Training Budget Expiring Soon? - SANS Institute

Transcription

The Most Trusted Source for Information Security Training,Cer tif ication, and ResearchTraining Budget Expiring Soon?Choose from these upcoming SANS information security courses in the DC region!LOOK INSIDE FOR LOCAL, IMMEDIATE TRAINING THAT MEETS DOD DIRECTIVESFOR GOVERNMENT AND MILITARY IT SECURITY PROFESSIONALS.Five Events:68 Courses on:Virginia BeachCYBER DEFENSEDETECTION & MONITORINGPENETRATION TESTINGINCIDENT RESPONSECYBER THREAT INTELLIGENCEETHICAL HACKINGMANAGEMENTSECURE DEVELOPMENTICS/SCADA SECURITYSIEMAug 21 - Sep 1Baltimore FallSep 25-30Tysons Corner FallMcLean, VA Oct 14-21Pen Test HackfestBethesda, MD Nov 13-20Cyber DefenseInitiativeWashington, D.C. Dec 12-19More LocationsAvailable atwww.sans.orgwww.sans.org/dcmetroBrochure DC-Area 2017.indd 17/18/17 9:18 AM

COURSE SCHEDULEVirginiaBeachwith instructor namesSEC301: Intro to Information Security GISFCYBER DEFENSE OPERATIONSBaltimoreFallTysonsCorner FallNguyenPalmgrenVirginia Beach, VA Baltimore, MDAug 21 - Sep 1Sep 25-30SEC401: Security Essentials Bootcamp Style GSECDr. ColeGalbraithSEC501: Advanced Security Essentials – Enterprise Defender GCEDHenrySEC503: Intrusion Detection In-Depth GCIADr. UllrichHenryDr.UllrichMcLean, VAOct 14-21Pen TestHackfestBethesda, MDNov 13-20PalmgrenSimonSimonSEC440: Critical Security Controls: Planning, Implementing & AuditingSEC505: Securing Windows & PowerShell Automation GCWNSEC511: Continuous Monitoring and Security Operations GMONEubanksHenryFossenConradConradSEC545: Cloud Security Architecture and OperationsShacklefordSEC546: IPv6 EssentialsDr. UllrichHenderson& MisenarSEC555: SIEM with Tactical AnalyticsMisenarSEC566: Implementing and Auditing the Critical Security Controls In-Depth GCCCSEC504: Hacker Tools, Techniques, Exploits, and Incident Handling GCIHSEC542: Web App Penetration Testing & Ethical Hacking GWAPTTaralaTaralade ION TESTINGSEC560: Network Penetration Testing & Ethical Hacking GPENGalbraithFiscusMcJunkinSEC564: Red Team Operations and Threat EmulationSkoudisHoffmanSEC573: Automating Information Security with Python GPYCMurrSEC575: Mobile Device Security and Ethical Hacking GMOBSEC580: Metasploit Kung Fu for Enterprise Pen TestingJ. WrightCrowleyFiscusFiscusSEC617: Wireless Ethical Hacking, Penetration Testing, and DefensesGAWNPesceSEC642: Advanced Web App Penetration Testing, Ethical Hacking, andExploitation Techniquesde BeaupreSearleLyneSimsSEC760: Advanced Exploit Development for Penetration TestersDIGITAL FORENSICS & IRFiscusGalbraithVestSEC567: Social Engineering for Penetration TestersSEC660: Advanced Penetration Testing, Exploit Writing, and EthicalHacking GXPNSimsFOR500: Windows Forensic Analysis (FORMERLY FOR408) GCFERob LeeFOR508: Advanced Digital Forensics, Incident Response, and ThreatHunting GCFATilburyCowenCarrollZimmermanFOR526: Memory Forensics In-DepthTilburyTorresFOR572: Advanced Network Forensics and Analysis GNFAFOR578: Cyber Threat Intelligence GCTIR. JohnsonHagenSzczepankiewiczRobert M. LeeFOR585: Advanced Smartphone ForensicsWilliamsMahalikFOR610: Reverse-Engineering Malware: Malware Analysis Tools andTechniques GREMZeltser &DygertMGT414: SANS Training Program for CISSP Certification GISPMANAGEMENTMurrHoffmanSEC550: Active Defense, Offensive Countermeasures & Cyber DeceptionSoniZeltserMillerMillerMGT415: A Practical Introduction to Cyber Security Risk ManagementTaralaMGT433: Securing The Human: How to Build, Maintain and Measure aHigh-Impact Awareness ProgramSpitznerMGT512: SANS Security Leadership Essentials for Managers withKnowledge Compression GSLCHardyMGT514: IT Security Strategic Planning, Policy, and Leadership GSTRTMGT517: Managing Security Operations: Detection, Response, andIntelligenceAPPSECHenryHoelzerFossenSEC460: Enterprise Threat and Vulnerability AssessmentICSCDIWashington, D.C.Dec 12-19HardyHardyKimCrowleyDr.UllrichE. JohnsonDEV522: Defending Web Applications Security Essentials GWEBDEV534: Secure DevOps: A Practical IntroductionICS410: ICS/SCADA Security Essentials GICSPRiosRobert M. LeeICS515: ICS Active Defense and Incident Response GRIDNetWarsHardyCoreCoreCoreCyberCity CyberDFIRDefenseSimulcast availableBrochure DC-Area 2017.indd 27/18/17 9:18 AM

