2Discover the 3 critical core domains of cybersecurity gain with EC-Council’s Certified Security Specialist (ECSS) program.

The ECSS certification developed by EC-Council validates knowledge in foundational information security concepts covering network security, information security, and computer forensics—ideal for aspiring cybersecurity specialists.

More than half of breached organizations in 2024 admitted their security teams were short-staffed—a stark reminder of the urgent global demand for certified cybersecurity specialists. (The CISO’s Guide to Navigating the Cybersecurity Skills Shortage)

If you’re looking to build or advance your career in cybersecurity, ECSS certification provides an essential stepping stone for protecting modern organizations.

Overview

The gateway to acquire in-demand technical skills in cybersecurity.

EC-Council Certified Security Specialist (E|CSS) is a beginner-friendly cybersecurity program that builds a strong, practical foundation in ethical hacking, network security, and digital forensics, enabling you to understand attacks, defend systems, and investigate incidents.

The program builds your skills to identify security threats, apply essential security controls, and understand network components, communication protocols, and forensic techniques for investigating and responding to incidents.

With structured, hands-on training and extensive 114 labs, the program helps develop job-ready skills, including threat detection, network analysis, vulnerability assessment, and investigation, empowering cybersecurity career aspirants to think and perform like real cybersecurity professionals while gaining clarity on their career path.

Cybersecurity is not optional. It’s Operational. Don’t wait for a breach. Build the skills. Earn the badge. Lead the defense. Explore our Top Cybersecurity Skills for Malaysia’s Digital Future campaign.

Be the reason your organization survives the next cyberattack.

Skills Covered

  • Key issues plaguing the information security, network security, and computer forensics
  • Fundamentals of networks and various components of the OSI and TCP/IP model
  • Various network security protocols
  • Various types of information security threats and attacks, and their countermeasures
  • Social engineering techniques, identify theft, and social engineering countermeasures
  • Different stages of hacking cycle
  • Identification, authentication, and authorization concepts
  • Different types of cryptography ciphers, Public Key Infrastructure (PKI), cryptography attacks, and cryptanalysis tools
  • Fundamentals of firewall, techniques for bypassing firewall, and firewall technologies such as Bastion Host, DMZ, Proxy Servers, Network Address Translation, Virtual Private Network, and Honeypot
  • Fundamentals of IDS and IDS evasion techniques
  • Data backup techniques and VPN security
  • Wireless Encryption, wireless threats, wireless hacking tools, and Wi-Fi security
  • Different types of web server and web application attacks, and countermeasures
  • Fundamentals of ethical hacking and pen testing
  • Incident handling and response process
  • Cyber-crime and computer forensics investigation methodology
  • Different types of digital evidence and digital evidence examination process
  • Different type of file systems and their comparison (based on limit and features)
  • Gathering volatile and non-volatile information from Windows and network forensics analysis mechanism
  • Steganography and its techniques
  • Different types of log capturing, time synchronization, and log capturing tools
  • E-mails tracking and e-mail crimes investigation
  • Writing investigation report

Prerequisites

There are no prerequisites required to attend this course.

Target Audience

ECSS is designed for anyone who want to enhance their skills and make career in information security, network security, and computer forensics fields.

Course Curriculum

Module 01: Network Security Fundamentals

Topics Covered

  • Fundamentals of Network Security and Defense
  • Network Security Controls
  • Network Security Protocols

Lab Exercises

  • No labs in this module

Module 02: Identification, Authentication, and Authorization

Topics Covered

  • Access Control Principles, Terminologies, and Models
  • Identity and Access Management (IAM) Concepts
  • Authentication Mechanisms
  • Authorization Systems and User Accounting

Lab Exercises

  • Implement Access Controls in Windows Machine
  • Manage Access Controls in Linux Machine
  • Implement and Configure Role-Based Access Control

Module 03: Network Security Controls – Administrative Controls

Topics Covered

  • Regulatory Frameworks and Compliance Requirements
  • Security Policies and Governance
  • Security and Awareness Training

