Summer of Learn: when booking two courses before July 31, save 50% on the second one.
Bright days ahead: our UK training centre has reopened.

CREST - CPIA (Practitioner Intrusion Analyst)

Duration

Duration:

Only 4 Days

Method

Method:

Classroom / Online / Hybrid

Next date

Next date:

28/9/2020 (Monday)

Overview

On this 4-day accelerated CREST Practitioner Intrusion Analyst course, you'll become familiar with the basics of the three primary areas of cyber-attack analysis: network intrusion, host intrusion and malware reverse engineering.

You'll be CREST CPIA trained 20% faster than traditional courses. You'll be immersed in the CPIA curriculum using our unique Lecture | Lab | Review technique - helping you build and retain information faster.

Your expert instructor will guide you through how to detect and handle an attack. Then trace, acquire, investigate, analyse and re-construct the incident. Throughout your CPIA training you'll study the basics of malware analysis by understanding the key tools and techniques malware analysts use to examine malicious programs.

Achieve the CPIA certification fast as you learn:

  • Soft Skills and Incident Handling - incident chronology, record keeping, law and compliance
  • Core Technical Skills - file system permissions, network architectures and cryptography
  • Network Intrusion Analysis - unusual protocol behaviour, internal spread and privilege escalation
  • Analysing Host Intrusions - identifying suspect files, malware behaviours and anti-forensics
  • Reverse Engineering Malware - hiding techniques, binary obfuscation and processor architectures

During the course, you'll prepare for the CPIA exam. Don't pass the first time? Don't worry - we've got you covered with your Certification Guarantee.

This course is ideal for you if you're a systems administrator, incident handler, IT manager, Government or law enforcement wishing to expand your knowledge on Digital Forensics. This is also a perfect starting point for those hoping to start a career in Intrusion Analysis or Digital Forensics as this course sets a new security baseline.

The CPIA certification is a prerequisite for the CREST Registered Intrusion Analyst course.

Seven reasons why you should sit your course with Firebrand Training

  1. Two options of training. Choose between residential classroom-based, or online courses
  2. You'll be certified in just 4 days. With us, you’ll be trained in record time
  3. Our course is all-inclusive. A one-off fee covers all course materials, exams, accommodation and meals. No hidden extras
  4. Pass first time or train again for free. This is our guarantee. We’re confident you’ll pass your course first time. But if not, come back within a year and only pay for accommodation, exams and incidental costs
  5. You’ll learn more. A day with a traditional training provider generally runs from 9am – 5pm, with a nice long break for lunch. With Firebrand Training you’ll get at least 12 hours/day quality learning time, with your instructor
  6. You’ll learn faster. Chances are, you’ll have a different learning style to those around you. We combine visual, auditory and tactile styles to deliver the material in a way that ensures you will learn faster and more easily
  7. You’ll be studying with the best. We’ve been named in Training Industry’s “Top 20 IT Training Companies of the Year” every year since 2010. As well as winning many more awards, we’ve trained and certified 75,998 professionals, and we’re partners with all of the big names in the business

Benefits

Benefits of Training with Firebrand

  • Two options of training - Residential classroom-based, or online courses
  • A purpose-built training centre – get access to dedicated Pearson VUE Select facilities
  • Certification Guarantee – pass first time or train again free (just pay for accommodation, exams and incidental costs)
  • Everything you need to certify – you’ll sit your exam on the course and return home certified
  • No hidden extras – one cost covers everything you need to certify

Curriculum

Module 1: Soft Skills and Incident Handling

  • Engagement Lifecycle Management
  • Incident Chronology
  • Law & Compliance
  • Record Keeping, Interim Reporting & Final Results
  • Threat Assessment

Module 2: Core Technical Skills

  • IP Protocols
  • Network Architectures
  • Common Classes of Tools
  • OS Fingerprinting
  • Application Fingerprinting
  • Network Access Control Analysis
  • Cryptography
  • Applications of Cryptography
  • File System Permissions
  • Host Analysis Techniques
  • Understanding Common Data Formats

Module 3: Background Information Gathering & Open Source

  • Registration Records
  • Domain Name Server (DNS)
  • Open Source Investigation and Web Enumeration
  • Extraction of Document Meta Data
  • Community Knowledge

Module 4: Network Intrusion Analysis

  • Network Traffic Capture
  • Data Sources and Network Log Sources
  • Network Configuration Security Issues
  • Unusual Protocol Behaviour
  • Beaconing
  • Encryption
  • Command and Control Channels
  • Exfiltration of Data
  • Incoming Attacks
  • Reconnaissance
  • Internal Spread and Privilege Escalation
  • Web Based Attacks
  • False Positive Acknowledgement

