Course Catalog
CompTIA CySA+ Certification Prep Course - Cybersecurity Analyst
Code: CySA+
Duration: 5 Day
$3095 USD

OVERVIEW

Gain the tools and tactics to manage cybersecurity risks, identify various types of common threats, evaluate an organization's security, collect and analyze cybersecurity intelligence, and handle incidents as they occur. This is a comprehensive approach to security aimed toward those on the front lines of defense.

This course is designed to assist students in preparing for the CompTIA CySA+ - Cybersecurity Analyst+ (CS0-004) certification exam.

CompTIA’s CySA+ is a global vendor-neutral certification covering intermediate-level knowledge and skills required by information security analyst job roles. It helps identify a cybersecurity professional’s ability to proactively defend an organization using secure monitoring, threat identification, incident response and teamwork. The CompTIA CySA+ CS0-004 certification exam ensures the candidate has the knowledge and skills required to:

  • Identify and investigate suspicious activity across networks, endpoints, and cloud environments to uncover potential security threats.
  • Identify, prioritize, and mitigate vulnerabilities using risk-based vulnerability management approaches.
  • Investigate and respond to cybersecurity incidents using structured incident response processes and real-world techniques.
  • Use modern security operations concepts, including threat intelligence, threat hunting, automation, and AI-assisted security operations.
DELIVERY FORMAT

This course is available in the following formats:

Virtual Classroom

Duration: 5 Day
Classroom

Duration: 5 Day

CLASS SCHEDULE

Delivery Format: Virtual Classroom
Date: Aug 17 2026 - Aug 21 2026 | 08:30 - 16:30 EDT
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Sep 14 2026 - Sep 18 2026 | 08:30 - 16:30 EDT
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Oct 05 2026 - Oct 09 2026 | 08:30 - 16:30 EDT
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Oct 26 2026 - Oct 30 2026 | 11:30 - 20:30 EDT
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Nov 16 2026 - Nov 20 2026 | 08:30 - 16:30 EST
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Dec 07 2026 - Dec 11 2026 | 08:30 - 16:30 EST
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Jan 11 2027 - Jan 15 2027 | 11:30 - 19:30 EST
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Feb 01 2027 - Feb 05 2027 | 08:30 - 16:30 EST
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Feb 22 2027 - Feb 26 2027 | 11:30 - 19:30 EST
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Mar 15 2027 - Mar 19 2027 | 11:30 - 19:30 EDT
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Apr 05 2027 - Apr 09 2027 | 08:30 - 16:30 EDT
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: Apr 19 2027 - Apr 23 2027 | 11:30 - 19:30 EDT
Location: Online
Course Length: 5 Day

$ 3095

Delivery Format: Virtual Classroom
Date: May 17 2027 - May 21 2027 | 11:30 - 19:30 EDT
Location: Online
Course Length: 5 Day

$ 3095

GOALS
  • Identify and investigate suspicious activity across networks, endpoints, and cloud environments to uncover potential security threats.
  • Monitor and analyze data using industry-standard tools such as SIEM and EDR platforms.
  • Identify, prioritize, and mitigate vulnerabilities using risk-based approaches.
  • Investigate and respond to security incidents using structured processes and real-world techniques.
  • Clearly communicate security findings and risks to stakeholders through reports and dashboards.
  • Apply security practices across cloud and hybrid environments while supporting efficient and effective operations.
OUTLINE

  • Identifying Security Operations Fundamentals.
  • Applying Risk Management Strategies.
  • Managing System Security and Configurations.
  • Comparing System Architectures.
  • Applying Access Management.
  • Threat Intelligence and Threat Hunting.
  • Assessing Network Vulnerabilities.
  • Managing Incident Response and Communication.
  • Executing Incident Response Plans.
  • Analyzing Malicious Activity.
  • Automating Data Analysis.
  • Improving Processes with Automation.
  • Assessing Application Vulnerabilities.
  • Securing Applications.
  • Identifying Security Operations Fundamentals.
  • Applying Risk Management Strategies.
  • Managing System Security and Configurations.
  • Comparing System Architectures.
  • Applying Access Management.
  • Threat Intelligence and Threat Hunting.
  • Assessing Network Vulnerabilities.
  • Managing Incident Response and Communication.
  • Executing Incident Response Plans.
  • Analyzing Malicious Activity.
  • Automating Data Analysis.
  • Improving Processes with Automation.
  • Assessing Application Vulnerabilities.
  • Securing Applications.
LABS

