Cybersecurity Essentials
Build a practical foundation in cybersecurity. This course covers the threats organizations face, the defensive controls used to counter them, and the everyday best practices that keep systems and data secure. The content is strictly defensive and educational, mapped to entry-level industry expectations.
About This Course
Cybersecurity Essentials gives you a structured, practical introduction to defending modern systems and networks. You'll start with core concepts such as the CIA triad and the current threat landscape, then progress through networking, cryptography, identity, endpoint and web application security, and security operations.
The course is built around defensive, educational content. Rather than teaching how to attack systems, it focuses on understanding how attacks work so you can recognize, prevent, detect, and respond to them. You'll finish with a hands-on defensive lab capstone that ties the concepts together, and you'll be prepared to continue toward entry-level certifications such as CompTIA Security+.
What You'll Learn
- Apply the CIA triad and core security principles to real scenarios
- Identify common threats including malware, phishing, and social engineering
- Explain networking fundamentals and apply network security controls
- Understand cryptography concepts: encryption, hashing, TLS, and PKI
- Configure identity, authentication, and access control models (MFA, least privilege, RBAC)
- Harden and patch systems and endpoints against common attacks
- Recognize and mitigate the OWASP Top 10 web application risks
- Monitor, detect, and respond to incidents using a structured process
- Map security work to governance, risk, and compliance requirements
- Build job-ready skills aligned with entry-level certifications like CompTIA Security+
Requirements
- A computer with internet access (Windows, Mac, or Linux)
- Basic computer skills and comfort installing free software
- Basic familiarity with networking concepts (IP addresses, browsers, Wi-Fi)
- No prior security experience required — concepts are introduced from the ground up
- Willingness to run safe, self-contained lab exercises in a virtual machine
Who This Course Is For
- Beginners who want a solid, practical foundation in cybersecurity
- IT and help-desk professionals moving toward a security role
- Developers and sysadmins who want to build security into their work
- Students preparing for entry-level certifications such as CompTIA Security+
- Anyone responsible for protecting systems, data, or users at work
- Career changers exploring a future in information security
Establish the vocabulary and mental models that the rest of the course builds on. You'll learn what security professionals are actually protecting and why, and how to reason about risk.
-
1.1 What Cybersecurity Is and Why It Matters
-
1.2 Confidentiality, Integrity, and Availability
-
1.3 Threats, Vulnerabilities, and Risk
-
1.4 Defense in Depth and Security Controls
-
1.5 Lab: Mapping Assets and Risks
Understand how attackers operate so you can defend against them. Covers malware families, phishing, and social engineering — taught from a defender's perspective with no offensive instructions.
-
2.1 Malware Types: Viruses, Worms, Trojans, Ransomware
-
2.2 Phishing and Email-Based Attacks
-
2.3 Social Engineering and Human Risk
-
2.4 Denial-of-Service and Network Attacks
-
2.5 Threat Actors and the Attack Lifecycle
-
2.6 Lab: Spotting and Reporting a Phishing Email
Learn how networks move data and where security controls fit. Covers the TCP/IP model, common protocols and ports, and defensive devices such as firewalls and VPNs.
-
3.1 TCP/IP, the OSI Model, and Common Protocols
-
3.2 Ports, Services, and Network Segmentation
-
3.3 Firewalls, IDS/IPS, and VPNs
-
3.4 Securing Wireless Networks
-
3.5 Lab: Reading Network Traffic with Wireshark
Demystify the cryptography that protects data in transit and at rest. Covers symmetric and asymmetric encryption, hashing, digital certificates, TLS, and public key infrastructure (PKI).
-
4.1 Symmetric vs. Asymmetric Encryption
-
4.2 Hashing and Message Integrity
-
4.3 Digital Certificates, TLS, and HTTPS
-
4.4 Public Key Infrastructure (PKI)
-
4.5 Lab: Inspecting a TLS Certificate
Learn how systems verify who users are and what they're allowed to do. Covers authentication factors, MFA, single sign-on, and access control models including least privilege and RBAC.
-
5.1 Authentication Factors and Strong Passwords
-
5.2 Multi-Factor Authentication and SSO
-
5.3 Authorization and Access Control Models
-
5.4 Least Privilege and Role-Based Access Control
-
5.5 Lab: Configuring MFA and Role Permissions
Apply practical hardening techniques to workstations, servers, and mobile devices. Covers patch management, secure configuration, endpoint protection, and backup strategy.
-
6.1 Operating System Hardening Fundamentals
-
6.2 Patch and Vulnerability Management
-
6.3 Antivirus, EDR, and Endpoint Protection
-
6.4 Backups, Recovery, and Data Protection
-
6.5 Lab: Hardening a Virtual Machine Baseline
Understand the most common web application risks and how to defend against them. Organized around the OWASP Top 10, with a focus on secure coding and configuration rather than exploitation.
