2Discover the 3 critical core domains of cybersecurity gain with EC-Council’s Certified Security Specialist (ECSS) program.
The ECSS certification developed by EC-Council validates knowledge in foundational information security concepts covering network security, information security, and computer forensics—ideal for aspiring cybersecurity specialists.
More than half of breached organizations in 2024 admitted their security teams were short-staffed—a stark reminder of the urgent global demand for certified cybersecurity specialists. (The CISO’s Guide to Navigating the Cybersecurity Skills Shortage)
If you’re looking to build or advance your career in cybersecurity, ECSS certification provides an essential stepping stone for protecting modern organizations.

Overview
The gateway to acquire in-demand technical skills in cybersecurity.
EC-Council Certified Security Specialist (E|CSS) is a beginner-friendly cybersecurity program that builds a strong, practical foundation in ethical hacking, network security, and digital forensics, enabling you to understand attacks, defend systems, and investigate incidents.
The program builds your skills to identify security threats, apply essential security controls, and understand network components, communication protocols, and forensic techniques for investigating and responding to incidents.
With structured, hands-on training and extensive 114 labs, the program helps develop job-ready skills, including threat detection, network analysis, vulnerability assessment, and investigation, empowering cybersecurity career aspirants to think and perform like real cybersecurity professionals while gaining clarity on their career path.
Cybersecurity is not optional. It’s Operational. Don’t wait for a breach. Build the skills. Earn the badge. Lead the defense. Explore our Top Cybersecurity Skills for Malaysia’s Digital Future campaign.
Be the reason your organization survives the next cyberattack.
Skills Covered
- Key issues plaguing the information security, network security, and computer forensics
- Fundamentals of networks and various components of the OSI and TCP/IP model
- Various network security protocols
- Various types of information security threats and attacks, and their countermeasures
- Social engineering techniques, identify theft, and social engineering countermeasures
- Different stages of hacking cycle
- Identification, authentication, and authorization concepts
- Different types of cryptography ciphers, Public Key Infrastructure (PKI), cryptography attacks, and cryptanalysis tools
- Fundamentals of firewall, techniques for bypassing firewall, and firewall technologies such as Bastion Host, DMZ, Proxy Servers, Network Address Translation, Virtual Private Network, and Honeypot
- Fundamentals of IDS and IDS evasion techniques
- Data backup techniques and VPN security
- Wireless Encryption, wireless threats, wireless hacking tools, and Wi-Fi security
- Different types of web server and web application attacks, and countermeasures
- Fundamentals of ethical hacking and pen testing
- Incident handling and response process
- Cyber-crime and computer forensics investigation methodology
- Different types of digital evidence and digital evidence examination process
- Different type of file systems and their comparison (based on limit and features)
- Gathering volatile and non-volatile information from Windows and network forensics analysis mechanism
- Steganography and its techniques
- Different types of log capturing, time synchronization, and log capturing tools
- E-mails tracking and e-mail crimes investigation
- Writing investigation report
Prerequisites
There are no prerequisites required to attend this course.
Target Audience
ECSS is designed for anyone who want to enhance their skills and make career in information security, network security, and computer forensics fields.

