Cyber Education & Training Updates November - December 2024
Highlights: What You Want to Know
-
New Incident Response (IR) Triage Series: It's a six-part training series that focuses on the fundamental skill development of recognizing an IR event and the steps needed to triage the incident. These courses are available for government employees and contractors across federal, state, local, tribal and territorial government, as well as educational and critical infrastructure partners.
-
CISA is thrilled to announce that Federal Cyber Defense Skilling Academy courses will be returning in FY25! While all application periods for FY24 courses are now closed, please continue to check the Skilling Academy website for updates and more information.
-
CISA has recently announced two new collaborative efforts: the CyberSkills2Work program and new micro-challenges on Try Cyber. Both efforts were designed to help individuals launch or advance cybersecurity careers. To learn more, please visit CISA’s Cybersecurity Education and Career Development Website.
-
A new course titled “Managing High Value Assets (HVAs) using the CDM Agency Dashboard” will be delivered on January 9, 2025. This course covers the basics of the High Value Asset (HVA) program and demonstrates how to manage HVA's using the CDM Agency Dashboard. Participants will learn about important HVA guidance, the HVA Management Lifecycle, and tracking capabilities within the dashboard. By using the dashboard, users can identify, track, and prioritize their mitigation activities for HVA assets. This enhanced visibility will lead to faster responses and help decision-makers assess the urgency of their actions.
|
|
|
Instructor-Led Cyber Trainings
Incident Response (IR)
This free training series includes 100-level webinars for a general audience which are cybersecurity topic overviews that provide core guidance and best practices to make your network more resilient to attacks. It also includes 200-level Cyber Range Training courses for government employees and contractors across federal, state, local, tribal, and territorial government, educational partners, and critical infrastructure partners. These Cyber Range Trainings provide guided step-action labs to learn and practice investigation, remediation, and incident response skills.
IR Training Events
|
Date
|
Course Code
|
Registration Opens
|
Course
|
Hours
|
11/04/2024
|
IR118
|
10/04/2024
|
Incident Response Triage Series: Mitigation
|
1 |
11/06/2024
|
IR218
|
10/04/2024
|
Incident Response Triage Series Lab Class: Mitigation
|
4 |
11/06/2024
|
IR211
|
10/07/2024
|
Using the CISA Incident Response Playbook at Your Organization
|
4 |
11/07/2024
|
IR218
|
10/04/2024
|
Incident Response Triage Series Lab Class: Mitigation
|
4 |
11/07/2024
|
IR211
|
10/07/2024
|
Using the CISA Incident Response Playbook at Your Organization
|
4 |
11/08/2024
|
IR218
|
10/04/2024
|
Incident Response Triage Series Lab Class: Mitigation
|
4 |
11/13/2024
|
IR113
|
10/14/2024
|
Implementing SaaS Security Guidelines
|
1 |
11/21/2024
|
IR210
|
10/21/2024
|
Introduction to Log Management Cyber Range Training
|
4 |
12/05/2024
|
IR204
|
11/05/2024
|
Defending Internet Accessible Systems Cyber Range Training
|
4
|
12/09/2024
|
IR119
|
11/11/2024
|
Incident Response Triage: Integrating Cyber Threat Intelligence
|
1
|
12/10/2024
|
IR219
|
11/11/2024
|
Incident Response Triage: Integrating Cyber Threat Intelligence Cyber Range Training
|
4
|
12/11/2024
|
IR219
|
11/11/2024
|
Incident Response Triage: Integrating Cyber Threat Intelligence Cyber Range Training
|
4
|
12/13/2024
|
IR109
|
11/13/2024
|
Defending Against Ransomware Attacks
|
1
|
12/17/2024
|
IR213
|
11/18/2024
|
Implementing SaaS Security Guidelines Cyber Range Training
|
4
|
To learn more or register visit: IR Training|CISA
Continuous Diagnostics and Mitigation (CDM)
We offer instructor led, hands-on CDM Dashboard training for U.S. Executive Branch employees and contractors in our virtual cyber range training environment. These courses are intended for those at agencies participating in the CDM program who monitor, manage and/or oversee controls on their information systems (e.g., ISSOs, CDM POCs, ISSMs and those who report metrics and measures).
The CDM training goal is to provide the learner the basics of CDM and using the CDM Dashboard capabilities to help mitigate agency threats. We will also provide numerous CDM resources and external references.
