CompTIA Security+ Training

Fast, Effective, and Convenient IT Security Training
So, you want to be Security+™ certified? Well, we can help simplify the process by providing you with the right tools, and a personal touch. While the immediate goal is clearly passing the long, paper-based, multiple choice exam, we can dramatically expand your security knowledge as you prepare for the Security+™ exam and certification.
Register for Security+ Training Now!



One Year Guarantee

Money Back Satisfaction Guarantee

Only the best program in the industry can offer 100% satisfaction guarantee. We stand behind our product 100%.Call us at 1-800-473-5181 to learn more.

CompTIA Security+ Course PackOur comprehensive training package includes all the resources you will need to master the CompTIA Security+ material and ace the exam. All learning styles are facilitated.

Two Types of Training

Online Training
Covers one domain per week for 5 weeks with live 2 hour sessions held on Tuesday and Thursday.
CompTIA Security+ Boot Camp
A four-day, all-inclusive course located in cities across the U.S. and Canada.



What's Included

  • Access to our On-line Live Security+™ certification training sessions. 2 Hour Session held Tuesdays at 9:30am Eastern using GoToMeeting's Training Center as the platform.
  • Review sessions on each domain
  • 2 Hour review session held Thursdays at 9:30am Eastern.
  • IP3 300+ page workbook
    • Developed by IT security professionals for security professionals with continuous content updates. Provides a comprehensive review of the 5 domains.
  • Transcender Practice Tests & Flashcards
    • Tests for each domain to help prepare you for the Security+™ certification test. Transcender practice exams are known as the most comprehensive and realistic available.
  • Security+™ Guide to Network Security Fundamentals
    • One of the industry's best books on Security+™ exam preparation. This authoritative reference offers complete coverage of all material on the Security+™ exam
  • Security Tools CD
  • Industry's Only Satisfaction / Money Back Guarantee
  • Available - 120GB Apple iPod Classic & Downloadable podcasts
  • Podcasts of each session available for download and viewing on your desktop. The iPod Classic comes preloaded with studio quality podcasts.

Get your Security+™ certification anytime, anywhere, anyway!

Let IP3, Inc. take your IT career one step further and help you to become Security+™ certified with our customizable training sessions. We make it easier than ever because we have engineered a solution which allows you to receive the most comprehensive preparation for the exam while still working with your schedule and not busting your educational budget. Our programs are a step above the rest because we cover every angle with our training. No matter what your time constraints, budget restrictions, or learning style IP3 has a solution and a choice for you. Reaching your goal doesn’t mean you have to take the same path as everyone else. At IP3, Inc. ALL paths lead to the same goal-----Your Security+™ certification!

IP3’s instructor-led and interactive online training program provides comprehensive and in-depth self-study materials and online technical support that cover the 5 domains of the Security+™ curriculum.  Each domain is broken down into a live 2 hour session held on Tuesdays with a follow-up review session every Thursday. We use a WebEx platform to allow for viewing, and VoIP audio and optional phone conferencing, and instant messaging. You are not just listening to the lecture you are participating in it. Through this approach we maximize human contact and interaction between not only you and your instructor but your peers as well. You will be able to see and hear your peer's questions, which will only benefit your learning experience, and be able to ask your own as soon as you have them.

If you happen to miss an online session, that's no problem. You can just access our archive site and download the full session to your desktop. Our online program gives you the option of receiving a 120GB Apple iPod with video capabilities, or an 8 GB iPod Touch, preloaded with all 5 domains to take your learning one step further. This option allows to study when it fits your schedule. Whether you are catching up on a missed live class or reviewing before your exam this educational tool will take your training to the next level and give you the flexibility and convenience you have been waiting for in a training program. Take our program with you when you are flying, or at lunch, or on a long car ride. It really allows you to learn at anytime, anywhere!

During the follow-up review session we cover the practice test on each domain that you will receive, as well as answer any questions you may have regarding the material. These practice tests are the key to passing your exam. Our certified and welled trained instructors of the course will go through the practice tests to teach you how to shuffle your way through the answers to find the correct one. No matter the difficulty, they will teach you how to apply your knowledge of the subject matter to give you the confidence in the answer that you choose. Everyone knows practice makes perfect and by thoroughly going through the practice tests you will become comfortable with the exam format and have the self-assurance to make it through the exam.

You will also be able to use your 300+ page workbook designed by IT professionals and the Security+™ Guide to Network Security Fundamentals” Second Edition by Mark Ciampa to follow along with the domains and to prepare for the upcoming session and review afterwards.