Module 5 Analysing Host Intrusions

  • Host-Based Data Acquisition
  • Live Analysis Laboratory Set-up
  • Windows File System Essentials
  • Windows File Structures
  • Application File Structures
  • Windows Registry Essentials
  • Identifying Suspect Files
  • Storage Media
  • Memory Analysis
  • Infection Vectors
  • Malware Behaviours and Anti-Forensics
  • Rootkit Identification
  • Live Malware Analysis

Module 6: Reverse Engineering Malware

  • Windows Anti-Reverse Engineering
  • Functionality Identification
  • Windows NT Architecture
  • Windows API Development
  • Binary code structure
  • Cryptographic Techniques
  • Processor Architectures
  • Windows Executable File Formats
  • Hiding Techniques
  • Malware Reporting
  • Binary Obfuscation
  • Behavioural Analysis

Module 7: CPIA Exam Preparation & Mock Exam

  • CPIA- Examination Guidance
  • CPIA- Mock Examination

Exam Track

The CREST Practitioner Intrusion Analyst exam is a closed book exam comprising of 120 multiple choice questions.

Exam time: 2 hours

The exam fee is not included in the course price. If you wish to take the exam, we'll provide instructions on how to register with CREST.

What's Included

On this course, you'll get CREST Practitioner Intrusion Analyst courseware.

Your accelerated course includes:

  • Accommodation *
  • Meals, unlimited snacks, beverages, tea and coffee *
  • On-site exams **
  • Exam vouchers **
  • Practice tests **
  • Certification Guarantee ***
  • Courseware
  • Up-to 12 hours of instructor-led training each day
  • 24-hour lab access
  • Digital courseware **
  • * For residential training only. Doesn't apply for online courses
  • ** Some exceptions apply. Please refer to the Exam Track or speak with our experts
  • *** Pass first time or train again free (just pay for accommodation, exams and incidental costs)

Prerequisites

To attend this course, you should have a good understanding of the technical aspects of IT with at least one year's experience in network or server administration.

Unsure whether you meet the prerequisites? Don’t worry. Your training consultant will discuss your background with you to understand if this course is right for you.

Reviews

Here's the Firebrand Training review section. Since 2001 we've trained exactly 75,998 students and asked them all to review our Accelerated Learning. Currently, 96.75% have said Firebrand exceeded their expectations.

Read reviews from recent accelerated courses below or visit Firebrand Stories for written and video interviews from our alumni.


"The course was highly informative, providing a broad range of information. The instructor was extremely knowledgable and enthusiastic. This information will be extremely valuable as a Cyber Security Analyst."
M.P.. (6/8/2018 (Monday) to 9/8/2018 (Thursday))

"I believe the the course to greatly informative, content covers a large amount of the areas surrounding intrusion analysis. Information learned here will be taken forward and applied in real life scenarios in the future."
R.D.. (6/8/2018 (Monday) to 9/8/2018 (Thursday))

"Good trainers, well looked after with regards to accommodation and food."
Matt Finn, PwC. (6/8/2018 (Monday) to 9/8/2018 (Thursday))

"Fantastic instructor. Professional, enthusiastic, and knows the subject inside out. An absolute pleasure to learn from. "
J.M.J., Program Planning Professionals Ltd. (8/10/2018 (Monday) to 11/10/2018 (Thursday))

"The instructor we had was very knowledgeable and approachable and willing to delve further into detail (time permitting). Course content was very informative and additional reading material is very helpful so I know where to concentrate my efforts."
Philip Freeman, Xpertex. (8/10/2018 (Monday) to 11/10/2018 (Thursday))

Course Dates

Start

Finish

Status

Location

Book now

25/5/2020 (Monday)

28/5/2020 (Thursday)

Finished

-

 

28/9/2020 (Monday)

1/10/2020 (Thursday)

Wait list

Nationwide

 

9/11/2020 (Monday)

12/11/2020 (Thursday)

Limited availability

Nationwide

 

21/12/2020 (Monday)

24/12/2020 (Thursday)

Open

Nationwide

 

1/2/2021 (Monday)

4/2/2021 (Thursday)

Open

Nationwide

 

15/3/2021 (Monday)

18/3/2021 (Thursday)

Open

Nationwide

 

Latest Reviews from our students