Lab Exercises

  • Implement Internet Access Policies
  • Implement Password Policies in Windows and Linux

Module 04: Network Security Controls – Physical Controls

Topics Covered

  • Physical Security Concepts and Attack Vectors
  • Physical Security Controls and Mechanisms
  • Workplace Security and Asset Protection
  • Environmental Controls and Safety Measures

Lab Exercises

  • No labs in this module

Module 05: Network Security Controls – Technical Controls

Topics Covered

  • Network Segmentation and Perimeter Isolation
  • Firewall Technologies, Architectures, and Best Practices
  • Intrusion Detection and Prevention Systems (IDS/IPS)
  • Proxy Servers, VPNs, and Secure Network Communication
  • SIEM, UBA/UEBA, and Endpoint Security Solutions

Lab Exercises

  • Implement Host-based Firewall Protection and Functionality
  • Implement Network-Based Firewall Functionality
  • Implement Host-based Intrusion Detection Functionality
  • Set Up Proxy Server for Secure and Anonymous Browsing
  • Detect Malicious Network Traffic
  • Establish Virtual Private Network Connection

Module 06: Virtualization and Cloud Computing

Topics Covered

  • Virtualization Concepts and Security Considerations
  • Containerization Technologies and Security Challenges
  • Cloud Computing Models and Architecture
  • Cloud Security Risks, Attacks, and Best Practices

Lab Exercises

  • Scan Container Images for Vulnerabilities
  • Implement Cloud Identity and Access Management
  • Secure Cloud Storage

Module 07: Wireless Network Security

Topics Covered

  • Wireless Network Fundamentals and Standards
  • Wireless Encryption and Authentication Mechanisms
  • Wireless Security Implementation and Defense Strategies

Lab Exercises

  • Configure Security on a Wireless Router

Module 08: Mobile Device Security

Topics Covered

  • Mobile Device Connection Methods
  • Mobile Device Management (MDM) Concepts
  • Mobile Usage Policies in Enterprise
  • Enterprise-level Mobile Security Management
  • Mobile Device Threats and Security Risks
  • Mobile Security Controls and Best Practices

Lab Exercises

  • Implement Enterprise Mobile Security
  • Secure Mobile Devices

Module 09: IoT Device Security

Topics Covered

  • IoT Architecture, Devices, and Communication Models
  • IoT Security Challenges and Attack Vectors
  • IoT Security Controls and Best Practices

Lab Exercises

  • Secure IoT Device Communication

Module 10: Cryptography and PKI

Topics Covered

  • Cryptographic Techniques
  • Cryptographic Algorithms and Tools
  • Public Key Infrastructure (PKI) and Digital Certificates

Lab Exercises

  • Calculate One-way and MD5 Hashes
  • Encrypt and Decrypt Messages
  • Create a Self-signed Certificate

Module 11: Data Security

Topics Covered

  • Data Security Concepts
  • Data Encryption Techniques
  • Data Backup and Retention
  • Data Loss Prevention (DLP) Concepts

Lab Exercises

  • Encrypt Data at Rest and Implement Disk Encryption
  • Perform Data Recovery
  • Back Up and Restore Data

Module 12: Network Traffic Monitoring

Topics Covered

  • Network Traffic Monitoring Concepts
  • Baseline Traffic Analysis and Signature Identification
  • Network Sniffing Techniques and Traffic Analysis
  • Monitoring and Analyzing Network Protocol Traffic

Lab Exercises

  • Capture Network Traffic
  • Apply Traffic Filters
  • Analyze Network Packet Headers

Module 13: Information Security Fundamentals

Topics Covered

  • Overview of Information Security
  • Defense Strategies in Information Security
  • Threats, Threat Sources, and Vulnerabilities
  • Cryptography Concepts
  • Information Security Laws, Regulations, and Standards

