Welcome to RecertHero!
Submit bugs, feature requests, and feedbackCompTIA · Exam prep
Exam-prep training that counts toward CySA+ renewal — boot camps, practice review sessions, and structured study tracks aimed at people preparing for the cert itself or a follow-on credential. RecertHero estimates the CEU value of every opportunity, so you can plan toward the 60 CEUs CySA+ requires every 3 years — without re-keying each entry into CompTIA's portal.
73 results mapped to CySA+, soonest first.
According to Ponemon's 2022 Cost of Insider Threats Report, insider threats cost organizations $15.4 million, up 34% from 2020 and have increased in frequency by 44% in the same period. Insider risk and data loss prevention (DLP) are a top concern for organizations today. And it makes sense, with a distributed and revolving workforce, and increasing reliance on technology. That’s because data loss begins with people, whether careless, compromised, or malicious insiders. So how do you better protect your organization? Join Proofpoint and (ISC)2 on March 10, 2022 at 1:00 p.m. Eastern/10:00 a.m. Pacific for a lively discussion on why organizations need to take a modern, people-centric approach that provides visibility and context into content, user behavior, and threat insights - to help you to mitigate this risk. We’ll also examine: • The importance of looking beyond only content awareness to understand people risk • How to better understand and respond to people-led data breaches • Real-world examples of insider threat scenarios • Best practices to improve your data and user security
As of July 31, 2021, the FBI’s Internet Crime Complaint Center saw a 62% increase in reported ransomware incidents and a 20% increase in reported losses, compared with the same time frame in 2020. Ransomware is a masterful crime that cybercriminals cannot get enough of and organizations continue to be ever more challenged by this reality. However, ransomware does not appear out of thin air. Join Lumu Technologies and (ISC)2 on April 7, 2022 at 1:00 p.m. Eastern/10:00 a.m. Pacific as we take a deep dive into: - The vicious cycle that enables complex ransomware schemes. - The common denominators of ransomware incidents. - Practical advice to stop ransomware in its tracks regardless of your vertical or resources. - Best practices on containing its impact via real-life examples.
As discussed throughout this series, attack surface management can support several cybersecurity use cases, from finding unpatched or vulnerable assets to optimizing threat hunting. With this kind of flexibility, there are also many approaches to implementing attack surface management. In this final session, we’ll discuss tips for implementing attack surface management. We will also share best practices for organizations using attack surface management to monitor themselves and third parties or suppliers. Participants will walk away with a checklist to successfully leverage when implementing attack surface management.
In the last year alone, the number of supply chain attacks has grown exponentially as they offer threat actors stealthy, scalable, and privileged access to your organization’s on-premises, cloud, and hybrid environment. Addressing supply chain attacks requires a multi-layered defense strategy in which third-party integrations are audited, endpoints are monitored for post-compromise actions, and an Incident Response plan that considers supply risks is put in place to minimize the overall impact to your organization. On May 10, 2022, at 1:00 p.m. Eastern/10:00 a.m. Pacific (ISC)² and Sumo Logic share insights from original threat research and supply chain attacks to demonstrate how multi-signal investigations can effectively secure your organization against supply chain attacks. Key takeaways from the webinar include: • The three primary attack vectors that cybercriminals rely on to launch supply chain attacks against organizations • The challenges that organizations face related to supply chain risk (e.g., technical complexity, access requirements, stealth of cyberattacks) and how they impact business operations • Tactical and high-level strategic recommendations on how your organization can minimize supply chain risk and reduce the attacker dwell times and impact • How 24/7 log monitoring and management can improve cyber resilience and prevent zero-day threats • A case study on how original research and curated threat intelligence conduct stronger post-exploitation investigations.
Cyber-attacks continue to plague the healthcare industry as threat actors leverage new trends and evolve their attack surface. Their primary focus is still attacking messaging tools with obtaining user credentials being the nirvana state for would be threat actors. Once the credentials are obtained, the attack options are numerous with ransomware, imposter email, supply chain fraud, and data extraction being the primary area of focus. On May 18, 2022 at 1:00 p.m. Eastern/ 10:00 a.m. Pacific, Proofpoint and (ISC)² discuss how these exploits are currently impacting healthcare, the favored attacks being deployed by threat actors, and outline practical mitigating strategies healthcare institutions can implement to optimally defend themselves.