Department of Defense Directive 8570(DoDD 8140)Department of Defense Directive 8570 has beenreplaced by the DoD CIO and is now DoDD 8140. DoDD8570 is now part of a larger initiative that falls underthe guidelines of DoDD 8140. DoDD 8140 providesguidance and procedures for the training, certification,and management of all government employees whoconduct Information Assurance functions in assignedduty positions. These individuals are required tocarry an approved certification for their particular jobclassification. GIAC certifications are among thoserequired for Technical, Management, CND, and o stay compliant withDoDD 8140 requirements,you must maintain yourcertifications. GIACcertifications are renewableevery four years.Go to www.giac.orgto learn more aboutcertification renewal.DoD Baseline IA CertificationsIAT Level IIAT Level IIIAT Level IIIIAM Level IIAM Level IIIAM Level IIIA CENetwork CESSCPSecurity CESSCPGSECGCEDGCIHCISSPGSLCGSLCCISSPGSLCCISSP(or Associate)CISA, CASPCAPSecurity CE(or Associate)CAP, CASPCISM(or Associate)CISMComputer Network Defense (CND) NDIncidentResponderGCIAGCIHSSCPCEHGCIHGCFACEHCSIH, CEHInformation Assurance SystemArchitecture & Engineering (IASAE)CertificationsIASAE ICISSP(or Associate)CASP, CSSCPIASAE IIIASAE IIICISSPCISSP - ISSEPCISSP - ISSAP(or Associate)CASP, CSSLPCNDAuditorCNDService ProviderManagerGSNACISACEHCISSP - ISSMPCISMComputer Environment (CE)CertificationsGCWNGCUXSANS Training Courses for DoDD-Approved CertificationsSANS TRAINING R508MGT414MGT512Security Essentials Bootcamp StyleAdvanced Security Essentials – Enterprise DefenderIntrusion Detection In-DepthHacker Tools, Techniques, Exploits, and Incident HandlingSecuring Windows and PowerShell AutomationSecuring Linux/UnixAuditing & Monitoring Networks, Perimeters, and SystemsAdvanced Digital Forensics, Incident Response, and Threat HuntingSANS Training Program for CISSP CertificationSANS Security Leadership Essentials for Managers with Knowledge Compression Brochure DC-Area 2017.indd 3DoDD APPROVED 17 9:18 AM