All courses will be taught utilizing the latest version of the CDM Dashboard (ES-6.1) within a cyber virtual training range (CVLE). The course content has been updated and will focus on the current version ES-6 of the CDM Dashboard, including the latest dashboard content pack, version 6.1. The latest CDM Dashboard capabilities will be discussed, including FISMA Automation. The current CDM courses fall into the 100 level (Introductory) and 200 level (Intermediate) level offerings.
CDM Training Events
|
Date
|
Course Code
|
Registration Opens
|
Course
|
Hours
|
11/14/2024
|
CDM202
|
10/14/2024
|
Configuration Settings Using the CDM Agency Dashboard
|
4
|
11/19/2024
|
CDM203
|
10/21/2024
|
CDM Agency Dashboard Role-Based Training – System Security Analyst
|
4
|
12/03/2024
|
CDM210
|
11/04/2024
|
Introduction to CDM Enabled Threat Hunting (CETH) Using the CDM Agency Dashboard
|
4
|
12/10/2024-12/11/2024
|
CDM222
|
11/12/2024
|
Using the CDM Agency Dashboard to Advance Cyber Defense
|
12
|
12/19/2024
|
CDM220
|
11/19/2024
|
CDM and Federal Mandates – How to Use the CDM Dashboard to Enable Automated BOD 22-01 Reporting
|
4
|
To learn more or register visit: CDM Training|CISA
Industrial Control Systems (ICS)
We offer free, virtual ICS trainings geared toward Critical Infrastructure owners and operators. The trainings are designed to reduce cybersecurity risks to critical infrastructure and encourage cooperation between CISA and the private sector. Trainings vary in length and run from 8:00 a.m. – 5:00 p.m. MST (10:00 a.m. – 7:00 p.m. EST). All trainings are conducted through Online Training or CISA Virtual Learning Portal (VLP), with the exception of the three- or four-day, in-person courses at Idaho National Labs (INL) in Idaho Falls, ID.
ICS Training Events
|
Date
|
Course Code
|
Course
|
Location
|
11/04/2024-11/29/2024
|
401
|
Industrial Control Systems Cybersecurity Evaluation (401)
|
Scheduled Online Training
|
11/04/2024-11/29/2024
|
300
|
Industrial Control Systems Cybersecurity (300)
|
Scheduled Online Training
|
11/12/2024-11/14/2024
|
401
|
Industrial Control Systems Cybersecurity Evaluation (401)
|
IN-PERSON TRAINING –
3 Days
|
11/18/2024-11/21/2024
|
301
|
Industrial Control Systems Cybersecurity & RED-BLUE Exercise (301)
|
IN-PERSON TRAINING –
4 Days
|
12/02/2024-12/31/2024
|
401
|
Industrial Control Systems Cybersecurity Evaluation (401)
|
Scheduled Online Training
|
12/02/2024-12/31/2024
|
300
|
Industrial Control Systems Cybersecurity (300)
|
Scheduled Online Training
|
12/02/2024-12/05/2024
|
301
|
Industrial Control Systems Cybersecurity & RED-BLUE Exercise (301)
|
IN-PERSON TRAINING –
4 Days
|
On Demand
|
100W
|
Operational Security (OPSEC) for Control Systems
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-1
|
Differences in Deployments of ICS
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-2
|
Influence of Common IT Components on ICS
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-3
|
Common ICS Components
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-4
|
Cybersecurity within IT & ICS Domains
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-5
|
Cybersecurity Risk
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-6
|
Current Trends (Threat)
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-7
|
Current Trends (Vulnerabilities)
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-8
|
Determining the Impacts of a Cybersecurity Incident
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-9
|
Attack Methodologies in IT & ICS
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-10
|
Mapping IT Defense-in-Depth Security Solutions to ICS - Part 1
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
210W-11
|
Mapping IT Defense-in-Depth Security Solutions to ICS - Part 2
|
CISA Training Virtual Learning Portal (VLP)
|
On Demand
|
FRE2115
|
Industrial Control Systems Cybersecurity Landscape for Managers
|
CISA Training Virtual Learning Portal (VLP)
|
To learn more or sign up, visit: ICS Training Calendar|CISA
*The following virtual courses are prerequisites to attending in-person 301 and 401 trainings hosted by CISA at the Idaho National Laboratory:
-
ICS 301v: Focuses on understanding, protecting and securing ICS from cyberattacks.
-
ICS 401v: Focuses on analyzing and evaluating an ICS network to determine its defense status and what changes need to be made.
CDET Mission
|
CDET Vision
|
Address today’s cyber workforce challenges through innovative education and training opportunities.
|
Lead and influence national cyber training and education to promote and enable the cyber-ready workforce of tomorrow.
|
Contact Us: Education@cisa.dhs.gov
|