Skip to content
Back to catalog
Expert3 to 5 days / 20+ guided hourspublished

Network Security: Expert

Harden, monitor, and recover a segmented environment during controlled failure and attack simulations.

Audience

  • Self-paced technical learners
  • Instructor-led cohorts
  • Enterprise teams preparing staff for hands-on operations

Prerequisites

  • Intermediate course or equivalent production experience
  • Comfort with troubleshooting and design tradeoffs

Outcomes

  • Provision an isolated network security lab from template metadata.
  • Use snapshots, rollback, validation checks, and teardown safely.
  • Explain how pfSense, Wazuh, Linux fit into an enterprise training environment.
  • Produce evidence that an instructor or admin can review.
Course plan

Modules and labs

Each module maps to provisioned lab work, validation evidence, reset/rollback policy, and instructor visibility.

Module 1

Production architecture

Network Security Expert lab 1
Module 2

Failure simulation and hardening

Network Security Expert lab 2
Module 3

Automation, DR, and capstone

Network Security Expert capstone
Required templates

pfSense or equivalent firewall/router

defined

pfSense CE media or equivalent open firewall image

TODO: Confirm licensing and operational preference for pfSense CE versus open Linux router image.

Kali/security workstation

defined

Kali Linux official VM image or Ubuntu security workstation build

TODO: Publish only for safe internal blue-team exercises; keep intentionally vulnerable targets isolated.

SIEM/logging node

defined

Ubuntu 24.04 LTS plus Wazuh stack

Ubuntu Server 24.04

available

Ubuntu 24.04 LTS cloud image

Validation checks

Firewall rules active

Allowed path works and denied east-west path is blocked.

SIEM receiving logs

A generated test event appears in the tenant security index.

Routing path works

Traffic follows the intended lab path and reaches the expected service.