VIRGINIA BEACH 2017August 21 – September 1SEC401: Security Essentials Bootcamp Style GSECSEC501: Advanced Security Essentials – Enterprise Defender GCEDSEC503: Intrusion Detection In-Depth GCIA NEW!SEC505: Securing Windows & PowerShell Automation GCWNSEC511: Continuous Monitoring and Security Operations GMONSEC555: SIEM with Tactical Analytics NEW!SEC504: Hacker Tools, Techniques, Exploits, and Incident Handling GCIHSEC542: Web App Penetration Testing & Ethical Hacking GWAPTSEC560: Network Penetration Testing & Ethical Hacking GPENFOR500: Windows Forensic Analysis GCFEFOR508: Advanced Digital Forensics, Incident Response, and Threat Hunting GCFAFOR572: Advanced Network Forensics and Analysis GNFAFOR578: Cyber Threat Intelligence GCTIFOR610: Reverse-Engineering Malware: Malware Analysis Tools and Techniques GREM NEW!MGT512: SANS Security Leadership Essentials for Managers with Knowledge Compression GSLCMGT517: Managing Security Operations: Detection, Response, and Intelligence NEW!“You can’t beat the quality of SANS coursesand instructors. I returned to work with a newmalware case and was able to implement theskills learned in class on day one. Invaluable!”-MELISSA SOKOLOWSKI, XEROXwww.sans.org/virginia-beachBrochure DC-Area 2017.indd 47/18/17 9:18 AM

BALTIMORE FALL 2017September 25-30SEC301: Intro to Information Security GISFSEC401: Security Essentials Bootcamp Style GSECSEC501: Advanced Security Essentials – Enterprise Defender GCEDSEC503: Intrusion Detection In-Depth GCIA NEW!SEC504: Hacker Tools, Techniques, Exploits, and Incident Handling GCIHSEC560: Network Penetration Testing & Ethical Hacking GPENFOR500: Windows Forensic Analysis GCFEFOR610: Reverse-Engineering Malware: Malware Analysis Tools & Techniques GREM NEW!MGT414: SANS Training Program for CISSP Certification GISPMGT514: IT Security Strategic Planning, Policy, and Leadership GSTRT“SANS has some of the best security-related classes I have ever beento. The instructors are excellent and the material is always current.”-DANIEL TOUCHETTE, ENTERPRISE HOLDINGS, INC.www.sans.org/baltimore-fallBrochure DC-Area 2017.indd 57/18/17 9:18 AM

TYSONS CORNER FALL 2017McLean, VA October 14-21SEC301: Intro to Information Security GISFSEC401: Security Essentials Bootcamp Style GSECSEC566: Implementing and Auditing the Critical Security Controls – In-Depth GCCCSEC542: Web App Penetration Testing & Ethical Hacking GWAPTSEC564: Red Team Operations and Threat Emulation NEW!SEC575: Mobile Device Security and Ethical Hacking GMOBSEC580: Metasploit Kung Fu for Enterprise Pen TestingFOR508: Advanced Digital Forensics, Incident Response, and Threat Hunting GCFAFOR578: Cyber Threat Intelligence GCTIMGT512: SANS Security Leadership Essentials for Managers with Knowledge Compression GSLC“SANS provides the education thatany and all security organizationsabsolutely must have to succeed.”-THOMAS L., U.S. AIR FORCEwww.sans.org/tysons-corner-2017Brochure DC-Area 2017.indd 67/18/17 9:18 AM

PEN TEST HACKFEST 2017Bethesda, MD November 13-20SEC501: Advanced Security Essentials – Enterprise Defender GCEDSEC504: Hacker Tools, Techniques, Exploits, and Incident Handling GCIHSEC560: Network Penetration Testing & Ethical Hacking GPENSEC573: Automating Information Security with Python GPYCSEC617: Wireless Ethical Hacking, Penetration Testing, and Defenses GAWNSEC642: Advanced Web App Penetration Testing, Ethical Hacking, and Exploitation TechniquesSEC660: Advanced Penetration Testing, Exploit Writing, and Ethical Hacking GXPNSEC760: Advanced Exploit Development for Penetration TestersPen Test Hackfest Summit“I have had nothing but greatexperiences with SANS and alwayscome away from classes and Summitswith a TON of new things to read,research, and play with that makesme a better security professional.”-DANIEL BOUGERE, SECURICON, LLCwww.sans.org/pen-test-hackfestBrochure DC-Area 2017.indd 77/18/17 9:18 AM