Module 01: Network Security Fundamentals
Topics Covered
- Fundamentals of Network Security and Defense
- Network Security Controls
- Network Security Protocols
Lab Exercises
- No labs in this module
Module 02: Identification, Authentication, and Authorization
Topics Covered
- Access Control Principles, Terminologies, and Models
- Identity and Access Management (IAM) Concepts
- Authentication Mechanisms
- Authorization Systems and User Accounting
Lab Exercises
- Implement Access Controls in Windows Machine
- Manage Access Controls in Linux Machine
- Implement and Configure Role-Based Access Control
Module 03: Network Security Controls – Administrative Controls
Topics Covered
- Regulatory Frameworks and Compliance Requirements
- Security Policies and Governance
- Security and Awareness Training
Lab Exercises
- Implement Internet Access Policies
- Implement Password Policies in Windows and Linux
Module 04: Network Security Controls – Physical Controls
Topics Covered
- Physical Security Concepts and Attack Vectors
- Physical Security Controls and Mechanisms
- Workplace Security and Asset Protection
- Environmental Controls and Safety Measures
Lab Exercises
- No labs in this module
Module 05: Network Security Controls – Technical Controls
Topics Covered
- Network Segmentation and Perimeter Isolation
- Firewall Technologies, Architectures, and Best Practices
- Intrusion Detection and Prevention Systems (IDS/IPS)
- Proxy Servers, VPNs, and Secure Network Communication
- SIEM, UBA/UEBA, and Endpoint Security Solutions
Lab Exercises
- Implement Host-based Firewall Protection and Functionality
- Implement Network-Based Firewall Functionality
- Implement Host-based Intrusion Detection Functionality
- Set Up Proxy Server for Secure and Anonymous Browsing
- Detect Malicious Network Traffic
- Establish Virtual Private Network Connection
Module 06: Virtualization and Cloud Computing
Topics Covered
- Virtualization Concepts and Security Considerations
- Containerization Technologies and Security Challenges
- Cloud Computing Models and Architecture
- Cloud Security Risks, Attacks, and Best Practices
Lab Exercises
- Scan Container Images for Vulnerabilities
- Implement Cloud Identity and Access Management
- Secure Cloud Storage
Module 07: Wireless Network Security
Topics Covered
- Wireless Network Fundamentals and Standards
- Wireless Encryption and Authentication Mechanisms
- Wireless Security Implementation and Defense Strategies
Lab Exercises
- Configure Security on a Wireless Router
Module 08: Mobile Device Security
Topics Covered
- Mobile Device Connection Methods
- Mobile Device Management (MDM) Concepts
- Mobile Usage Policies in Enterprise
- Enterprise-level Mobile Security Management
- Mobile Device Threats and Security Risks
- Mobile Security Controls and Best Practices
Lab Exercises
- Implement Enterprise Mobile Security
- Secure Mobile Devices
Module 09: IoT Device Security
Topics Covered
- IoT Architecture, Devices, and Communication Models
- IoT Security Challenges and Attack Vectors
- IoT Security Controls and Best Practices
Lab Exercises
- Secure IoT Device Communication
Module 10: Cryptography and PKI
Topics Covered
- Cryptographic Techniques
- Cryptographic Algorithms and Tools
- Public Key Infrastructure (PKI) and Digital Certificates
Lab Exercises
- Calculate One-way and MD5 Hashes
- Encrypt and Decrypt Messages
- Create a Self-signed Certificate
Module 11: Data Security
Topics Covered
- Data Security Concepts
- Data Encryption Techniques
- Data Backup and Retention
- Data Loss Prevention (DLP) Concepts
Lab Exercises
- Encrypt Data at Rest and Implement Disk Encryption
- Perform Data Recovery
- Back Up and Restore Data
Module 12: Network Traffic Monitoring
Topics Covered
- Network Traffic Monitoring Concepts
- Baseline Traffic Analysis and Signature Identification
- Network Sniffing Techniques and Traffic Analysis
- Monitoring and Analyzing Network Protocol Traffic
Lab Exercises
- Capture Network Traffic
- Apply Traffic Filters
- Analyze Network Packet Headers
Module 13: Information Security Fundamentals
Topics Covered
- Overview of Information Security
- Defense Strategies in Information Security
- Threats, Threat Sources, and Vulnerabilities
- Cryptography Concepts
- Information Security Laws, Regulations, and Standards
Lab Exercises
- No labs in this module
