Loading Events

Training Calendar

หลักสูตรที่ได้รับการออกแบบเนื้อหาที่ครอบคลุม ทั้งทฤษฎี เทคนิค และสาระน่ารู้ที่ทันสมัยสอนโดยอาจารย์ผู้เชี่ยวชาญ และมีประสบการณ์ด้านความปลอดภัยของสารสนเทศโดยตรง

CompTIA Security+ (Exam Included)

กำหนดการ
17/11/2026 - 20/11/2026
9:30 am - 4:30 pm

About this course

CompTIA Security+ is the premier global certification that establishes the essential skills required for core security functions and a career in IT security. It showcases professionals’ capabilities in securing networks, applications, and devices, ensuring data integrity, confidentiality, and availability. CompTIA Security+ focuses on practical, hands-on skills to tackle real-world challenges. As the most widely recognized credential, it is invaluable for advancing in the dynamic field of cybersecurity.

Course Benefits

Skills learned

  • Identify various types of threats, attacks, and vulnerabilities, including malware, social engineering, and application attacks.

  • Utilize security technologies and tools, such as firewalls, intrusion detection systems, and endpoint security, to protect systems.

  • Design secure network architectures, implement secure systems, and apply secure protocols for architecture and design.

  • Manage identity and access concepts, including authentication, authorization, and accounting, to ensure secure access control.

  • Assess and manage risk through risk analysis, mitigation strategies, and business continuity planning.

  • Apply cryptography concepts, including encryption algorithms, public key infrastructure (PKI), and digital signatures, to secure data.

  • Implement compliance and operational security measures, including security policies, procedures, and best practices.

Who should Attend?

01

Systems Administrator

02

Network Administrator

03

Security Administrator

04

Junior IT Auditor/ Penetration Tester

05

Security Specialist

06

Security Consultant

07

Security Engineer

Course Contents

General security concepts 

  • Security controls: comparing technical, preventive, managerial, deterrent, operational, detective, physical, corrective, compensating, and directive controls.
  • Fundamental concepts: summarizing confidentiality, integrity, and availability (CIA); non-repudiation; authentication, authorization, and accounting (AAA); zero trust; and deception/disruption technology.
  • Change management: explaining business processes, technical implications, documentation, and version control.
  • Cryptographic solutions: using public key infrastructure (PKI), encryption, obfuscation, hashing, digital signatures, and blockchain.

Threats, vulnerabilities, and mitigations

  • Threat actors and motivations: comparing nation-states, unskilled attackers, hacktivists, insider threats, organized crime, shadow IT, and motivations like data exfiltration, espionage, and financial gain.
  • Threat vectors and attack surfaces: explaining message-based, unsecure networks, social engineering, file-based, voice call, supply chain, and vulnerable software vectors.
  • Vulnerabilities: explaining application, hardware, mobile device, virtualization, operating system (OS)-based, cloud-specific, web-based, and supply chain vulnerabilities.
  • Malicious activity: analyzing malware attacks, password attacks, application attacks, physical attacks, network attacks, and cryptographic attacks.
  • Mitigation techniques: using segmentation, access control, configuration enforcement, hardening, isolation, and patching.

Security architecture

  • Architecture models: comparing on-premises, cloud, virtualization, Internet of Things (IoT), industrial control systems (ICS), and infrastructure as code (IaC).
  • Enterprise infrastructure: applying security principles to infrastructure considerations, control selection, and secure communication/access.
  • Data protection: comparing data types, securing methods, general considerations, and classifications.
  • Resilience and recovery: explaining high availability, site considerations, testing, power, platform diversity, backups, and continuity of operations

Security operations

  • Computing resources: applying secure baselines, mobile solutions, hardening, wireless security, application security, sandboxing, and monitoring.
  • Asset management: explaining acquisition, disposal, assignment, and monitoring/tracking of hardware, software, and data assets.
  • Vulnerability management: identifying, analyzing, remediating, validating, and reporting vulnerabilities.
  • Alerting and monitoring: explaining monitoring tools and computing resource activities.
  • Enterprise security: modifying firewalls, IDS/IPS, DNS filtering, DLP (data loss prevention), NAC (network access control), and EDR/XDR (endpoint/extended detection and response).
  • Identity and access management: implementing provisioning, SSO (single sign-on), MFA (multifactor authentication), and privileged access tools.
  • Automation and orchestration: explaining automation use cases, scripting benefits, and considerations.
  • Incident response: implementing processes, training, testing, root cause analysis, threat hunting, and digital forensics.
  • Data sources: using log data and other sources to support investigations.

Security program management and oversight

  • Security governance: summarizing guidelines, policies, standards, procedures, external considerations, monitoring, governance structures, and roles/responsibilities.
  • Risk management: explaining risk identification, assessment, analysis, register, tolerance, appetite, strategies, reporting, and business impact analysis (BIA).
  • Third-party risk: managing vendor assessment, selection, agreements, monitoring, questionnaires, and rules of engagement.
  • Security compliance: summarizing compliance reporting, consequences of non-compliance, monitoring, and privacy.
  • Audits and assessments: explaining attestation, internal/external audits, and penetration testing.
  • Security awareness: implementing phishing training, anomalous behavior recognition, user guidance, reporting, and monitoring.

Examination

Exam details

  • Exam version: V7

  • Exam series code: SY0-701

  • Launch date: November 7, 2023

  • Number of questions: maximum of 90, a mix of multiple-choice and performance-based questions

  • Retirement: usually three years after launch (estimated 2026)

  • Duration: 90 minutes

  • Passing score: 750 (on a scale of 100-900)

  • Languages: English, Japanese, Portuguese, Spanish, and Thai

  • Recommended experience: CompTIA Network+ and two years of experience working in a security/ systems administrator job role

  • DoD 8140 work roles: cyber defense analyst, incident responder, vulnerability analyst, security control assessor, system administrator, network specialist, systems planner, IT project manager, information security manager, secure software assessor, and many more

 Prerequisite

  • Students should have CompTIA A+ and Network+ certifications, or equivalent knowledge / experience.

 

Training Info

Date : 

17/11/2026 - 20/11/2026

Time : 

9:30 am - 4:30 pm

Duration : 4 Days
Venue: Grande Centre Point Lumphini 16th Floor,1188 Rama IV Road,
Thungmahamek, Sathon, Bangkok 10120
Training Price: 45,000 baht (Ex.vat)

02 670 8980-4 ext. 321, 322, 323

Bookings

RSVP

0 Going
10 remaining
RSVP Here

Bookings are closed for this event.

ติดต่อเรา
เพื่อรับคำปรึกษาข้อมูลเพิ่มเติม
ACinfotec พร้อมเป็นพาร์ทเนอร์เคียงข้างคุณ ตั้งแต่ก้าวแรก… จนถึงการรับรอง