IP3’s training program has continuing enrollments; which means you can start when it is convenient for you and your budget. Each domain is independent; so you can jump in at anytime and just wrap around into the next session for an entire year. They are not building blocks like you would see in a math or programming course. As long as you get in the 5 domains you will receive all the information everyone else does. It is what makes us the most flexible program around.

No other Security+™ training compares in price and the amount of supplemental material you will receive!

Security+ Exam Requirements

Number of Exam Parts
One
Number of Questions
100
Exam Format
Conventional, linear format
Exam Duration
90 minutes
Recommended Experience
  • Two years experience in networking with emphasis on security.
  • Adequate training and self-study.
  • CompTIA Network+ recommended, but not required.
Minimum Passing Score
764 on a scale of 100 - 900



CompTIA Security+™ Certification Domains

% of Exam

General Security Concepts

30%

Communication Security

20%

Infrastructure Security

20%

Basics of Cryptography

15%

Operational / Organizational Security

15%

Exam Fees

Standard Registration Fee: $251

Preparing for the Exam

It is vital that you understand the big picture and concepts. Memorize facts – cram sessions can get you through the test but can not give you the knowledge you will need to truly become a security professional. The key is the ability to recognize the meaning, context and use of all relevant concepts in the 5 domains.

Where Do I Begin?

IP3 has included many learning resources in your Security+™ kit, so the logical question is “Where do I begin?”

The answer is only you can determine that. Our recommendation is that you group the course materials and domains into three categories; Domains that I feel that I know very well, domains that I know somewhat, and domains that I know little about.

After you have grouped the domains in this or a similar order, we recommend spending 50% of your time studying the middle group of domains that you know somewhat well, and 25% of your time on each of the other two groups.

Once you have grouped the domains you can use the online sessions, Thompson Course Technologies text, and IP3 workbook and reference materials to study the domains and chapters in the above mentioned fashion.

Learn your Learning Style

Different people learn in different ways. It is beneficial to determine the way in which you learn best. Are you a visual, auditory, or Tactile/Kinesthetic learner?

Visual Learners learn through seeing……

These learners need to see the teacher's body language and facial expression to fully understand the content of a lesson. They tend to prefer sitting at the front of the classroom to avoid visual obstructions. They may think in pictures and learn best from visual displays including: diagrams, illustrated text books, overhead transparencies, videos, flipcharts and hand-outs. During a lecture or classroom discussion, visual learners often prefer to take detailed notes to absorb the information.

Auditory Learners learn through hearing……

They learn best through verbal lectures, discussions, talking things through and listening to what others have to say. Auditory learners interpret the underlying meanings of speech through listening to tone of voice, pitch, speed and other nuances. Written information may have little meaning until it is heard. These learners often benefit from reading text aloud and using a tape recorder.

Tactile/Kinesthetic learners learn through touching and moving things……

Tactile/Kinesthetic persons learn best through a hands-on approach, actively exploring the physical world around them. They may find it hard to sit still for long periods and may become distracted by their need for activity and exploration.

What You'll Learn

Security+™  is a vendor-neutral globally recognized validation that a candidate has mastered security job-task skills equivalent to a networking professional with two years of practical networking experience with emphasis on security. Domains included in the Security+™  exam are: General Security Concepts, Communications Security, Infrastructure Security, Basics of Cryptography and Operational/Organizational Security.

Domain 1.0 – General Security Concepts (30%)

1.1 Recognize and be able to differentiate and explain the following access control models

  • MAC (Mandatory Access Control)
  • DAC (Discretionary Access Control)
  • RBAC (Role Based Access Control)

1.2 Recognize and be able to differentiate and explain the following methods of authentication

  • Kerberos
  • CHAP (Challenge Handshake Authentication Protocol
  • Certificates
  • Username / Password
  • Tokens
  • Multi-factor
  • Mutual
  • Biometrics

1.3 Identify non-essential services and protocols and know what actions to take to reduce the risks of those services and protocols

1.4 Recognize the following attacks and specify the appropriate actions to take to mitigate vulnerability and risk

  • DOS / DDOS (Denial of Service / Distributed Denial of Service)
  • Back Door
  • Spoofing
  • Man in the Middle
  • Replay
  • TCP/IP Hijacking
  • Weak Keys
  • Mathematical
  • Social Engineering
  • Birthday
  • Password Guessing
  • Brute Force
  • Dictionary
  • Software Exploitation

1.5 Recognize the following types of malicious code and specify the appropriate actions to take to mitigate vulnerability and risk

