Sim Cher Khern (Sim CK) has over 20 years of working experience in a number of product development lifecycles, involving embedded firmware and FPGA programming, as well as high speed embedded system hardware design and PCB layout, where EMI/EMC considerations are critical for product delivery. He has also gained much project management experience and knowledge working with various operating systems (Windows, Linux, RTOS), networking technologies and web interface while developing the products.
Being a technology enthusiast, he keeps up with emerging technologies and likes to get his hands dirty with projects. In the process, he has picked up knowledge in full stack web development and its deployment to the cloud platform. He has also acquired knowledge on Cybersecurity threats, Network Defense and Ethical Hacking.
CK holds a MSc in Embedded Systems from Nanyang Technological University (NTU), as well as Cybersecurity certifications from EC-Council (ECSS, CND, CEH and CHFI).
His current area of interests include Cybersecurity, Embedded system hardware and firmware, IoT, Web technologies and Machine learning. They are intertwined in today’s business systems setup.
Course Details
Course Details
What You'll Learn
Topic 1 Planning and Scoping
- Planning a pen test
- Rules of engagement
- Regulatory compliance
- Resources and budgets
- Impact and constraints
- Support resources
- Legal groundwork
- Service provider agreements
- Standards and methodologies
- Environment and scoping considerations
- Ethical mindset
- Lab environment setup
- Project strategy and risk
- Scope vulnerabilities
- Compliance-based assessments
Topic 2 Information Gathering and Vulnerability Scanning
- Scanning and enumeration
- Scanning and demo
- Packet investigation
- Packet inspection demo
- Lab setup
- Lab: Wireshark
- Application and open-source resources
- Passive reconnaissance
- Active reconnaissance
- Vulnerability scanning
- Vulnerability scanning demo
- Lab: Network basis
- Lab: Nmap discovery
- Target considerations
- Analysing scan output
- Nmap scoping and output options
- Nmap timing and performance options
- Prioritization of vulnerabilities
- Common attack techniques
- Automating vulnerability scans
- Credential attacks
- Lab: Password cracking
- Lab: Secure Sockets Layer
- Lab: Routing basics
Topic 3 Attacks and Exploits
- Network-based attacks
- Wireless and RF Attacks
- Web and Database Attacks
- Attacking the cloud
- Specialised and Fragile Systems
- Social Engineering and Physical attacks
- Post-Exploitation
Topic 4 Reporting and Communication
- Report writing
- Important components of written reports
- Mitigation strategies
- Technical and physical controls
- Administrative and operational controls
- Communication
- Presentation of findings
- Post-report activities
- Data destruction process
Topic 5 Tools and Code Analysis
- Using scripting in pen testing
- Bash scripting basics
- Python scripts
- Tools inventory
- Pen testing toolbox
- Scanners and credential tools
- Code-tracking tools
- Wireless and web pen testing tools
- Remote access tools
- Analysers and mobile pen testing tools
Practice Exam
Course Info
Promotion Code
Your will get 10% discount voucher for 2nd course onwards if you write us a Google review.
Minimum Entry Requirement
Knowledge and Skills
- Able to operate using computer functions
- Minimum 3 GCE ‘O’ Levels Passes including English or WPL Level 5 (Average of Reading, Listening, Speaking & Writing Scores)
Attitude
- Positive Learning Attitude
- Enthusiastic Learner
Experience
- Minimum of 1 year of working experience.
Target Age Group: 18-65 years old
Minimum Software/Hardware Requirement
Software:
TBD
Hardware: Window or Mac Laptops
Job Roles
Job Roles
- Penetration Tester
- Ethical Hacker
- Cybersecurity Analyst
- Information Security Consultant
- Vulnerability Analyst
- Security Operations Center (SOC) Analyst
- Network Security Specialist
- IT Security Engineer
- Cybersecurity Auditor
- Compliance and Controls Analyst
- Incident Response Analyst
- Forensic Analyst
- Security Architect
- Risk Assessment Specialist
- Cyber Defense Analyst
- Application Security Engineer
- Cyber Threat Intelligence Analyst
- IT Auditor focusing on security
- Security Systems Administrator
- Information Assurance Technician
Trainers
Trainers
Sim Cher Khern