School of Cybersecurity · Foundation

Cybersecurity & Network Security Foundations Course

Build the practical security foundation needed for SOC, security operations and cloud-security pathways through hands-on labs.

Talk to an advisor on WhatsApp
Cybersecurity & Network Security Foundations course illustration at Brightnest AI Academy
Cybersecurity Foundations and RiskNetworking for CybersecurityOperating System and Endpoint SecurityIdentity, Access and Authentication
Risk templatessecurity lab environmentWiresharktcpdumpWindows
Duration9–11 weeks70 hours
Batch startsConfirm with admissionsOpen for registration
Learning formatLive mentor-led instruction, guided labs, assignments, feedback and project reviewsLive online / classroom
Curriculum8 modulesLabs and assessed capstone
Portfolio2 projectsPlus module evidence
LevelFoundationCourse level
PathwayCybersecurity EngineerRelated career pathway

How you will learn

Live instructor-led sessions that connect concepts to real workplace decisions.
Guided labs and workshops in every module.
Assignments, checkpoints and practical feedback.
Portfolio documentation, demonstrations and capstone review.
Access to recordings and LMS resources according to the published batch policy.
Career preparation based on completed work and target roles.
Course curriculum

What you will learn, module by module

Build foundations in security concepts, networks, identity, risk, vulnerabilities, and defensive practices. Progress from Cybersecurity Foundations and Risk to Incident Response, Resilience and Capstone through guided labs, assessed projects, and portfolio evidence.

01Module 1 · 6 hoursCybersecurity Foundations and RiskPerform a basic risk assessment for a small organisation and prioritize controls.
Topics you will cover
  • CIA triad
  • Threats/vulnerabilities/risk
  • Attack surface
  • Security controls
  • Governance basics
  • Policies
  • Ethics
Tools and platforms
Risk templates, security lab environment
Portfolio evidence
Risk register and control plan
Assessment
Risk case and quiz
02Module 2 · 10 hoursNetworking for CybersecurityAnalyze packet captures and map normal versus suspicious network behaviour.
Topics you will cover
  • OSI/TCP-IP
  • IP/subnetting
  • DNS
  • HTTP/TLS
  • Routing
  • Ports/protocols
  • Packet flow
Tools and platforms
Wireshark, tcpdump
Portfolio evidence
Packet analysis notebook/report
Assessment
Network practical
03Module 3 · 8 hoursOperating System and Endpoint SecurityHarden Windows/Linux hosts and document baseline deviations.
Topics you will cover
  • Windows/Linux fundamentals
  • Permissions
  • Processes
  • Services
  • Patching
  • Hardening
  • Endpoint telemetry
Tools and platforms
Windows/Linux VMs, Sysmon concepts
Portfolio evidence
Endpoint hardening checklist
Assessment
Hardening lab
04Module 4 · 8 hoursIdentity, Access and AuthenticationDesign an IAM model and test role-based access in a lab environment.
Topics you will cover
  • Authentication factors
  • IAM
  • RBAC/ABAC
  • Least privilege
  • Password security
  • MFA
  • SSO/federation concepts
Tools and platforms
Directory/IAM lab
Portfolio evidence
Access-control matrix
Assessment
IAM design review
05Module 5 · 8 hoursVulnerability Management and Security TestingScan a lab environment, validate findings and create a remediation backlog.
Topics you will cover
  • CVE/CVSS concepts
  • Scanning
  • Patch prioritisation
  • Configuration issues
  • Exposure validation
  • Remediation workflow
  • Reporting
Tools and platforms
Nmap, vulnerability scanner in lab
Portfolio evidence
Remediation-focused vulnerability assessment
Assessment
Vulnerability report
06Module 6 · 6 hoursCryptography and Data ProtectionInspect TLS certificates and design encryption/key-management controls for sample data.
Topics you will cover
  • Symmetric/asymmetric cryptography
  • Hashing
  • PKI
  • Certificates
  • TLS
  • Encryption at rest/in transit
  • Key management
Tools and platforms
OpenSSL concepts, browser/dev tools
Portfolio evidence
Data protection design
Assessment
Crypto quiz and lab
07Module 7 · 10 hoursSecurity Operations and MonitoringIngest sample logs, identify suspicious activity and document triage steps.
Topics you will cover
  • Logs
  • SIEM concepts
  • Detection
  • Alert triage
  • Endpoint/network telemetry
  • Baselining
  • Threat intelligence basics
Tools and platforms
SIEM lab, log sources
Portfolio evidence
Security monitoring case file
Assessment
SOC lab
08Module 8 · 14 hoursIncident Response, Resilience and CapstoneRun a tabletop breach simulation and produce an incident report plus recovery plan.
Topics you will cover
  • IR lifecycle
  • Evidence handling
  • Containment
  • Eradication
  • Recovery
  • Communication
  • Business continuity
Tools and platforms
IR templates, security lab
Portfolio evidence
Cybersecurity foundations capstone
Assessment
Capstone tabletop and report
Applied portfolio

Projects you will build

2 portfolio projects plus module evidence

Portfolio project 1

Small Business Security Baseline

Assess network, endpoints, IAM, vulnerabilities and monitoring and create an improvement roadmap.