Lab Exercises

  • No labs in this module

Module 14: Ethical Hacking Fundamentals

Topics Covered

  • Hacking Concepts and Hacker Classes
  • Ethical Hacking Concepts, Scope, and Limitations
  • Phases of Hacking Cycle
  • Hacking Methodologies and Frameworks

Lab Exercises

  • No labs in this module

Module 15: Malware Threats and Countermeasures

Topics Covered

  • Malware Concepts, Types, and Attack Mechanisms
  • Malware Propagation Techniques and Indicators
  • Malware Countermeasures

Lab Exercises

  • Create and Deploy Malware to Compromise Target Systems
  • Detect, Analyze, and Remove Malware from Systems

Module 16: Ethical Hacking Phases

Topics Covered

  • Reconnaissance, Footprinting, and OSINT Techniques
  • Scanning and Enumeration Methodologies
  • Vulnerability Scanning and Assessment Concepts
  • Gaining Access, Maintaining Access, and Covering Tracks
  • Countermeasures across Hacking Phases

Lab Exercises

  • Gather Information using Advanced Google Hacking Techniques
  • Perform DNS Footprinting, Host Discovery, Port Scanning, and Banner Grabbing
  • Perform NetBIOS and SNMP Enumeration
  • Perform Vulnerability Scanning and Exploitation
  • Perform Image Steganography

Module 17: Password Cracking Techniques and Countermeasures

Topics Covered

  • Introduction to Password Cracking
  • Password Cracking Techniques
  • Password Cracking Countermeasures

Lab Exercises

  • Perform Password Attacks and Audit Password Strength

Module 18: Social Engineering Techniques and Countermeasures

Topics Covered

  • Social Engineering Concepts
  • Social Engineering Techniques
  • Insider Threats and Identity Theft
  • Social Engineering Countermeasures

Lab Exercises

  • Perform Social Engineering to Capture User Credentials
  • Detect Phishing Attacks

Module 19: Network Level Attacks and Countermeasures

Topics Covered

  • Packet Sniffing Concepts
  • DoS and DDoS Attack Methods
  • Session Hijacking Techniques and Attack Methods
  • Network Attack Detection and Countermeasures

Lab Exercises

  • Perform MAC Flooding to Compromise the Security of Network Switches
  • Perform ARP Poisoning and Detect ARP Spoofing Attempts
  • Perform DHCP Starvation Attack
  • Launch and Defend Against DoS/DDoS Attacks
  • Perform and Detect Session Hijacking

Module 20: Web Application Attacks and Countermeasures

Topics Covered

  • Web Server Attacks
  • Web Application Attack Techniques and Exploitation Methods and Countermeasures
  • SQL Injection Attacks and Countermeasures

Lab Exercises

  • Perform Web Server and Web Application Attacks
  • Exploit and Detect Web Application Vulnerabilities
  • Perform SQL Injection Attacks and Detection

Module 21: Wireless Attacks and Countermeasures

Topics Covered

  • Introduction to Wireless Networks
  • Wireless Network Security Fundamentals
  • Common Wireless Attack Techniques
  • Bluetooth Threats and Wireless Security Risks
  • Wireless Attack Countermeasures

Lab Exercises

  • Analyze Wireless Network Traffic
  • Perform Wireless Attacks to Compromise Network Security

Module 22: Mobile, IoT, and OT Attacks and Countermeasures

Topics Covered

  • Mobile Attack Vectors and Vulnerabilities
  • Mobile Device Management (MDM) and BYOD Security
  • Mobile Attack Countermeasures
  • IoT Attacks and Countermeasures
  • OT Attacks and Countermeasures

Lab Exercises

  • Perform Mobile Device Exploitation and Security Hardening
  • Capture and Analyze IoT Device Traffic

Module 23: Cloud Computing Threats and Countermeasures

Topics Covered

  • Cloud Computing Concepts
  • Containerization in Cloud Computing
  • Cloud Computing Threats and Attacks
  • Cloud Attack Countermeasures

