Course Information

  • Sessions 4 days
  • Duration 30 hrs
  • Level Advanced
  • Assessment NA

Venue

Kuala Lumpur: G-3A-02, Suite Pejabat Korporat, KL Gateway, No 2, Jalan kerinchi, Gerbang kernichi Lestari, 59200 Kuala Lumpur, Malaysia
Penang: Jalan Sungai Dua, 11700 Penang, Malaysia.

Course Brochure

Certification

By end of the course, learners should be able to:

  • LO1: Design leadership development programs incorporating leadership styles and communication strategies.
  • LO2: Develop leadership initiatives to enhance talent management and organizational leadership practices.
  • LO3: Oversee the adoption of best practices for leadership development by leveraging development opportunities.
  • LO4: Evaluate the effectiveness of leadership programs and propose improvements.

CompTIA Authorised Delivery Partner

We are an Authorised CompTIA Delivery Partner. To get the official CompTIA certification, please register your certification exam at a Pearson VUE test center.

CompTIA Certified SecurityX Training

Course Code: C718
Share

What's This Course About

The CompTIA Certified SecurityX Training equips professionals with essential cybersecurity skills to manage risks, implement governance frameworks, and ensure compliance with legal regulations. Participants will gain hands-on knowledge in risk management strategies, security architecture, and cloud infrastructure, including zero-trust implementation and identity access management (IAM). The course also covers software security, operational resilience, and troubleshooting authentication frameworks.

This training also focuses on security engineering and operations, where learners will enhance endpoint security, configure network infrastructure, and apply cryptographic concepts. Participants will explore advanced security automation techniques, threat modeling, and real-world incident response strategies. The course provides in-depth insights into threat hunting tools, attack mitigation, and security monitoring, preparing professionals for critical roles in cybersecurity defense.

Bonus: Free Practice Exams

Get exam-ready on our Practice Exam Portal — train in realistic Practice Mode and timed Exam Mode, then retake them as many times as you like before the real exam.

Start Practising →

WSQ Funding

Full Fee 5,600.00 Before GST
GST 504.00 9% of fee
Baseline Nett 3,304.00 SG/PR age 21+ · 50% funded
MCES / SME Nett 2,184.00 SG age 40+ · 70% funded

Course Fee

MYR5,600.00

Course Date

Course Time

Additional Note

Please bring your own laptop for hands-on training. If you don't have laptop, we can provide spare laptop for training use.

Disclaimer: The course dates displayed on our website are tentative and subject to trainer availability. We will confirm the final date after checking with the trainer. You are also welcome to email us your preferred date at sales@tertiarycourses.com.my, and we will do our best to coordinate with the trainer's schedule.

Post-Course Support

  • We may provide consultation related to the subject matter after the course.
  • Please email your queries to sales@tertiarycourses.com.my and we will forward your queries to the subject matter experts and get back to you as soon as possible.

Cancellation & Reschedule Policy

  • We reserve the right to cancel or re-schedule the course due to unforeseen circumstances. If the course is cancelled, we will refund 100% to participants.
  • Note: the venue of the training is subject to changes due to class size and availability of the classroom. The minimum class size to start a class is 3 Pax.

Course Details

Course Details

What You'll Learn

This course prepares you for the CAS-005 certification exam, covering all official exam domains and their approximate weightings:

Domain 1 Governance, Risk, and Compliance (20%)

  • Implement governance components (security program documentation, GRC tools, change/configuration management, data governance)
  • Perform risk management activities (risk assessment frameworks, third-party/supply chain risk, confidentiality/integrity/availability/privacy risk considerations)
  • Explain how compliance affects security strategy (industry standards e.g. PCI DSS, ISO/IEC 27000, NIST CSF; privacy regulations e.g. GDPR/CCPA; audits vs assessments vs certifications)
  • Perform threat-modeling activities (actor characteristics, ATT&CK/CAPEC/STRIDE/Cyber Kill Chain frameworks, attack surface determination)
  • Summarize information security challenges of AI adoption (prompt injection, model theft/inversion, AI-enabled attacks, AI-enabled assistants/digital workers)

Domain 2 Security Architecture (27%)

  • Analyze requirements to design resilient systems (component placement, availability/integrity design, recoverability, scaling)
  • Implement security throughout the systems life cycle (security requirements, SAST/DAST/IAST/RASP, SCA, SBOM, CI/CD, supply chain and hardware assurance)
  • Integrate appropriate controls into secure architecture design (attack surface management, detection/threat-hunting enablers, DLP, hybrid infrastructures)
  • Apply security concepts to access, authentication, and authorization system design (provisioning/deprovisioning, federation, SSO, PKI, access control models)
  • Securely implement cloud capabilities in an enterprise environment (CASB, shared responsibility model, IaC via Terraform/Ansible, container/serverless security)
  • Integrate Zero Trust concepts into system architecture design (continuous authorization, microsegmentation, deperimeterization via SASE/SD-WAN)

Domain 3 Security Engineering (31%)