  • Viruses
  • Trojan Horses
  • Logic Bombs
  • Worms

1.6 Understand the concept of and know how to reduce the risks of social engineering

1.7 Understand the concept and significance of auditing, logging and system scanning

Domain 2.0 – Communication Security - 20%

2.1 Recognize and understand the administration of the following types of remote access technologies

  • 802.1x
  • VPN (Virtual Private Network)
  • RADIUS (Remote Authentication Dial-In User Service)
  • TACACS (Terminal Access Controller Access Control System)
  • L2TP / PPTP (Layer Two Tunneling Protocol / Point to Point Tunneling Protocol)
  • SSH (Secure Shell)
  • IPSEC (Internet Protocol Security)
  • Vulnerabilities

2.2 Recognize and understand the administration of the following email security concepts

  • S/MIME (Secure Multipurpose Internet Mail Extensions)
  • PGP (Pretty Good Privacy) like technologies
  • Vulnerabilities
  • SPAM
  • Hoaxes

2.3 Recognize and understand the administration of the following Internet security concepts

  • SSL / TLS (Secure Sockets Layer / Transport Layer Security)
  • HTTP/S (Hypertext Transfer Protocol / Hypertext Transfer Protocol over Secure Sockets Layer)
  • Instant Messaging
  • Vulnerabilities
  • Packet Sniffing
  • Privacy
  • Vulnerabilities
  • Java Script
  • ActiveX
  • Buffer Overflows
  • Cookies
  • Signed Applets
  • CGI (Common Gateway Interface)
  • SMTP (Simple Mail Transfer Protocol) Relay

2.4 Recognize and understand the administration of the following directory security concepts

  • SSL / TLS (Secure Sockets Layer / Transport Layer Security)
  • LDAP (Lightweight Directory Access Protocol)

2.5 Recognize and understand the administration of the following file transfer protocols and concepts

  • S/FTP (File Transfer Protocol)
  • Blind FTP (File Transfer Protocol) / Anonymous
  • File Sharing
  • Vulnerabilities
  • Packet Sniffing

8.3 Naming Conventions

2.6 Recognize and understand the administration of the following wireless technologies and concepts

  • WTLS (Wireless Transport Layer Security)
  • 802.11 and 802.11x
  • WEP / WAP (Wired Equivalent Privacy / Wireless Application Protocol)
  • Vulnerabilities
  • Site Surveys

Domain 3.0 Infrastructure Security – 20%

3.1 Understand security concerns and concepts of the following types of devices

  • Firewalls
  • Routers
  • Switches
  • Wireless
  • Modems
  • RAS (Remote Access Server)
  • Telecom / PBX (Private Branch Exchange)
  • VPN (Virtual Private Network)
  • IDS (Intrusion Detection System)
  • Network Monitoring / Diagnostics
  • Workstations
  • Servers
  • Mobile Devices

3.2 Understand the security concerns for the following types of media

  • Coaxial Cable
  • UTP / STP (Unshielded Twisted Pair / Shielded Twisted Pair)
  • Fiber Optic Cable
  • Removable Media
  • Tape
  • CD-R (Recordable Compact Disks)
  • Hard Drives
  • Diskettes
  • Flashcards
  • Smartcards

3.3 Understand the concepts behind the following kinds of Security Topologies

  • Security Zones
  • DMZ (Demilitarized Zone)
  • Intranet
  • Extranet
  • VLANs (Virtual Local Area Network)
  • NAT (Network Address Translation)
  • Tunneling

3.4 Differentiate the following types of intrusion detection, be able to explain the concepts of each type, and understand the implementation and configuration of each kind of intrusion detection system.

  • Network Based
    • Active Detection
    • Passive Detection
  • Host Based
    • Active Detection
    • Passive Detection
  • Honey Pots
  • Incident Response

3.5 Understand the following concepts of Security Baselines, be able to explain what a Security Baseline is, and understand the implementation and configuration of each kind of intrusion detection system

  • OS / NOS (Operating System / Network Operating System) Hardening
  • File System
  • Updates (Hotfixes, Service Packs, Patches)
  • Network Hardening
  • Updates (Firmware)
  • Configuration
  • Enabling and Disabling Services and Protocols
  • Access Control Lists
  • Application Hardening
  • Updates (Hotfixes, Service Packs, Patches)
  • Web Servers
  • E-mail Servers
  • FTP (File Transfer Protocol) Servers
  • DNS (Domain Name Service) Servers
  • NNTP (Network News Transfer Protocol) Servers
  • File / Print Servers
  • DHCP (Dynamic Host Configuration Protocol) Servers
  • Data Repositories
  • Directory Services
  • Databases