  • Live Lab: Operate A SOC Workstation.
  • Applied Live Lab: Assess Attack Surface And System Hardening.
  • Live Lab: Deploy A CI/CD Cloud Application.
  • Live Lab: Deploy A CI/CD Container Application.
  • Live Lab: Configure Federated Authentication And PAM.
  • Applied Live Lab: Apply Data Protection And Endpoint Security.
  • Live Lab: Configure A Honeypot.
  • Live Lab: Implement Threat Intelligence.
  • Applied Live Lab: Analyze Vulnerability Scans.
  • Live Lab: Configure Centralized Logging.
  • Live Lab: Use A Playbook For Incident Response.
  • Live Lab: Record Case Evidence.
  • Live Lab: Create Log Analysis Queries.
  • Live Lab: Configure A Sandbox.
  • Applied Live Lab: Analyze Anomalous Host Activity.
  • Network Indicators of Compromise.
  • Applied Live Lab: Analyze Anomalous Network Activity.
  • Application and Web-based Indicators.
  • Live Lab: Analyze Phishing Emails.
  • Challenge Live Lab: Resolve Incident Response Cases.
  • Live Lab: Implement An Automation Solution.
  • Live Lab: Perform Rule Tuning.
  • Live Lab: Add AI To An Incident Response Playbook.
  • Applied Live Lab: Analyze Cloud Infrastructure Vulnerabilities.
  • Applied Live Lab: Analyze Web Service Vulnerabilities.
  • Live Lab: Integrate Security Scanning In A CI/CD Pipeline.
  • Challenge Live Lab: Resolve Cloud And App Vulnerabilities.
  • Live Lab: Operate A SOC Workstation.
  • Applied Live Lab: Assess Attack Surface And System Hardening.
  • Live Lab: Deploy A CI/CD Cloud Application.
  • Live Lab: Deploy A CI/CD Container Application.
  • Live Lab: Configure Federated Authentication And PAM.
  • Applied Live Lab: Apply Data Protection And Endpoint Security.
  • Live Lab: Configure A Honeypot.
  • Live Lab: Implement Threat Intelligence.
  • Applied Live Lab: Analyze Vulnerability Scans.
  • Live Lab: Configure Centralized Logging.
  • Live Lab: Use A Playbook For Incident Response.
  • Live Lab: Record Case Evidence.
  • Live Lab: Create Log Analysis Queries.
  • Live Lab: Configure A Sandbox.
  • Applied Live Lab: Analyze Anomalous Host Activity.
  • Network Indicators of Compromise.
  • Applied Live Lab: Analyze Anomalous Network Activity.
  • Application and Web-based Indicators.
  • Live Lab: Analyze Phishing Emails.
  • Challenge Live Lab: Resolve Incident Response Cases.
  • Live Lab: Implement An Automation Solution.
  • Live Lab: Perform Rule Tuning.
  • Live Lab: Add AI To An Incident Response Playbook.
  • Applied Live Lab: Analyze Cloud Infrastructure Vulnerabilities.
  • Applied Live Lab: Analyze Web Service Vulnerabilities.
  • Live Lab: Integrate Security Scanning In A CI/CD Pipeline.
  • Challenge Live Lab: Resolve Cloud And App Vulnerabilities.
WHO SHOULD ATTEND
  • IT Security Analyst.
  • Security Operations Center (SOC) Analyst.
  • Vulnerability Analyst.
  • Cybersecurity Specialist.
  • Threat Intelligence Analyst.
  • Security Engineer.
PREREQUISITES

To ensure your success in this course, you should meet the following requirements:

  • At least two years (recommended) of experience in computer network security technology or a related field.
  • The ability to recognize information security vulnerabilities and threats in the context of risk management.
  • Foundation-level operational skills with some of the common operating systems for computing environments.
  • Foundational knowledge of the concepts and operational framework of common assurance safeguards in computing environments. Safeguards include, but are not limited to, basic authentication and authorization, resource permissions, and anti-malware mechanisms.
  • Foundation-level understanding of some of the common concepts for network environments, such as routing and switching.
  • Foundational knowledge of major TCP/IP networking protocols including, but not limited to, TCP, IP, UDP, DNS, HTTP, ARP, ICMP, and DHCP.
  • Foundational knowledge of the concepts and operational framework of common assurance safeguards in network environments. Safeguards include, but are not limited to, firewalls, intrusion prevention systems, and VPNs.