ICS/SCADA Security Essentials
- Contents | Schedule | Additional Info
- Venue Information
- Instructor: Dr. Eric Cole
- $2,088
- GICSP Certification
- 30 CPE/CMU
- Laptop Required
This Simulcast class will be broadcast LIVE from the Washington, DC area. To attend the live event in person, click here.
SANS has joined forces with industry leaders to equip security professionals and control system engineers with the cybersecurity skills they need to defend national critical infrastructure. ICS410: ICS/SCADA Security Essentials provides a foundational set of standardized skills and knowledge for industrial cybersecurity professionals. The course is designed to ensure that the workforce involved in supporting and defending industrial control systems is trained to keep the operational environment safe, secure, and resilient against current and emerging cyber threats.
The course will provide you with:
- An understanding of industrial control system components, purposes, deployments, significant drivers, and constraints.
- Hands-on lab learning experiences to control system attack surfaces, methods, and tools
- Control system approaches to system and network defense architectures and techniques
- Incident-response skills in a control system environment
- Governance models and resources for industrial cybersecurity professionals.
When examining the greatest risks and needs in critical infrastructure sectors, the course authors looked carefully at the core security principles necessary for the range of tasks involved in supporting control systems on a daily basis. While other courses are available for higher-level security practitioners who need to develop specific skills such as industrial control system penetration testing, vulnerability analysis, malware analysis, forensics, secure coding, and red team training, most of these courses do not focus on the people who operate, manage, design, implement, monitor, and integrate critical infrastructure production control systems.
With the dynamic nature of industrial control systems, many engineers do not fully understand the features and risks of many devices. In addition, IT support personnel who provide the communications paths and network defenses do not always grasp the systems operational drivers and constraints. This course is designed to help traditional IT personnel fully understand the design principles underlying control systems and how to support those systems in a manner that ensures availability and integrity. In parallel, the course addresses the need for control system engineers and operators to better understand the important role they play in cybersecurity. This starts by ensuring that a control system is designed and engineered with cybersecurity built into it, and that cybersecurity has the same level of focus as system reliability throughout the system lifecycle.
When these different groups of professionals complete this course, they will have developed an appreciation, understanding, and common language that will enable them to work together to secure their industrial control system environments. The course will help develop cyber-secure-aware engineering practices and real-time control system IT /OT support carried out by professionals who understand the physical effects of actions in the cyber world.
| Course Contents | Instructors | Schedule |
|---|---|---|
| ICS410.1: ICS Overview | Dr. Eric Cole |
Mon Oct 21st, 2013 10:00 AM - 1:15 PM ET 2:30 PM - 6:00 PM ET |
|
CPE/CMU Credits: 6 Topics
|
||
| ICS410.2: ICS Attack Surface | Dr. Eric Cole |
Tue Oct 22nd, 2013 10:00 AM - 1:15 PM ET 2:30 PM - 6:00 PM ET |
|
CPE/CMU Credits: 6 Topics
|
||
| ICS410.3: Defending ICS Servers and Workstations | Dr. Eric Cole |
Wed Oct 23rd, 2013 10:00 AM - 1:15 PM ET 2:30 PM - 6:00 PM ET |
|
CPE/CMU Credits: 6 Topics
|
||
| ICS410.4: Defending ICS Networks and Devices | Dr. Eric Cole |
Thu Oct 24th, 2013 10:00 AM - 1:15 PM ET 2:30 PM - 6:00 PM ET |
|
CPE/CMU Credits: 6 Topics
|
||
| ICS410.5: ICS Governance and Resources | Dr. Eric Cole |
Fri Oct 25th, 2013 10:00 AM - 1:15 PM ET 2:30 PM - 6:00 PM ET |
|
CPE/CMU Credits: 6 Topics
|
||
| Additional Information | ||
| Laptop Required | ||
|
The ICS 410 Industrial Control System Security Essentials course consists of instruction and hands-on sessions. The lab sessions are designed to allow students to utilize the knowledge gained throughout the course in an instructor-led environment. Students will have the opportunity to install, configure, and use the tools and techniques that they have learned. NOTE: Do not bring a regular production laptop for this class! When installing software, there is always a chance of breaking something else on the system. Students should assume that all data could be lost. NOTE: It is critical that students have administrator access to the operating system and all security software installed. Changes may need to be made to personal firewalls and other host-based software in order for the labs to work.
If you have additional questions about the laptop specifications, please contact laptop_prep@sans.org. |
||
| Who Should Attend | ||
The course is designed for the range of individuals who work in, interact with, or can affect industrial control system environments, including asset owners, vendors, integrators, and other third parties. These personnel primarily come from four domains:
|
||
| Prerequisites | ||
Course participants need to have a basic understanding of networking and system administration, TCP/IP, networking design/architecture, vulnerability assessment, and risk methodologies. ICS410 covers many of the core areas of security and assumes a basic understanding of technology, networks, and security. For those who are brand new to the field and have no background knowledge, SEC301: Intro to Information Security would be the recommended starting point. While SEC301 is not a prerequisite, it provides introductory knowledge that will help maximize a students experience with ICS410. |
||
| What You Will Receive | ||
|
||
| You Will Be Able To | ||
|
||
| Hands-on Training | ||
|
||
| What To Take Next? | ||
Courses that lead in to ICS410:
Courses that are prerequisites:
Courses that are good follow-ups:
|
||
| Price | Options |
|---|---|
| $2,088 | |
|
|
Venue Information
- World Wide Web
- Secure Site Requires Login ID & Password
Webcast Classroom Training,