CYBER DEFENSE INITIATIVE 2017Washington, D.C. December 12-19Protect Your Business and Advance Your Career35 hands-on, immersion-style informationsecurity courses taught by real-world practitionersCYBER DEFENSEDETECTION & MONITORINGPENETRATION TESTINGINCIDENT RESPONSECYBER THREAT INTELLIGENCEETHICAL HACKINGMANAGEMENTSECURE DEVELOPMENTICS/SCADA SECURITYSIEM“If you desire the best training and education,along with professional peer networking,SANS is where you belong.”-BILL O., U.S. DEPARTMENT OF JUSTICEwww.sans.org/cdiBrochure DC-Area 2017.indd 87/18/17 9:18 AM

SANS Training FormatsWhether you choose to attend a training class live or online, the entire SANS team isdedicated to ensuring your training experience exceeds expectations.Live Classroom InstructionPremier Training EventsOur most recommended format, live SANS training eventsfeature SANS’s top instructors teaching multiple courses at asingle time and location. This allows for: Focused, immersive learning without the distractions of youroffice environment Direct access to SANS Certified Instructors Interacting with and learning from other professionals Attending SANS@Night events, NetWars tournaments, vendorpresentations, industry receptions, and many other activitiesOur premier live training events in North America, servingthousands of students, are held in Orlando, Washington D.C.,Las Vegas, New Orleans, and San Diego. Regional events withhundreds of students are held in most major metropolitanareas during the year.SummitsSANS Summits focus one or two days on a single topic ofparticular interest to the community. Speakers and talks arecurated to ensure the greatest applicability to participants.Community SANS CoursesSame SANS courses, courseware, and labs are taught by up-andcoming instructors in a regional area. Smaller classes allow formore extensive instructor interaction. No need totravel; commute each day to a nearby location.Private ClassesBring a SANS Certified Instructor to yourlocation to train a group of your employeesin your own environment.Save on travel, and addresssensitive issues orsecurity concerns inyour own environment.Online TrainingSANS Online successfullydelivers the same measuredlearning outcomes tostudents at a distance thatwe deliver live in classrooms.More than 30 courses areavailable for you to takewhenever or wherever youwant. Thousands of studentstake our courses onlineand achieve certificationseach year.Top reasons to take SANScourses online: Learn at your own pace, over fourmonths Spend extra time on complex topics Repeat labs to ensure proficiencywith skills Save on travel costs Study at home or in your officeOur SANS OnDemand, vLive,Simulcast, and SelfStudyformats are backed bynearly 100 professionalswho ensure we deliver thesame quality instructiononline (including support)as we do at live trainingevents.“I am thoroughly pleased withthe OnDemand modality.From a learning standpoint,I lose nothing. In fact, theadvantage of setting myown pace with respect tobalancing work, family, andtraining is significant, not tomention the ability to reviewanything that I might havemissed the first time.”-Kevin E., U.S. Army“The decision to take five daysaway from the office is nevereasy, but so rarely have I cometo the end of a course and hadno regret whatsoever. Thiswas one of the most usefulweeks of my professional life.”-Dan Trueman, Novae PLCBrochure DC-Area 2017.indd 97/18/17 9:18 AM