Module 14: Ethical Hacking Fundamentals
Topics Covered
- Hacking Concepts and Hacker Classes
- Ethical Hacking Concepts, Scope, and Limitations
- Phases of Hacking Cycle
- Hacking Methodologies and Frameworks
Lab Exercises
- No labs in this module
Module 15: Malware Threats and Countermeasures
Topics Covered
- Malware Concepts, Types, and Attack Mechanisms
- Malware Propagation Techniques and Indicators
- Malware Countermeasures
Lab Exercises
- Create and Deploy Malware to Compromise Target Systems
- Detect, Analyze, and Remove Malware from Systems
Module 16: Ethical Hacking Phases
Topics Covered
- Reconnaissance, Footprinting, and OSINT Techniques
- Scanning and Enumeration Methodologies
- Vulnerability Scanning and Assessment Concepts
- Gaining Access, Maintaining Access, and Covering Tracks
- Countermeasures across Hacking Phases
Lab Exercises
- Gather Information using Advanced Google Hacking Techniques
- Perform DNS Footprinting, Host Discovery, Port Scanning, and Banner Grabbing
- Perform NetBIOS and SNMP Enumeration
- Perform Vulnerability Scanning and Exploitation
- Perform Image Steganography
Module 17: Password Cracking Techniques and Countermeasures
Topics Covered
- Introduction to Password Cracking
- Password Cracking Techniques
- Password Cracking Countermeasures
Lab Exercises
- Perform Password Attacks and Audit Password Strength
Module 18: Social Engineering Techniques and Countermeasures
Topics Covered
- Social Engineering Concepts
- Social Engineering Techniques
- Insider Threats and Identity Theft
- Social Engineering Countermeasures
Lab Exercises
- Perform Social Engineering to Capture User Credentials
- Detect Phishing Attacks
Module 19: Network Level Attacks and Countermeasures
Topics Covered
- Packet Sniffing Concepts
- DoS and DDoS Attack Methods
- Session Hijacking Techniques and Attack Methods
- Network Attack Detection and Countermeasures
Lab Exercises
- Perform MAC Flooding to Compromise the Security of Network Switches
- Perform ARP Poisoning and Detect ARP Spoofing Attempts
- Perform DHCP Starvation Attack
- Launch and Defend Against DoS/DDoS Attacks
- Perform and Detect Session Hijacking
Module 20: Web Application Attacks and Countermeasures
Topics Covered
- Web Server Attacks
- Web Application Attack Techniques and Exploitation Methods and Countermeasures
- SQL Injection Attacks and Countermeasures
Lab Exercises
- Perform Web Server and Web Application Attacks
- Exploit and Detect Web Application Vulnerabilities
- Perform SQL Injection Attacks and Detection
Module 21: Wireless Attacks and Countermeasures
Topics Covered
- Introduction to Wireless Networks
- Wireless Network Security Fundamentals
- Common Wireless Attack Techniques
- Bluetooth Threats and Wireless Security Risks
- Wireless Attack Countermeasures
Lab Exercises
- Analyze Wireless Network Traffic
- Perform Wireless Attacks to Compromise Network Security
Module 22: Mobile, IoT, and OT Attacks and Countermeasures
Topics Covered
- Mobile Attack Vectors and Vulnerabilities
- Mobile Device Management (MDM) and BYOD Security
- Mobile Attack Countermeasures
- IoT Attacks and Countermeasures
- OT Attacks and Countermeasures
Lab Exercises
- Perform Mobile Device Exploitation and Security Hardening
- Capture and Analyze IoT Device Traffic
Module 23: Cloud Computing Threats and Countermeasures
Topics Covered
- Cloud Computing Concepts
- Containerization in Cloud Computing
- Cloud Computing Threats and Attacks
- Cloud Attack Countermeasures
Lab Exercises
- Perform Cloud Resource Enumeration and Exploitation
Module 24: Penetration Testing Fundamentals
Topics Covered
- Introduction to Penetration Testing
- Types, Phases, and Approaches to Penetration Testing
- Guidelines and Recommendations for Penetration Testing
Lab Exercises
- No labs in this module
Module 25: Computer Forensics Fundamentals
Topics Covered
- Introduction to Computer Forensics
- Digital Evidence
- Forensic Readiness
- Roles and Responsibilities of a Forensic Investigator
- Legal Compliance in Computer Forensics
Lab Exercises
- No labs in this module
Module 26: Computer Forensics Investigation Process
Topics Covered
- Forensic Investigation Process and Its Importance
- Pre-investigation Phase
- Investigation Phase
- Post-investigation Phase
Lab Exercises
- Perform Hash or HMAC Calculations
