SEC504: Hacker Tools, Techniques, and Incident Handling

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usConnect, learn, and share with other cybersecurity professionals
Engage, challenge, and network with fellow CISOs in this exclusive community of security leaders
Become a member for instant access to our free resources.
Sign UpMission-focused cybersecurity training for government, defense, and education
Explore industry-specific programming and customized training solutions
Sponsor a SANS event or research paper
We're here to help.
Contact UsApply your credits to renew your certifications
Attend a live, instructor-led class at a location near you or remotely, or train on your time over 4 months
Course material is geared for cyber security professionals with hands-on experience
Accelerate your CISSP® certification journey with an intensive review course designed by leading cybersecurity practitioners to prepare you for the current 2024 version of the exam.
This course really pulled a lot together for me and it's been hugely valuable. I know parts of this course are going to impact my approach to my work from the first day back.
LDR414 training provides security professionals with a focused, comprehensive preparation for the 2024 CISSP® examination. As a leading CISSP training resource, the course delivers a structured breakdown of the eight security domains established by (ISC)², addressing the core knowledge requirements for certification. Students develop critical analytical skills to interpret and respond to exam questions effectively while gaining practical understanding of information security principles. The curriculum examines how security domains interconnect within enterprise environments, moving beyond theoretical concepts to operational implementation. This targeted approach equips participants with both the technical knowledge needed for certification success and the professional competencies required in high-level security positions. Organizations benefit from staff who can apply standardized security frameworks across complex infrastructures. This course also serves as preparation for the GISP certification (GIAC Information Security Professional), which maps closely to CISSP® objectives and validates foundational cybersecurity knowledge.
Eric Conrad, a SANS Faculty Fellow and course author, has 28 years of information security experience. Eric is the CTO of Backshore Communications and his specialties include Intrusion Detection, Threat Hunting, and Penetration Testing.
Read more about Eric ConradAs a SANS Fellow and Principal Consultant at Context Security, Seth’s work bridges traditional operations with next-gen AI security practices. His pioneering threat detection strategies have shaped global blue team standards.
Read more about Seth MisenarExplore the course syllabus below to view the full range of topics covered in LDR414: SANS Training Program for CISSP® Certification.
In this first section, LDR414 introduces the specific requirements needed to obtain CISSP® certification. The 2024 exam update will be discussed in detail. We will cover the general security principles needed to understand the 8 domains of knowledge, with specific examples for each domain.
This section covers data classification across sectors, ownership roles, and secure data retention and destruction. It also introduces key topics from Security Engineering, including Data Loss Prevention (DLP), Cloud Access Security Brokers (CASB), microservices, containerization, serverless computing, and High-Performance Computing (HPC).
This section covers core cryptographic concepts and physical security, including new topics like SASE and quantum cryptography. It then shifts to Communication and Network Security, focusing on protocols, devices, and emerging technologies such as VXLAN, SD-WAN, and NFV.
This section focuses on secure methods of identification, authentication, and authorization. It highlights modern approaches like multi-factor authentication, federated identity, and third-party services such as SAML, OIDC, and OAuth. The section also addresses credential management and access control models like RBAC and ABAC.
This section covers Domain 6 (Security Assessment) and Domain 7 (Security Operations), focusing on evaluating and maintaining security controls. It includes testing strategies, vulnerability assessments, monitoring, and incident response. The section also explores advanced topics like AI-driven tools, cloud security, and disaster recovery planning.
This section covers Domain 8 (Software Development Security), focusing on building security into the software development lifecycle. We review traditional and modern development methodologies, secure coding practices, and emerging topics like DevSecOps, IAST, and CI/CD. We also address vulnerability management and software security testing techniques.
Responsible for accepting system risk on behalf of the organization, ensuring acceptable security levels for mission, reputation, and operations.
Explore learning pathAdd a GIAC certification attempt and receive free two practice tests. View pricing in the info icons below.
When purchasing a live instructor-led class, add an additional 4 months of online access after your course. View pricing in the info icons below.
This course gave me high confidence in my ability to pass the CISSP on the first try.
Excellent preparation to pass the CISSP.
I like the detailed information provided. Easy to digest.
Get feedback from the world’s best cybersecurity experts and instructors
Choose how you want to learn - online, on demand, or at our live in-person training events
Get access to our range of industry-leading courses and resources