Cisco CCST Cybersecurity 100-160: secure systems and networks
Protecting information systems starts with consistent decisions about access, devices and networks. Connect threats to defensive measures to understand your options. Develop technical foundations that support your contribution to security operations.
- Duration
- 5 days 35 hours
- Code
- CCSTC-FR Code
- Certification
- Cisco CCST Cybersecurity Certification
Accredited training for the Cisco CCST Cybersecurity certification.
Presentation
As cyberattacks multiply against organisations of every size, employers seek professionals who can identify threats, protect systems and networks and respond effectively to security incidents. Cisco CCST Cybersecurity certification provides a recognised entry point for validating these fundamental skills.
The programme covers 5 key domains: essential security principles, basic network security, endpoint protection, vulnerability and risk management, and incident management. Each module combines conceptual learning and practical scenarios grounded in workplace realities.
This course also prepares you for the 100-160 CCST Cybersecurity examination. Passing earns the Cisco Certified Support Technician Cybersecurity credential and provides an initial step towards CyberOps Associate certification (see the Certification tab for details).

Oo2 works with Fastlane, an authorised Cisco Platinum centre, to organise certification examinations. This partnership enables you to schedule and take official examinations directly through partner Fastlane centres.
Objectives
By the end of this CCST Cybersecurity course, you will be able to:
- define fundamental security principles, attack vectors and system hardening best practices;
- identify and analyse common threats, including malware, denial-of-service attacks and social engineering;
- apply access management principles, including multifactor authentication and password policies;
- secure network infrastructure by configuring firewalls, VPNs, ACLs and access control technologies;
- administer endpoint security through system log monitoring, alert interpretation and remediation;
- implement vulnerability assessment and risk management strategies suited to organisational contexts;
- prepare for and pass 100-160 to earn Cisco Certified Support Technician (CCST) Cybersecurity certification and progress towards CyberOps Associate.
Program
Module 1: Defining essential security principles
- Fundamental concepts of vulnerabilities, threats, exploits and risks.
- Attack vectors, system hardening and defence in depth.
- Attacker types, motivations and the cybersecurity code of ethics for professional conduct.
- Encryption methods, certificates, PKI and protocols using encryption.
Hands-on exercises
- Identify and classify common threats in a simulated environment and apply encryption principles to secure data in transit.
Module 2: Analysing common threats and vulnerabilities
- Malware, ransomware, botnets and denial-of-service attacks.
- Social engineering, phishing, vishing, smishing and tailgating.
- Insider threats, man-in-the-middle attacks, IoT vulnerabilities and advanced persistent threats.
- Authentication, authorisation and accounting (AAA), RADIUS and password policies.
Hands-on exercises
- Simulate threat analysis in a business scenario and configure a password policy aligned with security best practices.
Module 3: Securing network infrastructure
- Vulnerabilities in TCP/IP, UDP, HTTP, ARP, ICMP, DHCP and DNS.
- IPv4 and IPv6 addressing, network segmentation, CIDR notation and public/private network separation.
- Network security architectures, DMZs, virtualisation, honeypots, proxy servers, IDS and IPS as network defence technologies.
- Configuring ACLs, firewalls, VPNs and NAC, and implementing a secure SoHo wireless network.
Hands-on exercises
- Configure a network access control policy and implement a secure wireless network with MAC address filtering and WPA encryption.
Module 4: Administering endpoint security
- Windows, macOS and Linux security concepts, including host firewalls, permissions and privilege management.
- Endpoint security information collection tools, including netstat, nslookup and tcpdump.
- System security policy compliance, hardware and software inventories, backups and GDPR, HIPAA and PCI DSS requirements.
- Windows updates, application patches, drivers and firmware, system log interpretation and malware remediation.
Hands-on exercises
- Analyse Windows event logs for anomalies, then perform malware remediation in a test environment.
Module 5: Assessing vulnerabilities and managing risks
- Vulnerability identification, management and mitigation, and active/passive reconnaissance techniques.
- Using CVE databases, sector analysis tools and threat intelligence services.
- Distinguishing vulnerabilities from risks, risk ranking, mitigation strategies and criticality levels.
- Disaster recovery plans, business continuity plans and detective, preventive and corrective controls.
Hands-on exercises
- Analyse vulnerabilities in a simulated network and produce a risk report with prioritised mitigation recommendations.
Module 6: Managing cybersecurity incidents
- The role of SIEM and SOAR, network data monitoring and suspicious event identification in incident detection.
- The Cyber Kill Chain, MITRE ATT&CK matrix, Diamond Model and tactics, techniques and procedures for attack attribution and digital forensics.
- GDPR, HIPAA, PCI-DSS, FERPA and FISMA compliance frameworks and incident notification requirements.
- Incident response policy, plan and procedure components and NIST SP 800-61 lifecycle stages.
Hands-on exercises
- Analyse a network packet capture to identify a security incident and apply NIST lifecycle stages to document and escalate it.
Audience
This course is intended for early-career IT professionals and people moving into cybersecurity, including:
- IT and first-line support technicians developing a cybersecurity specialism;
- IT students and interns preparing to enter the security job market;
- junior cybersecurity analysts validating and structuring foundational knowledge;
- career changers seeking recognised certification to accelerate their transition into cybersecurity.
Prerequisites
The following prerequisite applies:
- Theoretical foundations: fundamental understanding of computer networks and common operating systems.
Teaching and assessment methods
- Initial skills assessment
- Training materials provided to participants
- Continuous assessment throughout the course
- End-of-course feedback questionnaire
- Combination of theory and practical application
- Attendance records
- Post-course follow-up evaluation
- Quiz / multiple-choice questions
- Practical exercises
Course highlights
- Complete syllabus coverage: progress through the 5 official 100-160 domains, from security principles to incident management, in a coherent, structured programme.
- Realistic practical scenarios: every module includes workplace-based exercises to develop immediately applicable skills.
- Certification included: the official 100-160 CCST Cybersecurity examination is included without additional fees through our partner Fastlane.
- Pathway to CyberOps Associate: CCST Cybersecurity provides the first official step towards Cisco CyberOps Associate and SOC roles.
Dates and sessions
Choose the date and delivery format that suit you.
No upcoming sessions are currently available.
Session alerts
Cisco is a registered trademark of Cisco Systems, Inc. in the United States and other countries.
fr
en