Risk register · hardening checklist · monitoring plan · IR playbook
Portfolio project 2

Security Operations Starter Lab

Build a small monitored environment and investigate a simulated incident.

Logs · alerts · incident timeline · lessons learned
Course value

Why this course

Security foundations become job-relevant when learners can understand networks, identities, vulnerabilities, risk, controls, and incident response as one connected discipline.

The curriculum progresses from Cybersecurity Foundations and Risk to Incident Response, Resilience and Capstone, with guided labs, assessments, and two portfolio projects: Small Business Security Baseline and Security Operations Starter Lab.

Course fit

Who this course is for

Beginners, IT support/network professionals and graduates entering cybersecurity.

FoundationCybersecurity Engineer
PrerequisitesNo prior cybersecurity experience is required. Basic computer literacy and an interest in networking are sufficient.
Practical capabilities

What you will be able to do

  • Perform a basic risk assessment for a small organisation and prioritize controls.
  • Analyze packet captures and map normal versus suspicious network behaviour.
  • Harden Windows/Linux hosts and document baseline deviations.
  • Design an IAM model and test role-based access in a lab environment.
  • Scan a lab environment, validate findings and create a remediation backlog.
  • Ingest sample logs, identify suspicious activity and document triage steps.
  • Run a tabletop breach simulation and produce an incident report plus recovery plan.
Tools and platforms

Technology you will use in this course

Risk templatessecurity lab environmentWiresharktcpdumpWindowsLinux VMsSysmon conceptsIAM labNmapvulnerability scanner in labOpenSSL conceptsSIEM lablog sources
Career relevance

Cybersecurity Engineer

This course supports the development of skills relevant to roles such as Cybersecurity Analyst, Junior SOC Analyst, and Security Operations pathway. The strongest learner outcome is a portfolio that shows the problem, implementation, testing or evaluation, documentation and a clear explanation of decisions—not a certificate alone.

Course evidence and instruction

Academy advisor

Ranjeet Kumar

Advisor, Brightnest AI Academy · Innovation & Growth Leader

A technologist and data leader with 15+ years of experience applying data, artificial intelligence and machine learning to complex problems, scalable products and business growth.

What our learners say

Learner experience

The SOC project helped me practise alert triage, investigation notes, incident response and the professional reporting expected from analysts.
Arjun MehtaCybersecurity Learner · Security Operations Pathway

Industry and technology ecosystem

MicrosoftAmazon Web ServicesDeloitteTech MahindraTata Consultancy ServicesWipro
Course FAQs

Clear answers before you enrol

Build the practical security foundation needed for SOC, security operations and cloud-security pathways through hands-on labs.

Is the Cybersecurity Foundations course suitable for beginners?

This is a foundation-level course. No prior cybersecurity experience is required. Basic computer literacy and an interest in networking are sufficient.

What will I build during the course?

You will complete guided labs in every module and build two portfolio projects: Small Business Security Baseline and Security Operations Starter Lab. Deliverables include working files or code, documentation, testing or evaluation evidence, and a final presentation.

Which tools and platforms are covered?

Key tools include Risk templates, security lab environment, Wireshark, tcpdump, Windows, Linux VMs, Sysmon concepts, and Directory. Additional platforms are introduced in relevant modules through practical tasks, and the toolset may evolve as industry practice changes.

How long does the course take?

The course includes approximately 70 guided learning hours across 8 modules, normally delivered over 9–11 weeks depending on batch intensity and learner practice time.

Which career paths can this course support?

The curriculum supports the development of skills relevant to roles such as Cybersecurity Analyst, Junior SOC Analyst, and Security Operations pathway. Career outcomes depend on prior experience, project quality, interview readiness and market conditions; employment is not guaranteed.

Will I receive mentor and career support?

The course includes live instruction, lab support, assignment feedback, project reviews and career preparation covering portfolio development, resume writing, LinkedIn profile improvement, and interview guidance.

Ready to start?

Ready to start your Cybersecurity & Network Security Foundations journey?

Review the full curriculum, experience a live class and confirm the right starting point before enrolling.

A-56, Sector-64, Noida, Uttar Pradesh – 201301