Since the initial disclosure of Log4j, the OverWatch team, CrowdStrike’s elite team of threat hunters, has maintained around-the-clock vigilance, tracking the evolution of the Log4j threat, and developing techniques to uncover stealthy attempts to exploit it. Join our OverWatch experts for a summary of the team’s threat hunting insights. You’ll get a real-world view from the experts on the front lines and gain insights you can use to kickstart your own Log4j threat hunting efforts. Join this CrowdCast to hear more about: • A look at the Log4j vulnerability through the eyes of elite threat hunters • Case studies providing insights into how adversaries are carrying out their campaigns in the wild • Ideas for suggested threat hunting techniques you can put into action in your own environment
INSIGHTS FROM THE CROWDSTRIKE OVERWATCH THREAT HUNTING TEAM [EMEA] Falcon OverWatch™, CrowdStrike’s elite team of threat hunters, has the unparalleled ability to see and stop the most sophisticated threats, leaving adversaries with nowhere to hide. Join our OverWatch experts for a summary of the team’s threat hunting insights from the last 12 months. They’ll review intrusion trends, share insights into current adversary tactics and deliver highlights of notable intrusions identified by expert OverWatch threat hunters. You’ll get a real-world view from the experts at the front lines and gain insights that can inform your security strategies in the months ahead. In this webcast, you will hear: • A new look at the most common tactics, techniques and procedures (TTPs) used by adversaries, as well as those OverWatch believes defenders should have on their radar. • An analysis of intrusions by vertical — including a special focus on the telecommunications vertical, which saw intrusions double this past year. • Detailed case studies providing insights into how adversaries are carrying out their campaigns in the wild. • Recommendations for defenders looking to better protect their organization from current and emerging threats.
In recent months, major incidents such as the attack related to SolarWinds has led organizations to reevaluate their cyber security strategy. Governments and municipalities in particular, who are facing threats from increasingly professional threat-actors, need robust and adaptive defenses to secure critical data and infrastructure. While traditional tools rely on rules and signatures to spot signs of known threats, cyber-criminals continue to innovate and circumvent these defenses with new tools, techniques, and procedures. For this reason Cyber AI is becoming increasingly critical for its ability to understand ‘normal’, and detect and respond to subtle deviations indicative of a cyber-threat. Join Darktrace and (ISC)2 on July 27, 2021 at 1:00 p.m. Eastern/10:00 a.m. Pacific as Darktrace’s Director of Strategic Threat, Marcus Fowler explores: o The unique challenges facing the digital infrastructures of cities and nations o Top cyber incidents of 2021 and what they show us about government cyber-risk o Case studies of Darktrace municipal customers
Responding to an incident takes more than theoretical knowledge. To effectively detect, investigate, and mitigate a live incident requires strong knowledge, technical skills, and practical experience, many of which current cyber pros are missing. Join Cyberbit and (ISC)2 on November 23, 2021 at 1:00 p.m. Eastern/10:00 a.m. Pacific to experience a live incident response, simulated on the cyber range included in Cyberbit’s cyber team preparedness platform. Here’s the twist: you, as the audience, are in control. You will vote to control the actions taken by the responder and see how quickly the audience can resolve the attack!
NOWHERE TO HIDE: INSIGHTS FROM THE CROWDSTRIKE OVERWATCH THREAT HUNTING TEAM [EMEA] Falcon OverWatch™, CrowdStrike’s elite team of threat hunters, has the unparalleled ability to see and stop the most sophisticated threats, leaving adversaries with nowhere to hide. Join our OverWatch experts for a summary of the team’s threat hunting insights from the last 12 months. They’ll review intrusion trends, share insights into current adversary tactics and deliver highlights of notable intrusions identified by expert OverWatch threat hunters. You’ll get a real-world view from the experts at the front lines and gain insights that can inform your security strategies in the months ahead. In this webcast, you will hear: • A new look at the most common tactics, techniques and procedures (TTPs) used by adversaries, as well as those OverWatch believes defenders should have on their radar. • An analysis of intrusions by vertical — including a special focus on the telecommunications vertical, which saw intrusions double this past year. • Detailed case studies providing insights into how adversaries are carrying out their campaigns in the wild. • Recommendations for defenders looking to better protect their organization from current and emerging threats.
Ransomware attacks are a lucrative business for threat actors. These attacks create chaos to organisations, and cause a rippling effect to their customers, or even worse, critical infrastructure or supply chains. Let’s unite to study these adversaries, their tactics, and learn from front line responders how you can best defend, respond, and recover from a ransomware attack. Please join CrowdStrike to deep-dive into active and notorious eCrime actors in the Ransomware space CrowdStrike tracks as Wizard Spider, Carbon Spider, and Pinchy Spider.