Lab Exercises

  • Perform Cloud Resource Enumeration and Exploitation

Module 24: Penetration Testing Fundamentals

Topics Covered

  • Introduction to Penetration Testing
  • Types, Phases, and Approaches to Penetration Testing
  • Guidelines and Recommendations for Penetration Testing

Lab Exercises

  • No labs in this module

Module 25: Computer Forensics Fundamentals

Topics Covered

  • Introduction to Computer Forensics
  • Digital Evidence
  • Forensic Readiness
  • Roles and Responsibilities of a Forensic Investigator
  • Legal Compliance in Computer Forensics

Lab Exercises

  • No labs in this module

Module 26: Computer Forensics Investigation Process

Topics Covered

  • Forensic Investigation Process and Its Importance
  • Pre-investigation Phase
  • Investigation Phase
  • Post-investigation Phase

Lab Exercises

  • Perform Hash or HMAC Calculations
  • Compare Hash Values of Files to Check Integrity
  • View Files of Various Formats
  • Create a Disk Image File of a Hard Disk Partition

Module 27: Hard Disks and File Systems

Topics Covered

  • Disk Drive Types and Their Characteristics
  • Logical Structure of a Disk
  • Boot Processes Across Windows, Linux, and macOS
  • File Systems in Windows, Linux, and macOS
  • File System Analysis and Data Recovery

Lab Exercises

  • Analyze File System of a Linux Image
  • Recover Deleted Files from Hard Disks

Module 28: Data Acquisition and Duplication

Topics Covered

  • Data Acquisition Fundamentals
  • Types and Methods of Data Acquisition
  • Forensic Image Formats and Standards
  • Data Acquisition Methodology

Lab Exercises

  • Create a Disk Image of a System Drive
  • Acquire RAM Memory from Systems
  • View Contents of a Forensic Image File

Module 29: Defeating Anti-forensics Techniques

Topics Covered

  • Introduction to Anti-forensics
  • Data Deletion and File Recovery Concepts
  • Password Protection and Encryption Techniques
  • Steganography and Data Hiding Techniques
  • Artifact Wiping and Trail Obfuscation
  • Anti-forensics Countermeasures

Lab Exercises

  • Perform File Carving on a Linux File System
  • Recover Data from Lost or Deleted Disk Partitions
  • Crack Application Passwords
  • Extract Password Hashes from a Target System
  • Detect Steganography and Alternate Data Streams

Module 30: Windows Forensics

Topics Covered

  • Introduction to Windows Forensics
  • Collecting Volatile and Non-Volatile Information
  • Windows Memory Analysis
  • Windows Artifacts
  • Web Browser Forensics
  • Windows File and Metadata Analysis

Lab Exercises

  • Acquire and Investigate Volatile Memory from a Windows System
  • Examine Windows and Web Browser Artifacts
  • Extract Information about Loaded Processes on a Computer

Module 31: Linux and Mac Forensics

Topics Covered

  • Volatile and Non-Volatile Data Collection in Linux
  • File System Analysis
  • Linux Memory Analysis
  • Mac Forensics

Lab Exercises

  • Acquire Volatile and Non-volatile Data in Linux
  • Perform Forensic Investigation on a Linux Memory Dump
  • Recover Data from a Linux Memory Dump

Module 32: Network Forensics

Topics Covered

  • Network Forensics Fundamentals
  • Event Correlation Concepts and Techniques
  • Identifying IoCs from Network Logs
  • Network Traffic Investigation

Lab Exercises

  • Identify and Investigate Various Network Attacks

Module 33: Investigating Web Attacks

Topics Covered

  • Web Application Forensics
  • IIS and Apache Web Server Logs
  • Investigation of Attacks on Windows-based Web Servers
  • Detection and Analysis of Web Application Attacks

Lab Exercises

  • Identify and Investigate Web Application Attacks

Module 34: Dark Web Forensics

Topics Covered

  • Dark Web Concepts
  • Dark Web Investigation
  • Tor Browser Forensics

Lab Exercises

  • Detect Tor Browser Activity on a System
  • Detect Tor Browser Browsing Artifacts
  • Analyze RAM Dumps to Retrieve Tor Browser Artifacts