Hotel InformationVIRGINIA BEACH 2017Hilton Virginia Beach Oceanfront3001 Atlantic Avenue Virginia Beach, VA 23451 Phone: /locationRefresh, work, and relax at the Hilton Virginia Beach Oceanfront hotel, convenientlylocated just minutes from Norfolk International Airport and right on Virginia Beach.Wander along the boardwalk, or experience great live music for free at Neptune’sPark next to the hotel. Enjoy superior views of the Atlantic Ocean and surroundingareas from Sky Bar, located on the 21st floor of the hotel next to Virginia’s firstrooftop infinity pool. Indulge with gourmet cuisine at Salacia, Virginia’s first AAA FourDiamond steakhouse, or be tempted by the freshest oysters at Catch 31.BALTIMORE FALL 2017Sheraton Inner Harbor300 South Charles Street Baltimore, MD 21201 Phone: /locationThe Sheraton Inner Harbor Hotel surrounds you with the best of Baltimore. It is stepsfrom the magnificent Inner Harbor and Oriole Park at Camden Yards. The hotel haseverything you need for a comfortable and relaxing stay.TYSONS CORNER FALL 2017Hilton McLean Tysons Corner7920 Jones Branch Drive McLean, VA 22102 Phone: locationExperience impeccable service at the Hilton McLean Tysons Corner hotel nearWashington, D.C. This contemporary hotel is located in the center of Tysons Corner’stechnology corridor, between Ronald Reagan National Airport and Washington DullesInternational Airport. It is also just minutes from world-class shopping at TysonsCorner Center and the Galleria Mall. Take the Silver Line Metro from the McLeanStation into downtown Washington, D.C. A complimentary shuttle servicing a onemile radius of the hotel is also provided.PEN TEST HACKFEST 2017Hyatt Regency BethesdaOne Bethesda Metro Center 7400 Wisconsin Ave Bethesda, MD 2081Phone: 017/locationStep into the sophistication of Hyatt Regency Bethesda. Experience a placedesigned around the power of connection, where guests can convene, consider, andcollaborate. Located in the heart of downtown Bethesda, this hotel is ideal for bothbusiness and leisure travelers to the Washington, D.C. area. Adjacent to the hotel,you will find over 200 restaurants, theaters, galleries, and boutiques in the BethesdaArts and Entertainment District.CYBER DEFENSE INITIATIVE 2017Washington Hilton1919 Connecticut Ave. NW Washington, DC 20009 Phone: ative-2017/locationWhile staying at Washington Hilton, enjoy access to the city’s most popularattractions and experience one of D.C.’s most vibrant neighborhoods. Walk outsidethe doors to explore restaurants and museums, and national attractions, or unwindin relaxing accommodations.Brochure DC-Area 2017.indd 10A special discounted rate of 199.00 S/D will be honoredbased on space availability.Government per diem rooms areavailable with proper ID; you will needto call reservations and ask for the SANSgovernment rate. All rates include highspeed Internet in your room and are onlyavailable through July 21, 2017. To makereservations, please call 800-445-8667and ask for the SANS group rate.A special discounted rate of 205.00 S/D will be honored basedon space availability.Government per diem rooms are availablewith proper ID. If you are a governmentattendee, you must call the hotel directlyat 410-962-8300 to book your roomand mention you are a SANS governmentattendee. These rates include high-speedInternet in your room and are onlyavailable through August 24, 2017.A special discounted rate of 204.00 S/D will be honoredbased on space availability.The group rate is currently lower thanthe government per diem rate. Shouldthis change, a government rate will beavailable. The group rate includes highspeed Internet in your room and is onlyavailable through September 22, 2017.A special discounted rate of 209.00 S/D will be honored basedon space availability.These rates include high-speed Internetin your room and are only availablethrough October 20, 2017. A limitednumber of government per diem raterooms are available with proper ID.Please contact the hotel directly foravailability.A special discounted rate of 209.00 S/D will be honored basedon space availability.The group rate is currently lower thanthe government per diem rate. Shouldthis change, a government rate will beavailable. The group rate includes highspeed Internet in your room and is onlyavailable through November 21, 2017.7/18/17 9:18 AM