It's now widely recognized that traditional security solutions are insufficient to protect organizations from advanced threats and targeted attacks. To fight back you need your own unified plan of attack so that you can better sense malicious activity and take preventive action that will crush attackers and keep your environment safe Join Brett Williams, Senior Security Engineer for Carbon Black on March 23, 2016 at 1PM (GMT+8; Hong Kong, Singapore, Beijing) for an overview of how organizations are moving from a passive to proactive defense on the end point. This webinar will cover: * End point security challenges organizations face today * Why using a trusted security model on the endpoint is essential * The importance of choosing the right solution and integration with your existing security investments * Example of Ransomware detection and protection using proactive defense. * Best practices learned from successful deployments
A recent research study conducted by Meritalk on the use of Artificial Intelligence (A.I.) asked federal cybersecurity professionals to share their views on the use of AI to enhance a cybersecurity analyst’s ability to identify and understand sophisticated threats, by tapping into unstructured data and correlating it with local cybersecurity offenses. What are the cybersecurity implications within the Federal Government for the rise of A.I.? What role can A.I. play in incident response? Can it help prepare agencies for real-world cyber attack scenarios? Join John McCumber, (ISC)2’s Director of Cybersecurity Advocacy and Ian Doyle, IBM’s Executive Security Advisor for the U.S. Government for an examination of the recent study and results.
NOWHERE TO HIDE: KEY INSIGHTS FROM CROWDSTRIKE'S FALCON OVERWATCH TEAM Insights from the CrowdStrike OverWatch Threat Hunting Team [Americas] Falcon OverWatch™, CrowdStrike’s elite team of threat hunters, has the unparalleled ability to see and stop the most sophisticated threats, leaving adversaries with nowhere to hide. Join our OverWatch experts for a summary of the team’s threat hunting insights from the last 12 months. They’ll review intrusion trends, share insights into current adversary tactics and deliver highlights of notable intrusions identified by expert OverWatch threat hunters. You’ll get a real-world view from the experts at the front lines and gain insights that can inform your security strategies in the months ahead. In this webcast, you will hear: • A new look at the most common tactics, techniques and procedures (TTPs) used by adversaries, as well as those OverWatch believes defenders should have on their radar. • An analysis of intrusions by vertical — including a special focus on the telecommunications vertical, which saw intrusions double this past year. • Detailed case studies providing insights into how adversaries are carrying out their campaigns in the wild. • Recommendations for defenders looking to better protect their organization from current and emerging threats.
Account Takeover (ATO) attacks are on the rise. Not only are they hard to detect, they have consequences far beyond compromised PII and stolen goods. Stopping such ATO attacks is critical for any company engaged in online commerce. Join PerimeterX and (ISC)2 on May 7, 2020 at 1:00PM Eastern time as we highlight the top five ways to identify automated bot attacks to your website. We’ll cover: ● Real use cases - attacks that happened in the real world ● Practical strategies for identifying automated attacks ● Best practices for addressing and blocking bot attacks ● ATO attack trends during COVID19 pandemic
Someone in leadership always seems to ask the question “How can I tie my threat hunting activities to real impacts for the organization?” Threat hunting programs are encouraged as part of a mature and successful incident response capability and teams invest significant time and effort in the development and maintenance of that program. However, management is always looking for metrics to demonstrate the value of threat hunting in real terms due to the number of hours consumed by such highly skilled professionals. It’s a big investment. Join Gigamon on November 1, 2018 at 1:00PM Eastern for an examination of how to demonstrate value from threat hunting operations with practical methods and examples for tracking hunting operations, reporting and attributing outcomes to industry-leading frameworks and plot hunting goals and coverage across the MITRE ATT&CK framework.
Ransomware attacks are a lucrative business for threat actors. These attacks wreak havoc on organizations, and cause a rippling effect to their customers, or even worse, critical infrastructure or supply chains. Please join CrowdStrike to deep-dive into active and notorious eCrime actors in the Ransomware space CrowdStrike tracks as Wizard Spider, Carbon Spider, and Pinchy Spider. Study these adversaries, their tactics, and learn from front line responders how you can best defend, respond, and recover from a ransomware attack. This webinar will be delivered by CrowdStrike security experts. This experienced team will discuss: • Briefing of eCrime actors Wizard Spider, Carbon Spider, and Pinchy Spider • How CrowdStrike Incident Response (IR) and Endpoint Recovery Services (ERS) optimize a ransomware investigation, getting you secure and back to business faster • Ransomware preparation – best practices for an organization’s Business Continuity, Disaster Recovery, and IR planning
A recent study revealed how security orchestration, automation and response (SOAR) can deliver impressive gains in your security operations center's (SOC) efficiency, productivity, and consistency within a relatively short time-frame—11 months or less on average. But, how do you get there, and what SOAR use cases can lead to these remarkable gains? Join Swimlane and (ISC)2 on October 8, 2020 at 1:00 p.m. Eastern for a pragmatic approach to automation and orchestration as we dig into the use cases where organizations are seeing significant impacts in their SOCs. We’ll also examine: •Typical challenges that SOAR platforms address. •Five SOAR use cases that can be used immediately to alleviate analyst burnout and provide more effective use of existing tools. •How to further increase the ROI of a SOAR platform with robust reporting and metrics.