Module 35: Investigating Email Crimes

Topics Covered

  • Email Basics
  • Email Crime Investigation
  • Email Acquisition and Analysis
  • Email Header Analysis and Authentication
  • Business Email Compromise (BEC) Investigations

Lab Exercises

  • Investigate a Suspicious Email
  • Recover Deleted Email Messages

Module 36: Malware Forensics

Topics Covered

  • Malware Types, Components, and Distribution
  • Malware Forensics Fundamentals
  • Static Malware Analysis
  • Suspicious Document Analysis
  • Dynamic Malware Analysis
  • System and Network Behavior Analysis

Lab Exercises

  • Perform Static Analysis on a Suspicious File
  • Forensic Examination of a Suspicious Microsoft Office Document
  • Perform Port Monitoring

Dates & Locations

Let’s make it work for you

Can’t find a date that fits? Need to train your whole team? Looking for a discount?
Speak to one of our learning experts today.

September 21, 2026 - September 25, 2026

Location: Online
Modal: VILT
Availability: TBC
Exam:
Included

September 21, 2026 - September 25, 2026

Location: Kuala Lumpur
Modal: ILT
Availability: TBC
Exam:
Included

December 14, 2026 - December 18, 2026

Location: Online
Modal: VILT
Availability: TBC
Exam:
Included

December 14, 2026 - December 18, 2026

Location: Kuala Lumpur
Modal: ILT
Availability: TBC
Exam:
Included
Trainocate exam and cert

Exam & Certification

EC-Council Certified Security Specialist

The ECSS credential empowers individuals to:

  • Gain Foundational Knowledge in Cybersecurity
  • Practice Essentials Skills such as how to defend networks and investigate them
  • Challenge Industry recognized exams and earn cybersecurity credentials to build and further your career

Training & Certification Guide

In order to maintain the high integrity of our certification exams, EC-Council Exams are provided in multiple forms (i.e., different question banks).

Each form is carefully analyzed through beta testing with an appropriate sample group under the purview of a committee of subject matter experts that ensure that each of our exams not only have academic rigor but also have “real world” applicability.

We also have a process to determine the difficulty rating of each question. The individual rating then contributes to an overall “Cut Score” for each exam form.

To ensure each form has equal assessment standards, cut scores are set on a “per exam form” basis. Depending on which exam form is challenged, cut scores can range from 60% to 85%.

Exam Title: EC-Council Certified Security Specialist

Number of Questions: 100

Exam Code: 212-83

Duration: 3 hours

Exam Availability Locations: EC-Council Exam Portal

Test Format: Multiple Choice

Passing Score: 70%

CEH: Certified Ethical Hacker v13

The C|EH v13 is a specialized, one-of-a-kind training program that helps you gain expertise in ethical hacking, AI, and machine learning. With hands-on training labs, knowledge-based and practical exams, a mock ethical hacking engagement on live networks, and a global hacking competition, this program ensures you master the most in-demand skills needed to excel and stand out in the cybersecurity industry.

CHFI: Computer Hacking Forensic Investigator

The CHFI: Computer Hacking Forensic Investigator certification includes all the essentials of digital forensics analysis and evaluation required for today’s digital world. From identifying the footprints of a breach to collecting evidence for a prosecution, CHFI v10 walks students through every step of the process with experiential learning. This course has been tested and approved by veterans and top practitioners of the cyber forensics industry.

CND: Certified Network Defender v3

The Certified Network Defender program has been upgraded and loaded with battle-ready ammunition to help Blue Teams defend and win the war against network breaches. Individuals and corporations looking to strengthen their Network Defense Skills will find CND v2 a must-have.

Frequently Asked Questions

Speak to a Training Consultant

All courses are HRD Claimable.
Get in touch with our team via the form or WhatsApp us on +6011-5119 6631

Preferred mode of training
Checkboxes