CompTIA Authorized Training

CompTIA CySA+ Training

CompTIA Cybersecurity Analyst (CySA+) is a certification for cyber professionals tasked with incident detection, prevention and response through continuous security monitoring. The course introduces tools and tactics to manage cybersecurity risks, identify various types of common threats, evaluate the organization’s security, collect and analyze cybersecurity intelligence, and handle incidents as they occur.

LevelIntermediate
Duration5 Days
ExamCS0-003
Experience4 years: Security
Average Salary$112,000
LabsYes

CompTIA Cybersecurity Analyst (CySA+)

Course Overview

The CompTIA Cybersecurity Analyst (CySA+) certification verifies that successful candidates have the knowledge and skills required to detect and analyze indicators of malicious activity, understand threat intelligence and threat management, respond to attacks and vulnerabilities, perform incident response, and report and communicate related activity.

Acquired Skills

Security Operations - Improve processes in security operations and differentiate between threat intelligence and threat hunting concepts as well as identify and analyze malicious activity using the appropriate tools and techniques.

Vulnerability Management - Implement and analyze vulnerability assessments, prioritize vulnerabilities, and make recommendations on mitigating attacks and vulnerability response.

Incident Response and Management - Apply updated concepts of attack methodology frameworks, perform incident response activities, and understand the incident management lifecycle.

Reporting and Communication - Apply communication best practices in vulnerability management and incident response as it relates to stakeholders, action plans, escalation, and metrics.

Course Outline
  • Lesson 1: Understanding Vulnerability Response, Handling, and Management
    • Topic 1A: Understanding Cybersecurity Leadership Concepts
    • Topic 1B: Exploring Control Types and Methods
    • Topic 1C: Explaining Patch Management Concepts
  • Lesson 2: Exploring Threat Intelligence and Threat Hunting Concepts
    • Topic 2A: Exploring Threat Actor Concepts
    • Topic 2B: Identifying Active Threats
    • Topic 2C: Exploring Threat-Hunting Concepts
  • Lesson 3: Explaining Important System and Network Architecture Concepts
    • Topic 3A: Reviewing System and Network Architecture Concepts
    • Topic 3B: Exploring Identity and Access Management (IAM)
    • Topic 3C: Maintaining Operational Visibility
  • Lesson 4: Understanding Process Improvement in Security Operations
    • Topic 4A: Exploring Leadership in Security Operations
    • Topic 4B: Understanding Technology for Security Operations
  • Lesson 5: Implementing Vulnerability Scanning Methods
    • Topic 5A: Explaining Compliance Requirements
    • Topic 5B: Understanding Vulnerability Scanning Methods
    • Topic 5C: Exploring Special Considerations in Vulnerability Scanning
  • Lesson 6: Performing Vulnerability Analysis
    • Topic 6A: Understanding Vulnerability Scoring Concepts
    • Topic 6B: Exploring Vulnerability Context Considerations
  • Lesson 7: Communicating Vulnerability Information
    • Topic 7A: Explaining Effective Communication Concepts
    • Topic 7B: Understanding Vulnerability Reporting Outcomes and Action Plans
  • Lesson 8: Explaining Incident Response Activities
    • Topic 8A: Exploring Incident Response Planning
    • Topic 8B: Performing Incident Response Activities
  • Lesson 9: Demonstrating Incident Response Communication
    • Topic 9A: Understanding Incident Response Communication
    • Topic 9B: Analyzing Incident Response Activities
  • Lesson 10: Applying Tools to Identify Malicious Activity
    • Topic 10A: Identifying Malicious Activity
    • Topic 10B: Explaining Attack Methodology Frameworks
    • Topic 10C: Explaining Techniques for Identifying Malicious Activity
  • Lesson 11: Analyzing Potentially Malicious Activity
    • Topic 11A: Exploring Network Attack Indicators
    • Topic 11B: Exploring Host Attack Indicators
    • Topic 11C: Exploring Vulnerability Assessment Tools
  • Lesson 12: Understanding Application Vulnerability Assessment
    • Topic 12A: Analyzing Web Vulnerabilities
    • Topic 12B: Analyzing Cloud Vulnerabilities
  • Lesson 13: Exploring Scripting Tools and Analysis Concepts
    • Topic 13A: Understanding Scripting Languages
    • Topic 13B: Identifying Malicious Activity Through Analysis
  • Lesson 14: Understanding Application Security and Attack Mitigation Best Practices
    • Topic 14A: Exploring Secure Software Development Practices
    • Topic 14B: Recommending Controls to Mitigate Successful Application Attacks
    • Topic 14C: Implementing Controls to Prevent Attacks
Intended Audience
  • Primary Job Roles
  • Security Analyst
  • Security Operations Center (SOC) Analyst
  • Secondary Job Roles
  • Vulnerability Management Analyst
  • Security Engineer
  • Threat Hunter
Prerequisites

Minimum of 4 years of hands-on experience as an incident response analyst or security operations center (SOC) analyst or equivalent experience.

Follow-On Courses

Related training topics

Get approved to attend

Justify your training

Use this sample request letter — copy it into an email to your manager and personalize the bracketed details to make the case for the time and budget.

Sample training request letter

Subject: Request for Defensive Cyber & Blue Teaming training from Applied Technology Academy

[Decision Maker Name],

I'm writing to request time and budget approval to complete Applied Technology Academy's course, CompTIA CySA+ Training. The information below outlines how this training benefits our organization, the tasks I'll be able to perform after completing it, and relevant cost and funding details.

Course Description
CompTIA Cybersecurity Analyst (CySA+) is a certification for cyber professionals tasked with incident detection, prevention and response through continuous security monitoring. The course introduces tools and tactics to manage cybersecurity risks, identify various types of common threats, evaluate the organization’s security, collect and analyze cybersecurity intelligence, and handle incidents as they occur. Applied Technology Academy is an award-winning, SBA-certified woman-owned training provider (est. 2008) whose instructors are active practitioners; the course is hands-on with virtual labs and a learn-by-doing methodology.

Course Objectives
Once I've completed the course, I'll have hands-on, job-ready skills in defensive cyber & blue teaming that I can apply immediately to our work.

Expected Organizational Benefits
After completing this course, I will be better equipped to apply these skills directly to our projects, reduce our reliance on outside expertise, strengthen our team's capabilities, and share what I learn with colleagues.

Expected Cost & Funding
Course fee: [request an itemized quote at the link below]. Applied Technology Academy supports multiple funding paths that may reduce or cover this cost: GSA MAS purchasing and government purchase orders, military credentialing funding (Army CA, AF COOL, CG COOL), VA GI Bill and VR&E, ATA Flexible Spending, and student financing. Private team cohorts are available if colleagues should attend with me.

Conclusion
This training provides practical, hands-on experience I can apply immediately to strengthen our work in defensive cyber & blue teaming. Additional course information is available at https://appliedtechnologyacademy.com/comptia-training/cysa-plus-training/.

Thank you for your consideration,
[Your Name]

Design training around your team, not the other way around.

Talk to a training advisor about private cohorts, funding paths and program management.

Request a Quote Call 800.674.3550