senior Technical Engineer at Counter Hack. With over two decades of experience working for SANS, the U.S. Army, and the Nevada National Guard, he brings a wealth of public and private sector expertise to the classroom.
Read more about Charles GoldnerMark Baggett has revolutionized cybersecurity through his leadership at SANS. His development of tools like Freq Server has strengthened threat detection, while his work in automation has empowered professionals to defend against evolving threats.
Read more about Mark BaggettExplore the course syllabus below to view the full range of topics covered in SEC406: Linux Security for InfoSec Professionals.
Section one covers the Linux operating system, kernel, and terminal basics. You will learn to navigate the file system, execute programs, and refine search results using manual pages. The section also explores command history, completion, and file management. It concludes with mastering the Visual Editor for security and administration.
This section expands on terminal skills, focusing on file search, grep usage, and system customization with variables and aliases. You will learn to manage accounts, groups, and file ownership. Advanced file management techniques, including creating, copying, moving, deleting, and using filters and pipes, are also covered.
Section three covers user access control, least-privilege enforcement, and security in Linux. You will learn to manage users, groups, and permissions, translating skills from networking or Windows backgrounds. This section also covers securing administrative credentials and auditing system settings to ensure proper security configurations.
As you migrate to the cloud and use containers, limiting resource consumption helps prevent unexpected costs and ensures server availability. In Section 4, you’ll learn to manage processes, handle core dumps, and enhance incident response with task scheduling, user activity records, and log management.
Section five covers package management, remote server management via SSH, and networking. You’ll learn to use package managers, manage Python virtual environments, and compile packages. The section also covers encryption, secure communication with SSH, SCP, OpenSSL, and managing networking and firewalls.
When purchasing a live, instructor-led course, add 4 months of online access. View price in the info icons below.
Add 6 months of hands-on skills practice. Add to your cart when purchasing your course.
I am learning new things that I never used before and remembering things I have forgot.
[SEC406] has a ton of useful knowledge around Linux.
I really like the way the course was presented. Great flow and easy to follow along with.
Get feedback from the world’s best cybersecurity experts and instructors
Choose how you want to learn - online, on demand, or at our live in-person training events
Get access to our range of industry-leading courses and resources