-
7.1 How Web Applications Work and Where They Break
-
7.2 Injection and Broken Access Control
-
7.3 Cross-Site Scripting and Authentication Failures
-
7.4 Secure Coding and Input Validation Practices
-
7.5 Lab: Reviewing a Web App Against the OWASP Top 10
See how security teams detect and handle incidents in practice. Covers logging, SIEM concepts, the incident response lifecycle, and basic threat intelligence.
-
8.1 Logging, Monitoring, and SIEM Basics
-
8.2 The Incident Response Lifecycle
-
8.3 Detection, Containment, and Recovery
-
8.4 Threat Intelligence and the MITRE ATT&CK Framework
-
8.5 Lab: Investigating Alerts in a Log Dataset
Connect technical security work to the policies, frameworks, and regulations that drive it. Covers security policies, risk management, common frameworks, and privacy regulations.
-
9.1 Security Policies, Standards, and Procedures
-
9.2 Risk Management and Risk Assessment
-
9.3 Frameworks: NIST, ISO 27001, and CIS Controls
-
9.4 Privacy and Compliance: GDPR, HIPAA, and PCI DSS
Bring everything together in a guided capstone where you secure and monitor a small environment, then document your findings — all using safe, self-contained lab resources.
-
10.1 Capstone Scenario and Lab Setup
-
10.2 Capstone Part 1: Harden and Configure Controls
-
10.3 Capstone Part 2: Detect and Respond to an Incident
-
10.4 Documenting Findings and Next Steps Toward Security+
Priya Natarajan
Security Engineer & Educator, CISSP, CompTIA Security+
About the Instructor
Priya Natarajan is a security engineer with over 12 years of experience defending enterprise networks, cloud workloads, and web applications. She has worked across financial services and SaaS, building security operations and incident response programs from the ground up.
She holds the CISSP and CompTIA Security+ certifications and has led blue-team and security operations center (SOC) functions, focusing on detection engineering, vulnerability management, and security awareness. Priya has spent the last several years teaching, helping thousands of career changers and IT professionals move into security roles.
Her teaching style emphasizes defensive, real-world skills and ethical practice. Every lab in her courses is self-contained and designed to build the habits employers expect from entry-level security analysts.
Other Courses by Priya Natarajan
Marcus Reed
I came from a help-desk background and this course filled in all the gaps I had around networking and cryptography. The defensive labs are genuinely useful, and the OWASP module made web security finally make sense. I felt well prepared when I started studying for Security+.
Elena Vasquez
Really clear explanations, especially the incident response lifecycle and the SIEM lab. I'm giving 4 stars only because I wished the governance module went a little deeper into frameworks. Everything stayed strictly defensive, which I appreciated as a developer wanting to write safer code.
Daniel Okoye
The capstone tied the whole course together. Hardening a VM, then detecting and responding to a simulated incident, gave me real confidence. Priya is a fantastic instructor who clearly knows the field. This is exactly the practical foundation I was looking for.
No prior security experience is required. We start with core concepts and build up gradually. You should be comfortable using a computer and have basic familiarity with networking ideas like IP addresses and Wi-Fi, but everything security-specific is taught from the ground up.
The course is designed to run over 10 weeks at about 5 hours per week, including roughly 38 hours of video plus labs and reading. Most students finish in 8-12 weeks depending on pace. You have lifetime access, so you can move faster or slower and revisit the material whenever you like.
No. This course is strictly defensive and educational. We explain how common attacks work so you can recognize, prevent, detect, and respond to them, but we do not provide offensive tooling or step-by-step exploitation instructions. All labs are safe, self-contained, and meant to be run in your own virtual machine.
Yes. The content is aligned with the knowledge areas covered by entry-level certifications such as CompTIA Security+. While it is not an official exam-prep bootcamp, it builds the foundational concepts and vocabulary you'll need before sitting for that exam, and it points you toward next steps.
Yes, you will receive a certificate of completion once you finish all the course lessons and labs. You can add this certificate to your LinkedIn profile or resume to show employers that you've built a practical foundation in cybersecurity.
You'll use free, widely available tools and a virtual machine for the hands-on labs. We provide setup guides for Windows, macOS, and Linux, and all lab environments are isolated so you can practice safely without affecting your main system or any production network.
Absolutely. The course includes access to our Q&A discussion board where you can ask questions and get help from both the instructor and other students. Priya typically responds within 24-48 hours, and there's a community space where learners share resources and support each other.
Ready to Start Your Cybersecurity Journey?
Join more than 9,000 students already building a defensive foundation in this course