Domain 4.0 Basics of Cryptography – 15%

4.1 Be able to identify and explain each of the following different kinds of cryptographic algorithms

  • Hashing
  • Symmetric
  • Asymmetric

4.2 Understand how cryptography addresses the following security concepts

  • Confidentiality
  • Integrity
  • Digital Signatures
  • Authentication
  • Non-Repudiation
  • Digital Signatures
  • Access Control

4.3 Understand and be able to explain the following concepts of PKI (Public Key Infrastructure)

  • Certificates
  • Certificate Policies
  • Certificate Practice Statements
  • Revocation
  • Trust Models

4.4 Identify and be able to differentiate different cryptographic standards and protocols

4.5 Understand and be able to explain the following concepts of Key Management and Certificate Lifecycles

  • Centralized vs. Decentralized
  • Storage
  • Hardware vs. Software
  • Private Key Protection
  • Escrow

  • Expiration
  • Revocation
  • Status Checking
  • Suspension
  • Status Checking
  • Recovery
  • M-of-N Control (Of M appropriate individuals, N must be present to authorize recovery)
  • Renewal
  • Destruction
  • Key Usage
  • Multiple Key Pairs (Single, Dual)

Domain 5.0 Operational / Organizational Security – 15%

5.1 Understand the application of the following concepts of physical security

  • Access Control
  • Physical Barriers
  • Biometrics
  • Social Engineering
  • Environment
  • Wireless Cells
  • Location
  • Shielding
  • Fire Suppression

5.2 Understand the security implications of the following topics of disaster recovery

  • Backups
  • Off Site Storage
  • Secure Recovery
  • Alternate Sites
  • Disaster Recovery Plan

5.3 Understand the security implications of the following topics of business continuity

  • Utilities
  • High Availability / Fault Tolerance
  • Backups

5.4 Understand the concepts and uses of the following types of policies and procedures

  • Security Policy
  • Acceptable Use
  • Due Care
  • Privacy
  • Separation of Duties
  • Need to Know
  • Password Management
  • SLAs (Service Level Agreements)
  • Disposal / Destruction
  • HR (Human Resources) Policy
  • Termination (Adding and revoking passwords and privileges, etc.)
  • Hiring (Adding and revoking passwords and privileges, etc.)
  • Code of Ethics
  • Incident Response Policy

5.5 Explain the following concepts of privilege management

  • User / Group / Role Management
  • Single Sign-on
  • Centralized vs. Decentralized
  • Auditing (Privilege, Usage, Escalation)
  • MAC / DAC / RBAC (Mandatory Access Control / Discretionary Access Control / Role Based Access Control)

5.6 Understand the concepts of the following topics of forensics

  • Chain of Custody
  • Preservation of Evidence
  • Collection of Evidence

5.7 Understand and be able to explain the following concepts of risk identification

  • Asset Identification
  • Risk Assessment
  • Threat Identification
  • Vulnerabilities

5.8 Understand the security relevance of the education and training of end users, executives and human resources

  • Communication
  • User Awareness
  • Education
  • On-line Resources

5.9 Understand and explain the following documentation concepts

  • Standards and Guidelines
  • Systems Architecture
  • Change Documentation
  • Logs and Inventories
  • Classification
  • Notification
  • Retention / Storage
  • Destruction

What Others Are Saying...


"The class you taught help fill in some gaps and also identify others. This helped me focus in on my weaknesses enough to pass.

Thanks for all your effort."

Steven R.  CISSP Bootcamp, Oakland, CA


"I passed the exam. Thank you IP3

I wanted to tell you that i think IP3 training bootcamp and online access is the BEST ROI for any professional looking for material and information in preparation for the CISSP exam. Thank you for everything! The videos, pdfs, everything is great. I passed the exam on June 28. Good luck to everyone!"

Christian R. , Information Security Administrator, Basking Ridge, NJ


"Just wanted to drop a note.  I took the class back in November, and finally got around to taking the exam a couple weeks ago.  I found the exam to be one of the hardest tests I have taken based on the layout and wording.  The learning and preparation as well as the extra helpers, audios, study tips paid off in the long run.  I passed.

I have recommended the training to others, and will continue to do so.

Thanks again!"

David C. Taschner, Manager Engineering Systems BAE

CompTIA Security+ Online Schedule

Bill Curd, PHD, CISSP, ISSAP, PMP, ISSMP,
 CISM, CICA, CIFI, GCFA, IAM
Date      Location  
Feb 2 - Mar 4
    Online
Mar 16 - Apr 15     Online