Next-Generation Network Security Training for IT Professionals. Skills Employers Love. Talent the Cyber World Needs.

Learn the skills that matter! EC-Council’s vendor-neutral network security certifications provide an unbiased approach to learning secure networking practices, as well as how to analyze and harden computing systems prevalent in the current IT infrastructure.

CND v3 has earned a reputation as the only program in the market that is 100% focused on network security and defense.

IT professionals need to be part of the cybersecurity ecosystem, especially in a post-COVID Digital Transformation era. If you think cybersecurity is the responsibility of cyber teams alone, think again!

Overview

The only true blue team network defense program!

Cybersecurity now dominates the priorities of every enterprise striving to adapt to a post-COVID world. Forced to go remote, their workers’ identities and devices are the new security perimeter. In fact, cybersecurity for business is now as critical as internet access itself.

The only program built for the world’s largest work-from-home experiment!
Studies and news reports had demonstrated that cyber attackers are quick to attack the new, unprotected threat surfaces created when millions of employees started working from home. Providing network security to such an unprecedented, distributed ecosystem in this post pandemic world is every Network Defense Team’s acid test.

The Certified Network Defender v3 program has been upgraded and loaded with battle-ready ammunition to help Blue Teams defend and win the war against network breaches. Individuals and corporations looking to strengthen their Network Defense Skills will find CND v3 a must-have for 5 reasons:

  • Only comprehensive network defense program built to incorporate critical
    secure network skills – Protect, Detect, Respond and Predict
  • Maps to NICE 2.0 Framework
  • Comes packed with the latest tools, technologies, and techniques
  • Deploys a hands-on approach to learning
  • Designed with an enhanced focus on Threat Prediction, Business Continuity
    and Disaster Recovery

Skills Covered

  • Understanding network security management
  • Establishing network security policies and procedures
  • Windows and Linux security administration
  • Setting up mobile and IoT device security
  • Implementing data security techniques on networks
  • Embedding virtualization technology security
  • Determining cloud and wireless security
  • Deploying and using risk assessment tools
  • Learn basics of first response and forensics
  • Understanding indicators of Compromise, Attack, and Exposures (IoC, IoA, IoE)
  • Building threat intelligence capabilities
  • Establishing and monitoring log management
  • Implementing endpoint security
  • Configuring optimum firewall solutions
  • Understanding and using IDS/IPS technologies
  • Establishing Network Authentication, Authorization, Accounting (AAA)

Prerequisites

There are no pre-requisites required to attend  this course.

Target Audience

CND v3 is for those who work in the

  • Network Administration/cybersecurity domain in the capacity of Network Administrator/Engineer,
  • Network Security Administrator/Engineer/Analyst,
  • Cybersecurity Engineer,
  • Security Analyst,
  • Network Defense Technician,
  • Security Operator.

CND v3 is for all cybersecurity operations, roles, and anyone looking to build a career in cybersecurity.

Course Curriculum

Module 1: Network Attacks and Defense Strategies

  • Explain essential terminologies related to network security attacks
  • Describe the various examples of network-level attack techniques
  • Describe the various examples of application-level attack techniques
  • Describe the various examples of social engineering attack techniques
  • Describe the various examples of email attack techniques
  • Describe the various examples of mobile device-specific attack techniques
  • Describe the various examples of cloud-specific attack techniques
  • Describe the various examples of wireless network-specific attack techniques
  • Describe the various examples of Supply Chain Attack techniques
  • Describe Attacker’s Hacking Methodologies and Frameworks
  • Understand fundamental goal, benefits, and challenges in network defense
  • Explain Continual/Adaptive security strategy
  • Explain defense-in-depth security strategy

Module 2: Administrative Network Security

  • Learn to obtain compliance with regulatory framework and standards
  • Discuss various Regulatory Frameworks, Laws, and Acts
  • Learn to design and develop security policies
  • Learn to conduct different type security and awareness training
  • Learn to implement other administrative security measures
  • Discuss Asset Management
  • Learn How to Stay Up to Date on Security Trends and Threats

Module 3: Technical Network Security

  • Discuss access control principles, terminologies, and models
  • Redefine the Access Control in Today’s Distributed and Mobile Computing World
  • Discuss Identity and Access Management (IAM)
  • Discuss cryptographic security techniques
  • Discuss various cryptographic algorithms
  • Discuss security benefits of network segmentation techniques
  • Discuss various essential network security solutions
  • Discuss various essential network security protocols