When you hear the words "Threat Intelligence", what's the first thing that comes to mind? Back end research? Threat Hunting? It's easy to categorize threat intelligence as a reactive tool - best suited for things like root-cause analysis - but it's so much more than that. In the first part of a three part series presented by Keysight, we'll explore an array of practical applications for threat intelligence, including traditional defensive strategies and new offensive strategies that will help you maximize your SecOps team. •Join us to discover how applying threat intelligence can help you: •Answer the question "Am I more secure today than I was yesterday?" •Improve the efficiency and effectiveness of Breach and Attack Simulation tools •Reduce your attack surface by blocking the latest threats •Prevent DDoS attacks and improve performance with pre-deployment testing •Maximize your threat hunting capability with real-time insights into botnets, phishing, etc. •Stay ahead of attackers by researching the latest attack signatures
No doubt, you’ve seen it, the threat landscape is evolving year over year. How do you fine tune your defenses against an ever-changing adversary? On August 18, 2022 at 1:00 p.m. Eastern/10:00 a.m. Pacific join F5 Labs and (ISC)² for a multifaceted analysis of the application security threat landscape based on F5 Labs’ 2022 Application Protection Report. The report analyzes nearly 1,000 data breaches from 2021, focusing on three specific threats: ransomware, which played a role in nearly half of the successful attacks in 2021; formjacking attacks like Magecart; and data exfiltration, which was featured in nearly 80% of breaches. F5 Labs and will share additional perspectives of the threat landscape, with a look at cloud risks, cryptocurrency theft, and some case studies about well-resourced attackers. The session will conclude with recommended best practices using prioritization methods for different scenarios.
As organizations migrate more services and applications to the cloud, adversaries have shifted their focus to exploit a broader attack surface. From vulnerability exploitation to credential theft, attackers are going after any weak points that allow them to compromise the ever-growing amount of critical business data and applications hosted in the cloud. We will share insights into today’s top cloud security threats and cloud vulnerabilities, along with best practices to address them. Join the workshop to learn: • The top cloud security threats in 2022 • The main cloud security adversaries • The most targeted cloud vulnerabilities • What you can do to ensure effective cloud security Speakers: • David Puzas (Sr. Product Marketing Manager, Cloud Security), • Scott Fanning (Sr Director, Product Management), • Joshua Shapiro (Sr. Manager, Strategic Threat Advisory Group)
As organizations have rapidly migrated to the cloud, adversaries have honed their craft to exploit the gaps that leave businesses vulnerable to cyberattack. In this CrowdCast, we take an adversary-focused approach to defend against three commonly exploited attack vectors: supply chain, cloud environments and user identities. Join CrowdStrike to: • Learn why taking an adversary-focused approach helps security and incident response teams focus their resources and proactively apply defenses • Understand how global cloud adoption and remote work has left organizations vulnerable to cyberattacks • Learn how real-world adversaries are currently exploiting cloud misconfigurations, user identities and supply chains • Gain access to best practices to defend against sophisticated adversary attacks
Vulnerability management has been a staple of security teams for decades. But if you haven’t noticed, this space has evolved considerably over the last half decade. Long gone are the days of lengthy, hard-to-digest vulnerability scanning reports often created to check the PCI compliance checkbox. These days, smart IT security teams are investing in risk-based vulnerability management (RBVM) technologies and best practices to help prioritize which vulnerabilities to remediate first based on a variety of internal and external factors. Join Steve Piper, Founder & CEO of CyberEdge (and proud CISSP), as he: - Recaps the evolution from VA, to VM, to RBVM - Defines key elements of modern-day RBVM solutions - Reviews internal and external factors to help prioritize vulnerability remediation - Describes what to look for when evaluating best-of-breed RBVM offerings - Summarizes the extraordinary benefits derived from RBVM deployments
Cybercriminals use an ever-increasing array of DDoS attack vectors to target business and governments. Today, the question isn’t if, but when, you will be a target. Knowing your adversary's latest tactics and techniques are key to your defense. Join NETSCOUT and (ISC)² to explore the findings and trends from the latest NETSCOUT DDoS Threat Intelligence Report. • Global and regional DDoS attacks stats (e.g. size, frequency, vectors.) • How attackers are getting more sophisticated in their DDoS attack techniques, and the most common attack vectors. • The relationship between DDoS attacks and geopolitical events. • The increasing number and size of botnets that are being used to launch DDoS attacks. • Best practices in DDoS attack defense and suppression.
ImportantRecertHero is an independent aggregator. Credit estimates are guidance only — always verify with your certifying body.