Registration InformationWE RECOMMEND YOU REGISTER EARLYTO ENSURE YOU GET YOUR FIRST CHOICE OF COURSES.Select your course and indicate whether you plan to test for GIAC certification. If the courseis still open, the secure, online registration server will accept your registration. Sold-outcourses will be removed from the online registration. Everyone with Internet access mustcomplete the online registration form. We do not take registrations by phone.VIRGINIA BEACH 2017: www.sans.org/virginia-beachSANS SimulcastTo register for a SANS Virginia Beach 2017 Simulcast course, please -remotelyCourses available: SEC401 SEC501 SEC511 SEC560BALTIMORE FALL 2017: www.sans.org/baltimore-fallPay Early and Save*Pay & enter code byDATEDISCOUNT8-2-17 400.00DATEDISCOUNT8-23-17 200.00SANS SimulcastTo register for a SANS Baltimore Fall 2017 Simulcast course, please -remotelyCourses available: SEC401 SEC501 SEC503 FOR610TYSONS CORNER FALL 2017: www.sans.org/tysons-corner-2017Pay Early and Save*Pay & enter code byDATEDISCOUNT8-23-17 400.00DATEDISCOUNT9-13-17 200.00DATEDISCOUNTPEN TEST HACKFEST 2017: www.sans.org/pen-test-hackfestPay Early and Save*Pay & enter code byDATEDISCOUNT9-27-17 400.0010-11-17 200.00CYBER DEFENSE INITIATIVE 2017: www.sans.org/cdiPay Early and Save*Pay & enter code byDATEDISCOUNT10-18-17 400.00DATEDISCOUNT11-8-17 200.00SANS SimulcastTo register for a SANS Cyber Defense Initiative 2017 Simulcast course, please 017/attend-remotelyCourses available: SEC401 SEC504 SEC542 SEC560 FOR572 DEV522*Some restrictions apply. Early bird discounts do not apply to Hosted courses.Brochure DC-Area 2017.indd 117/18/17 9:18 AM

Brochure DC-Area 2017.indd 127/18/17 9:18 AMThought Leaders20 Coolest CareersSecurity GlossarySCORE (Security Consensus OperationalReadiness Evaluation)Top 25 Software Errors20 Critical ControlsSecurity PoliciesIntrusion Detection FAQswww.sans.org/accountTip of the DaySecurity PostersInfoSec Reading RoomOTHER FREE RESOURCES@RISK: The Consensus Security Alert – A reliable weekly summary of (1) newlydiscovered attack vectors, (2) vulnerabilities with active new exploits,(3) how recent attacks worked, and (4) other valuable dataOUCH! – The world’s leading free, monthly security awareness newsletterdesigned for the common computer userNewsBites – Twice-weekly, high-level executive summaries of the most importantnews relevant to cybersecurity professionalsNEWSLETTERSTool Talks – Tool Talks are designed to give you a solid understanding of aproblem, and to show how a vendor’s commercial tool can be used to solve ormitigate that problem.WhatWorks Webcasts – The SANS WhatWorks webcasts analyze powerfulcustomer experiences and how end users resolved specific IT Security issues.Analyst Webcasts – A follow-on to the SANS Analyst Program, Analyst Webcastsprovide key information from our whitepapers and surveys.Ask The Expert Webcasts – SANS experts discuss current and timely informationabout relevant topics in IT Security.WEBCASTSOpen a SANS Account todayto enjoy these FREE resources:Save up to 400 when you pay for any4-, 5-, or 6-day course early.www.sans.org/dcmetroTo be removed from future mailings, please contact unsubscribe@sans.org or (301) 654-SANS (7267). Please include name and complete address.As the leading provider of informationdefense, security, and intelligence trainingto military, government, and industrygroups, SANS Institute is proud to be aCorporate Member of the AFCEA community.BROCHURE CODE5705 Salem Run Blvd.Suite 105Fredericksburg, VA 22407NALT-BRO-DC-Metro-2017

CISSP - ISSMP CISM DoD Baseline IA Certifi cations IAT Level I A CE Network CE SSCP IAT Level II GSEC Security CE SSCP IAT Level III GCED GCIH CISSP (or Associate) CISA, CASP IAM Level I . MGT414 Certifi cation SANS Training Program for CISSP CISSP MGT512 SANS Security Leadership Essentials for Managers with Knowledge Compression GSLC