Module 4: Network Perimeter Security

  • Understand firewall security concerns, capabilities, and limitations
  • Understand different types of firewall technologies and their usage
  • Understand firewall topologies and their usage
  • Distinguish between hardware, software, host, network, internal, and external firewalls
  • Select firewalls based on its deep traffic inspection capability
  • Discuss firewall implementation and deployment process
  • Discuss recommendations and best practices for secure firewall Implementation and
    deployment
  • Discuss firewall administration concepts
  • Understand role, capabilities, limitations, and concerns in IDS deployment
  • Discuss IDS classification
  • Discuss various components of IDS
  • Discuss effective deployment of network and host-based IDS
  • Learn to how to deal with false positive and false negative IDS/IPS alerts
  • Discuss the considerations for selection of an appropriate IDS/IPS solutions
  • Discuss various NIDS and HIDS Solutions with their intrusion detection capabilities
  • Snort
  • Discuss router and switch security measures, recommendations, and best practices
  • Leverage Zero Trust Model Security using Software-Defined Perimeter (SDP

Module 5: Endpoint Security-Windows Systems

  • Understand Window OS and Security Concerns
  • Discuss Windows Security Components
  • Discuss Various Windows Security Features
  • Discuss Windows Security Baseline Configurations
  • Discuss Windows User Account and Password Management
  • Discuss Windows Patch Management
  • Discuss User Access Management
  • Windows OS Security Hardening Techniques
  • Discuss Windows Active Directory Security Best Practices
  • Discuss Windows Network Services and Protocol Security

Module 6: Endpoint Security-Linux Systems

  • Understand Linux OS and security concerns
  • Discuss Linux Installation and Patching
  • Discuss Linux OS Hardening Techniques
  • Discuss Linux User Access and Password Management
  • Discuss Linux Network Security and Remote Access
  • Discuss Various Linux Security Tools and Frameworks

Module 7: Endpoint Security- Mobile Devices

  • Common Mobile Usage Policies in Enterprises
  • Discuss Security Risk and Guidelines associated with Enterprises mobile usage policies
  • Discuss and implement various enterprise-level mobile security management Solutions
  • Discuss and implement general security guidelines and best practices on Mobile platforms
  • Discuss Security guidelines and tools for Android devices
  • Discuss Security guidelines and tools for iOS devices

Module 8: Endpoint Security-IoT Devices

  • Understanding IoT Devices, their need and Application Areas
  • Understanding IoT Ecosystem and Communication models
  • Understand Security Challenges and risks associated with IoT-enabled environments
  • Discuss the security in IoT-enabled environments
  • Discuss Security Measures for IoT enabled IT Environments
  • Discuss IoT Security Tools and Best Practices
  • Discuss and refer various standards, Initiatives and Efforts for IoT Security

Module 9: Administrative Application Security

  • Discuss and implement Application Whitelisting and Blacklisting
  • Discuss and implement application Sandboxing
  • Discuss and implement Application Patch Management
  • Discuss and implement Web Application Firewall (WAF)

Module 10: Data Security

  • Understand data security and its importance
  • Understand Data Integrity and Its Importance
  • Discuss the implementation of data access controls
  • Discuss the implementation of Encryption of Data at rest
  • Discuss the implementation of Encryption of “Data at transit”
  • Discuss Data Masking Concepts
  • Discuss data backup and retention
  • Discuss Data Destruction Concepts
  • Data Loss Prevention Concepts

Module 11: Enterprise Virtual Network Security

  • Discuss the evolution of network and security management concept in modern Virtualized IT Environments
  • Understand Virtualization Essential Concepts
  • Discus Network Virtualization (NV) Security
  • Discuss SDN Security
  • Discuss Network Function Virtualization (NFV) Security
  • Discus OS Virtualization Security
  • Discuss Security Guidelines, Recommendations and Best Practices for Containers
  • Discuss Security Guidelines, Recommendations and Best practices for Dockers
  • Discuss Security Guidelines, Recommendations and Best Practices for Kubernetes

Module 12: Enterprise Cloud Network Security

  • Understand Cloud Computing Fundamentals
  • Understanding the Insights of Cloud Security
  • Evaluate CSP for Security before Consuming Cloud Service
  • Discuss security in Amazon Cloud (AWS)
  • Discuss security in Microsoft Azure Cloud
  • Discuss security in Google Cloud Platform (GCP)
  • Discuss general security best practices and tools for cloud security

Module 13: Enterprise Wireless Network Security

  • Understand wireless network fundamentals
  • Understand wireless network encryption mechanisms
  • Understand wireless network authentication methods
  • Discuss and implement wireless network security measures

