Systems and Network Security Fundamentals
Protecting an information system starts with consistent choices about access, equipment and networks. Connect threats to defensive measures to understand where you can act. Develop useful technical foundations for contributing to security operations.
- Duration
- 2 days 14 hours
- Code
- SSR006FR Code
Presentation
In today's workplace, protecting digital infrastructure is an essential foundation of business continuity. As cyberattacks become more sophisticated and systems remain constantly interconnected, mastering fundamental defence mechanisms is vital. This course equips you to turn standard infrastructure into a resilient environment capable of resisting internal and external threats.
Throughout the course, you will explore Windows and Linux operating system hardening techniques to reduce their exposure. You will develop technical skills in securing network traffic through firewall configuration and encrypted protocols. Realistic attack scenarios underpin your learning, helping you understand attackers' thinking and anticipate their actions against critical equipment.
After these two intensive days, you will have a rigorous methodology to audit and protect IT resources independently. You will be able to configure consistent security policies, manage access permissions effectively and respond appropriately to detected incidents. You will leave with an operational action plan to strengthen your IT estate's security posture immediately and ensure the integrity of data flows.
Objectives
By the end of this course, you will be able to:
- understand essential digital security concepts and their strategic importance;
- identify system vulnerabilities and common network attack vectors;
- deploy appropriate protection for servers and workstations;
- apply recommended security configurations to network equipment;
- respond methodically when an anomaly or intrusion is detected.
Program
Module 1: Master systems security principles
- Analyse the fundamental pillars: data confidentiality, integrity and availability.
- Types of digital attacks: malware, vulnerability exploitation and insider threats.
- Allocate roles and responsibilities throughout the security chain.
Practical exercises
- Analyse a workstation intrusion scenario to identify points of compromise.
Module 2: Secure operating environments
- Granular user account management and privilege allocation.
- Implement robust authentication and password policies.
- The security maintenance lifecycle: update management and patching.
Practical exercises
- Configure Windows or Linux security according to vendor recommendations.
Module 3: Protect critical applications and sensitive data
- Harden exposed applications and control their environment.
- Encryption techniques and backup strategies to ensure resilience.
- Active monitoring through event log collection and analysis.
Practical exercises
- Implement file encryption and configure an isolated backup strategy.
Module 4: Structure network infrastructure defence
- Design secure architectures and segment by trust zone.
- Deploy secure communication protocols: HTTPS, SSH and VPN tunnels.
- Filter traffic and master perimeter firewall rules.
Practical exercises
- Configure a firewall to allow only critical services and block high-risk ports.
Module 5: Detect intrusions and manage incident response
- Use real-time network traffic monitoring and analysis tools.
- Interpret security alerts and assess suspicious events.
- Execute the response plan to isolate compromised systems and limit impact.
Practical exercises
- Simulate a network attack and conduct forensic analysis of the traces left behind.
Module 6: Develop a comprehensive hardening policy
- Advanced local network segmentation and secure remote access management.
- Define and document a consistent overall security policy.
Practical exercises
- Design a complete hardening plan for a typical enterprise network infrastructure.
Audience
This course is intended for technicians and engineers seeking a more professional technical approach to security, including:
- systems and network administrators responsible for maintaining and protecting critical production infrastructure;
- IT technicians providing local support and hardening employee workstations;
- entry-level security engineers seeking operational technical foundations at the start of their careers;
- anyone responsible for configuring IT equipment who wants to integrate security from the deployment stage.
Prerequisites
The following prerequisite applies:
- Technical skills: basic knowledge of the OSI model and IP addressing. Practical familiarity with Windows systems or Linux command lines is essential for the workshops.
Teaching and assessment methods
- Initial skills assessment
- Training materials provided to participants
- Continuous assessment throughout the course
- End-of-course feedback questionnaire
- Combination of theory and practical application
- Attendance records
- Post-course follow-up evaluation
- Quiz / multiple-choice questions
- Practical exercises
- Case study
Course highlights
- Immersive learning: spend 50% of your time in practical workshops using simulated environments to consolidate learning immediately.
- Dual expertise: master protection measures for both operating systems and network infrastructure.
- Operational tools: leave with hardening checklists directly applicable to Windows and Linux servers.
- Recognised teaching expertise: benefit from official ENI training materials, ensuring structured content aligned with professional standards.
Dates and sessions
Choose the date and delivery format that suit you.
No upcoming sessions are currently available.
fr
en