  • Troubleshoot IAM components in an enterprise environment (subject access control, MFA, PAM, federation protocols SAML/OAuth/OpenID)
  • Analyze requirements to enhance endpoint and server security (EDR, HIPS/HIDS, application control, MDM, threat-actor TTPs)
  • Troubleshoot complex network infrastructure security issues (DNS security, email security DKIM/SPF/DMARC, TLS/PKI issues, DDoS, ACL issues)
  • Implement hardware security technologies and techniques (roots of trust, TPM/HSM, secure boot, tamper detection, firmware attacks)
  • Secure specialized and legacy systems against threats (OT/SCADA/ICS, IoT, embedded systems, industry-specific challenges)
  • Use automation to secure the enterprise (scripting, IaC, SOAR, generative AI, SCAP/CVE/CVSS) and apply advanced cryptographic concepts and use cases (post-quantum cryptography, homomorphic encryption, tokenization, digital signatures)

Domain 4 Security Operations (22%)

  • Analyze data to enable monitoring and response activities (SIEM, aggregate data analysis, behavior baselines, reporting/dashboards)
  • Analyze vulnerabilities and attacks to recommend mitigations reducing the attack surface (injection, XSS, deserialization, input validation, patching)
  • Apply threat-hunting and threat intelligence concepts (OSINT, TIPs, STIX/TAXII, Sigma/YARA rule languages, indicators of attack)
  • Analyze data and artifacts in support of incident response activities (malware analysis, reverse engineering, network/host/metadata analysis, root cause analysis, insider threat)

Course Info

Promotion Code

Your will get 10% discount voucher for 2nd course onwards if you write us a Google review.

Minimum Entry Requirement

Knowledge and Skills

  • Able to operate using computer functions
  • Minimum 3 GCE ‘O’ Levels Passes including English or WPL Level 5 (Average of Reading, Listening, Speaking & Writing Scores)

Attitude

  • Positive Learning Attitude
  • Enthusiastic Learner

Experience

  • Minimum of 1 year of working experience.

Target Age Group: 21-65 years old

Minimum Software/Hardware Requirement

Software:

You can download and install the following software:

Hardware: Windows and Mac Laptops

Job Roles

Job Roles

  • Cybersecurity Analyst
  • Information Security Officer
  • Security Operations Center (SOC) Analyst
  • IT Security Consultant
  • Network Security Engineer
  • Cyber Risk Analyst
  • Governance, Risk, and Compliance (GRC) Specialist
  • Security Architect
  • IT Security Administrator
  • Cloud Security Engineer
  • Security Incident Response Specialist
  • Penetration Tester
  • Ethical Hacker
  • Threat Intelligence Analyst
  • Systems Security Engineer
  • DevSecOps Engineer
  • Security Compliance Manager
hnical Team Lead (overseeing UI development).

Trainers

Trainers

Saeid is co-founder of Skymics Sdn Bhd. He has 8 years of experience in the field of IoT (Internet of Things) and Information Technology. He is a certified IBM IoT Practitioner and instructor, and a Certified Citizen Data Scientist Train-The-Trainer. He has been co-inventor of 3 inventions during the last 4 years.

Review

Customer Reviews (7)

Engaging trainer Review by Course Participant/Trainee
1. Do you find the course meet your expectation?
2. Do you find the trainer knowledgeable in this subject?
3. How do you find the training environment
Well organised course with clear objectives. The step-by-step approach made it easy to follow. (Posted on 20/05/2026)
Clear and easy to follow Review by Course Participant/Trainee
1. Do you find the course meet your expectation?
2. Do you find the trainer knowledgeable in this subject?
3. How do you find the training environment
Well organised course with clear objectives. The step-by-step approach made it easy to follow. (Posted on 23/04/2026)
Knowledgeable trainer Review by Course Participant/Trainee
1. Do you find the course meet your expectation?
2. Do you find the trainer knowledgeable in this subject?
3. How do you find the training environment
The course materials were detailed and easy to reference afterwards. Great value for money. (Posted on 19/04/2026)
Practical and relevant Review by Course Participant/Trainee
1. Do you find the course meet your expectation?
2. Do you find the trainer knowledgeable in this subject?
3. How do you find the training environment
Well organised course with clear objectives. The step-by-step approach made it easy to follow. (Posted on 01/10/2025)
Fantastic experience Review by Course Participant/Trainee
1. Do you find the course meet your expectation?
2. Do you find the trainer knowledgeable in this subject?
3. How do you find the training environment
A very practical course. The trainer made a complex topic simple and enjoyable to learn. (Posted on 11/04/2025)

Items 1 to 5 of 7 total

per page
Page:
  1. 1
  2. 2

Write Your Own Review

You're reviewing: CompTIA Certified SecurityX Training

How do you rate this product? *

  1 star 2 stars 3 stars 4 stars 5 stars
1. Do you find the course meet your expectation?
2. Do you find the trainer knowledgeable in this subject?
3. How do you find the training environment