Module 14: Network Traffic Monitoring and Analysis

  • Understand the need and advantages of network traffic monitoring
  • Setting up the environment for network monitoring
  • Determine baseline traffic signatures for normal and suspicious network traffic
  • Perform network monitoring and analysis for suspicious traffic using Wireshark
  • Discuss network performance and bandwidth monitoring tools and techniques
  • Understand Network Anomaly Detection with Behavior analysis

Module 15: Network Logs Monitoring and Analysis

  • Understand logging concepts
  • Discuss log monitoring and analysis on Windows systems
  • Discuss log monitoring and analysis on Linux
  • Discuss log monitoring and analysis on Mac
  • Discuss log monitoring and analysis in Firewall
  • Discuss log monitoring and analysis on Routers
  • Discuss log monitoring and analysis on Web Servers
  • Discuss centralized log monitoring and analysis

Module 16: Incident Response and Forensic Investigation

  • Understand incident response concept
  • Understand the role of first responder in incident response
  • Discuss Do’s and Don’t in first response
  • Describe incident handling and response process
  • Enhance Incident-Response using AI/ML
  • Learn how to Automate Incident Response – SOAR
  • Understand Incident Response using Endpoint Detection and Response (EDR)
  • Understanding Incident Response using Extended Detection and Response (XDR)
  • Describe forensics investigation process

Module 17: Business Continuity and Disaster Recovery

  • Introduction to Business Continuity (BC) and Disaster Recovery (DR) concepts
  • Discuss BC/DR Activities
  • Explain Business Continuity Plan (BCP) and Disaster Recovery Plan (DRP)
  • Discuss BC/DR Standards

Module 18: Risk Anticipation with Risk Management

  • Understand risk management concepts
  • Learn to manage risk though risk management program
  • Learn different Risk Management Frameworks (RMF)
  • Learn to manage vulnerabilities through vulnerability management program
  • Learn vulnerability Assessment and Scanning
  • Discuss Privacy Impact Assessment (PIA)

Module 19: Threat Assessment with Attack Surface Analysis

  • Understand the attack surface concepts
  • Learn to understand and visualize your attack surface
  • Learn to identify Indicators of Exposures (IoE)
  • Learn to perform attack simulation
  • Learn to reduce the attack surface
  • Understand Attack surface monitoring tools
  • Discuss attack surface analysis specific to Cloud and IoT

Module 20: Threat Prediction with Cyber Threat Intelligence

  • Understand role of cyber threat intelligence in network defense
  • Understand the types of threat Intelligence
  • Understand the Indicators of Threat Intelligence: Indicators of Compromise (IoCs) and
    Indicators of Attack (IoA)
  • Understand the layers of Threat Intelligence
  • Learn to leverage/consume threat intelligence for proactive defense
  • Understand threat Threat Hunting
  • Discuss Leveraging AI/ML capabilities for threat intelligence

Dates & Locations

Let’s make it work for you

Can’t find a date that fits? Need to train your whole team? Looking for a discount?
Speak to one of our learning experts today.

July 13, 2026 - July 17, 2026

Location: Online
Modal: VILT
Availability: TBC
Exam:
Included

July 13, 2026 - July 17, 2026

Location: Kuala Lumpur
Modal: ILT
Availability: TBC
Exam:
Included

October 12, 2026 - October 16, 2026

Location: Online
Modal: VILT
Availability: TBC
Exam:
Included

October 12, 2026 - October 16, 2026

Location: Kuala Lumpur
Modal: ILT
Availability: TBC
Exam:
Included
Trainocate exam and cert

Exam & Certification

Certified Network Defender.

Certified Network Defender v3 has been designed by industry experts to help IT Professionals play an active role in the Protection of digital business assets and Detection and Response to Cyber Threats, while leveraging Threat Intelligence to Predict them before they happen. CND is a network security course designed to help organizations create and deploy the most comprehensive network defense system.

Training & Certification Guide

In order to maintain the high integrity of our certification exams, EC-Council Exams are provided in multiple forms (i.e., different question banks).

Each form is carefully analyzed through beta testing with an appropriate sample group under the purview of a committee of subject matter experts that ensure that each of our exams not only have academic rigor but also have “real world” applicability.

We also have a process to determine the difficulty rating of each question. The individual rating then contributes to an overall “Cut Score” for each exam form.

To ensure each form has equal assessment standards, cut scores are set on a “per exam form” basis. Depending on which exam form is challenged, cut scores can range from 60% to 85%.