- Compare Hash Values of Files to Check Integrity
- View Files of Various Formats
- Create a Disk Image File of a Hard Disk Partition
Module 27: Hard Disks and File Systems
Topics Covered
- Disk Drive Types and Their Characteristics
- Logical Structure of a Disk
- Boot Processes Across Windows, Linux, and macOS
- File Systems in Windows, Linux, and macOS
- File System Analysis and Data Recovery
Lab Exercises
- Analyze File System of a Linux Image
- Recover Deleted Files from Hard Disks
Module 28: Data Acquisition and Duplication
Topics Covered
- Data Acquisition Fundamentals
- Types and Methods of Data Acquisition
- Forensic Image Formats and Standards
- Data Acquisition Methodology
Lab Exercises
- Create a Disk Image of a System Drive
- Acquire RAM Memory from Systems
- View Contents of a Forensic Image File
Module 29: Defeating Anti-forensics Techniques
Topics Covered
- Introduction to Anti-forensics
- Data Deletion and File Recovery Concepts
- Password Protection and Encryption Techniques
- Steganography and Data Hiding Techniques
- Artifact Wiping and Trail Obfuscation
- Anti-forensics Countermeasures
Lab Exercises
- Perform File Carving on a Linux File System
- Recover Data from Lost or Deleted Disk Partitions
- Crack Application Passwords
- Extract Password Hashes from a Target System
- Detect Steganography and Alternate Data Streams
Module 30: Windows Forensics
Topics Covered
- Introduction to Windows Forensics
- Collecting Volatile and Non-Volatile Information
- Windows Memory Analysis
- Windows Artifacts
- Web Browser Forensics
- Windows File and Metadata Analysis
Lab Exercises
- Acquire and Investigate Volatile Memory from a Windows System
- Examine Windows and Web Browser Artifacts
- Extract Information about Loaded Processes on a Computer
Module 31: Linux and Mac Forensics
Topics Covered
- Volatile and Non-Volatile Data Collection in Linux
- File System Analysis
- Linux Memory Analysis
- Mac Forensics
Lab Exercises
- Acquire Volatile and Non-volatile Data in Linux
- Perform Forensic Investigation on a Linux Memory Dump
- Recover Data from a Linux Memory Dump
Module 32: Network Forensics
Topics Covered
- Network Forensics Fundamentals
- Event Correlation Concepts and Techniques
- Identifying IoCs from Network Logs
- Network Traffic Investigation
Lab Exercises
- Identify and Investigate Various Network Attacks
Module 33: Investigating Web Attacks
Topics Covered
- Web Application Forensics
- IIS and Apache Web Server Logs
- Investigation of Attacks on Windows-based Web Servers
- Detection and Analysis of Web Application Attacks
Lab Exercises
- Identify and Investigate Web Application Attacks
Module 34: Dark Web Forensics
Topics Covered
- Dark Web Concepts
- Dark Web Investigation
- Tor Browser Forensics
Lab Exercises
- Detect Tor Browser Activity on a System
- Detect Tor Browser Browsing Artifacts
- Analyze RAM Dumps to Retrieve Tor Browser Artifacts
Module 35: Investigating Email Crimes
Topics Covered
- Email Basics
- Email Crime Investigation
- Email Acquisition and Analysis
- Email Header Analysis and Authentication
- Business Email Compromise (BEC) Investigations
Lab Exercises
- Investigate a Suspicious Email
- Recover Deleted Email Messages
Module 36: Malware Forensics
Topics Covered
- Malware Types, Components, and Distribution
- Malware Forensics Fundamentals
- Static Malware Analysis
- Suspicious Document Analysis
- Dynamic Malware Analysis
- System and Network Behavior Analysis
Lab Exercises
- Perform Static Analysis on a Suspicious File
- Forensic Examination of a Suspicious Microsoft Office Document
- Perform Port Monitoring
Dates & Locations
September 21, 2026 - September 25, 2026
September 21, 2026 - September 25, 2026
December 14, 2026 - December 18, 2026
December 14, 2026 - December 18, 2026

Exam & Certification
EC-Council Certified Security Specialist
The ECSS credential empowers individuals to:
- Gain Foundational Knowledge in Cybersecurity
- Practice Essentials Skills such as how to defend networks and investigate them
- Challenge Industry recognized exams and earn cybersecurity credentials to build and further your career
Training & Certification Guide
Frequently Asked Questions
Speak to a Training Consultant
All courses are HRD Claimable.
Get in touch with our team via the form or WhatsApp us on +6011-5119 6631
























