select a course
Houston, TX - October 29 - November 3, 2007
Global Information Assurance Certification
It was, overall, the most in-depth training on securing Windows I've attended!
-Matt Hurst, Madison City Schools
Security 505


(Portal Account Required)

For GIAC Certification
If you register for the full course, you may register to seek your GCWN Certification.
Online exam issued with 4-month deadline 7-10 days following conference.
Additional information:
GCWN Information
GIAC FAQ
Fee Information
SANS Cyber
Guardian Program
Click here to Learn More.
The Securing Windows course is a comprehensive curriculum for securing Windows networks. This program brings the confusing complexity of Windows security into clear focus by starting with foundational security services, such as Active Directory and Group Policy, and advancing in a logical progression to particular products or features which rely on these foundations, such as IIS and IPSec. This track provides best practices for security, hands-on exercises, extensive documentation/screenshots, a CD-ROM of security scripts, and an objective account of Windows security (neither bashing Microsoft nor toeing the party line).
This track will also prepare you for the GIAC Certified Windows Security Administrator (GCWN) certification exams, and many of the MCSE:Security exams as well.
You are encouraged to bring a Windows Server 2003 Enterprise Edition laptop or virtual machine with you, but this is not required. The instructor will demonstrate the skills discussed in the course and the manuals include numerous screenshots.
- Who Should Attend
- Anyone who manages a Windows network
- Those who want to go beyond their MCSE training
- Anyone whose IIS web server is in danger of compromise
- Anyone who is planning to deploy Active Directory, Group Policy, IPSec or a PKI
- A Sampling of Topics
- What's New In Windows Vista?
- BitLocker Drive Encryption
- User Account Control
- IPSec and the Windows Firewall
- Active Directory Design
- Delegation of Authority in AD
- Secure Dynamic DNS
- Group Policy Design
- Security Templates and SECEDIT.EXE
- PKI Installation and Management
- Encrypting File System (EFS)
- Smart Cards for EFS
- IPSec VPNs and RRAS
- RADIUS for VPNs and Wireless
- Wi-Fi Protected Access (WPA)
- Securing IIS Web Applications
- Securing WebDAV on IIS
- Windows Scripting: WMI and ADSI
I have attended many conferences/training sessions, and SANS by far has been the best. The instructors are the top in the industry, examples are from real life experiences - terrific!
-Chris Bush, Novartis Pharmaceuticals
Author Statement
Microsoft might be faulted for many things, but lack of ambition is definitely not one of them. Active Directory, PKI, Group Policy, User Account Control, BitLocker, ISA Server, VPNs, etc. all make for a completely new Windows landscape that is vastly more interesting (and complex) than the old Windows 98/NT world. You can do some incredible things with Windows now, and in Security 505 thats what were going to do. Well see how to set it all up and secure it against malicious insiders and Internet hackers. Well also talk a lot about how to automate as much of the work as possible (like with Group Policy) so that you wont have to spend endless hours each week doing repetitive tasks. Im constantly updating the courseware and adding new tools to the CD-ROM so that we can cover everything important in just six days. I promise you, those six days will go by fast!
- Jason Fossen
Jason Fossen on YouTube — Securing Windows