Number of Questions: 100

Test Duration: 4 Hours

Test Format: Multiple Choice

Test Delivery: ECC EXAM

Exam Prefix: 312-38 (ECC EXAM)

ECSS: EC-Council Certified Security Specialist

EC-Council Certified Security Specialist (ECSS) is an entry level cybersecurity certification covering the fundamental concepts of information security, computer forensics, and network security. It enables students to identify information security threats which reflect on the security posture of the organization and implement general security controls.

CEH: Certified Ethical Hacker v13

The CEH: Certified Ethical Hacker credential is the most trusted ethical hacking certification and accomplishment recommended by employers globally. It is the most desired information security certification and represents one of the fastest-growing cyber credentials required by critical infrastructure and essential service providers.

CHFI: Computer Hacking Forensic Investigator

The CHFI: Computer Hacking Forensic Investigator certification includes all the essentials of digital forensics analysis and evaluation required for today’s digital world. From identifying the footprints of a breach to collecting evidence for a prosecution, CHFI v10 walks students through every step of the process with experiential learning. This course has been tested and approved by veterans and top practitioners of the cyber forensics industry.

CPENT: Certified Penetration Testing Professional

EC-Council Certified Security Specialist (ECSS) is an entry level cybersecurity certification covering the fundamental concepts of information security, computer forensics, and network security. It enables students to identify information security threats which reflect on the security posture of the organization and implement general security controls.

Frequently Asked Questions

The end goal of Certified Network Defender (CND v3) is to help Blue Teams defend and win the war against network breaches in a post-pandemic world. The program is the ideal cyber defense course for organizations and individuals for the following reasons:

  • Based on Common Job Role frameworks recognized by organizations around the world.
  • ANSI/ISO/IEC 17024 accredited Certification Program.
  • Mapped to the NICE 2.0 framework.
  • Focuses on latest technologies including Cloud, IoT, Virtualization and Remote Worker Threats, Attack Surface Analysis, Threat Intelligence, Software Defined Networks (SDN), and Network Function Virtualization (NFV), as well as docker, Kubernetes, and container security.
  • Covers the latest tools, techniques, and methodologies used by top cybersecurity experts around the world.

That’s why investing in the CND v2 training and certification is a wise move for employers looking to set up impregnable cyber defense practices.

A CND is a cybersecurity professional trained to protect, detect, and respond to threats targeting an organization’s network infrastructure. They understand network architecture, protocols, vulnerabilities, and the techniques used by attackers to gain unauthorized access.

  • Skill Validation: The CND proves your knowledge of network security fundamentals and best practices.
  • Career Advancement: Network security is a high-demand field. The CND helps you advance within your current role or transition into specialized network security positions.
  • Increased Earning Potential: Cybersecurity certifications often lead to higher salaries. (ISC)² research shows certified professionals report 35% higher salaries than their non-certified peers.
  • Employer Recognition: The CND is well-regarded and meets the US Department of Defense (DoD) 8570 baseline requirements.

Key areas of the CND exam include:

  • Network Architecture and Security Fundamentals
  • Network Traffic Monitoring and Analysis
  • Vulnerability Assessment
  • Intrusion Detection & Prevention Systems (IDS/IPS)
  • Firewalls and Secure Network Design
  • Incident Response and Management

Yes! The demand for skilled network defenders is consistently increasing. Cybersecurity Ventures predicts 3.5 million global cybersecurity job openings by 2025. The CND certification demonstrates the expertise employers are actively seeking.

The CND prepares you for a variety of in-demand network security roles including:

  • Network Security Engineer
  • Network Security Analyst
  • Network Administrator (with a security focus)
  • Systems Security Administrator
  • Cybersecurity Analyst

Certified network security professionals tend to command higher salaries. According to sources like ZipRecruiter and Payscale, the average salary for network security engineers in the US can range from $90,000 to over $130,000 annually, depending on experience and location.

Definitely. In a competitive job market, the CND certification highlights your skills and commitment to professional development. It demonstrates your ability to protect an organization’s critical network assets, making you a desirable candidate.

The CND provides a solid foundation upon which to build a successful network security career. You can leverage the skills gained through certification to pursue more senior roles, branch into areas like network architecture or penetration testing, or even transition to management positions within the cybersecurity field.

While valuable across all sectors, the CND is particularly relevant for careers within industries that handle sensitive data. This includes fields like:

    • Finance
    • Healthcare
    • Government and Defense
    • Technology

Yes! Here are a few that can expand your skillset:

Speak to a Training Consultant

All courses are HRD Claimable.
Get in touch with our team via the form or WhatsApp us on +6011-5119 6631

Preferred mode of training
Checkboxes