Cyber Security with AI Course Syllabus
A comprehensive, practitioner-designed curriculum organized sequentially across 6 modules. Build progressive mastery from computer networking and Linux CLI basics to ethical security testing and AI-augmented threat defense.
6 Core Learning Modules
A progressive, hands-on path taking you from ground-level systems fundamentals to applied defensive analysis and AI security operations.
Computer Networking & Deep Packet Inspection
Master TCP/IP network architecture, IP addressing and subnetting, protocol handshakes, and command-line network diagnostic utilities. Learn to capture and inspect live network packets in Wireshark to understand normal versus anomalous communication flows.
- ✓Capturing and dissecting unencrypted HTTP and DNS queries
- ✓Tracing a TCP connection reset sequence and latency bottlenecks
- ✓Configuring subnet boundaries in a simulated enterprise network
- OSI 7-Layer & TCP/IP 4-Layer Architectural Models
- IPv4 / IPv6 Subnetting, CIDR Notation & Default Gateways
- Protocol Mechanics: TCP 3-Way Handshake, UDP, DNS, DHCP, HTTP/HTTPS
- Packet Sniffing Fundamentals with Tcpdump & Wireshark
- Display Filters, Stream Following & Payload Inspection in Wireshark
- Network Device Roles: Switches, Routers, Firewalls & NAT
Linux Administration & Security CLI Operations
Develop fluent command-line navigation and system administration skills in Linux environments. Understand the Linux file system hierarchy, user permissions, process lifecycle, system services, and automated security auditing using bash scripts.
- ✓Hardening an open Linux server and disabling root password login
- ✓Auditing SUID binaries to discover unauthorized execution privileges
- ✓Writing an automated bash script to detect modified configuration files
- Linux File Hierarchy Standard (FHS) & Core CLI Navigation
- User, Group & File Permissions: chmod, chown & SUID/SGID Security Risks
- Process Management: ps, top, kill, systemctl & Background Jobs
- SSH Hardening: Key-Based Authentication, Bastion Hosts & Config Hardening
- System Log Auditing: /var/log, journalctl, rsyslog & Auditd
- Bash Scripting for Automated Security Checks & File Integrity Audits
Cybersecurity Fundamentals & Defense Architecture
Establish a solid grasp of core security principles, defense-in-depth methodologies, and enterprise security policies. Learn how threat actors operate, how vulnerabilities are cataloged, and how foundational controls prevent unauthorized access.
- ✓Configuring host-based firewall access control lists (ACLs)
- ✓Mapping a simulated breach scenario against the MITRE ATT&CK matrix
- ✓Deploying Sysmon with a custom configuration to log process creation
- Core Security Principles: Confidentiality, Integrity & Availability (CIA Triad)
- Threat Modeling & Cyber Kill Chain vs. MITRE ATT&CK Enterprise Matrix
- Common Vulnerabilities and Exposures (CVE) & CVSS Scoring System
- Host-Based Security: iptables, ufw & Windows Defender Firewall Rules
- Endpoint Security Architecture: Antivirus, EDR Concepts & Sysmon Logging
- Access Control Models: Role-Based (RBAC), Least Privilege & Zero Trust Basics
Ethical Hacking & Web Application Security Testing
Learn authorized vulnerability assessment and security testing methodologies. Use industry tools like Nmap and Burp Suite to audit network perimeters, discover exposed services, and evaluate web applications against the OWASP Top 10 vulnerabilities.
- ✓Conducting stealth SYN and service version scans on isolated lab targets
- ✓Exploiting SQL injection in a test application to understand parameterized mitigation
- ✓Intercepting and modifying client-side HTTP requests using Burp Suite
- Ethical Hacking Rules of Engagement, Scope Definition & Authorization
- Network Reconnaissance: Passive OSINT & Active Scanning with Nmap
- Service Fingerprinting & Vulnerability Scanning Techniques
- Web Application Architecture & HTTP Request/Response Inspection
- OWASP Top 10 Vulnerabilities: Injection (SQLi), Broken Auth, XSS, SSRF
- Burp Suite Community: Intercept Proxy, Repeater & Request Tampering
Security Operations Center (SOC) & Incident Triage
Understand how enterprise Security Operations Centers monitor, detect, and respond to threats in real time. Work with Security Information and Event Management (SIEM) concepts, write log queries, correlate multi-source events, and execute structured incident triage.
- ✓Correlating Windows Event 4688 logs with Sysmon to trace a PowerShell exploit
- ✓Investigating a simulated brute-force attack in a SIEM dashboard
- ✓Authoring a complete Level 1 incident containment and remediation report
- SOC Roles, Tiers (L1/L2/L3), Metrics (MTTD, MTTR) & Operational Workflows
- SIEM Architecture Concepts: Log Collection, Ingestion & Normalization
- Log Query Languages: Searching & Filtering Telemetry in Splunk / Elastic
- Windows Event Logs: Analyzing Event IDs 4624 (Logon), 4625 (Failed Logon), 4688 (Process)
- Incident Triage Playbooks: Phishing Analysis, Malware Infection & Lateral Movement
- Incident Documentation: Writing Professional Technical Incident Reports
AI-Assisted Security Operations & Threat Defense
Discover how modern cybersecurity analysts utilize artificial intelligence tools to accelerate daily operations while defending emerging AI systems against novel threats. Learn prompt engineering for security log queries, threat intelligence summarization, and prompt injection defense.
- ✓Building an automated script using AI prompts to summarize 5,000+ firewall logs
- ✓Testing an enterprise AI assistant against indirect prompt injection in a safe sandbox
- ✓Evaluating semantic guardrails to prevent system prompt leakage
- Role of AI in Modern Cybersecurity: Augmenting Analysts vs. Hype
- Prompt Engineering for SecOps: Formulating Queries for Log Summarization
- Automated Threat Intelligence Triage: Correlating Indicators of Compromise (IOCs)
- AI-Specific Vulnerabilities: Direct & Indirect Prompt Injection Attacks
- Data Poisoning & Adversarial Evasion Basics in Machine Learning Systems
- Designing AI Guardrails & Input Validation for Enterprise LLM Applications
Curriculum Mapped to Recognized Security Frameworks
Our course topics are engineered to reflect the defensive methodologies and threat taxonomies used in modern security operations centers.
MITRE ATT&CK® Enterprise Matrix
Tactics and techniques mapped across Initial Access, Execution, Persistence, Privilege Escalation, Defense Evasion, and Exfiltration.
OWASP Top 10 Web Application Risks
Industry standard awareness covering Broken Access Control, Cryptographic Failures, Injection, Insecure Design, and Security Misconfigurations.
NIST Cybersecurity Framework (CSF)
Core organizational defense functions: Identify, Protect, Detect, Respond, and Recover for modern digital environments.
Review the Modules in a Free Technical Demo
Have questions about specific topics, batch timings, or whether your background is suitable for this curriculum? Attend a free 60-minute interactive session with an active practitioner.
Reserve Your Syllabus Demo Seat
Select your preferred mode: Live Online across India or Sector 14 Gurugram Classroom.