Welcome!

Read the blog to see if any of them can help you!



Got a CPE idea? Email it to me at ACPEaDay@gmail.com



Showing posts with label (ISC)2. Show all posts
Showing posts with label (ISC)2. Show all posts

Friday, October 19, 2012

SANS Special Webcast: Why Security Awareness Matters - 1st in Series


There's still a ton of SANS Webcasts I haven't been through, it's like a treasure trove of CPEs! This one seemed appropriate for Cyber Security Awareness Month. I did this one the other day. It will give a certificate in your SANS account.

Here's the link:
https://www.sans.org/webcasts/security-awareness-matters-1st-series-95534

Tuesday, September 11, 2012

InfoSecurity Professional Issue #19 Quiz


This links to all issues of their magazine:

Here's what I did:
Apply CPE to Credential/Concentration: CISSP
Domain for CPE Credit: CISSP - Multiple Domains (Group A)
Activity Start Date: 06/07/12
CPE Type: (ISC)2's InfoSecurity Professional Magazine Quiz
Magazine issue: #18

Friday, August 10, 2012

Free OWASP Online Course

I received an email from isc2 that had the following CPE opportunity in it. I haven't yet tried this since I'm gearing up for a big test, so feel free to comment and let everyone know how it goes!


After a successful launch with (ISC)2, Security Compass is pleased
to announce that we will continue hosting the OWASP Top 10 course,
free on our website.
Click here to access the free OWASP course.
What you’ll learn:
  • Discover vulnerabilities around the OWASP Top 10 in Security Compass’s easy-to-understand training style applicable to beginners and experts.
  • Understand what hackers look for in your web applications including how to defend these threats from a security perspective.
  • Learn how organizations have been affected in our Newsflashes and understand security concepts in a relatable manner.
  • Earn CPE credits for watching the course.*
Course topics include:
  • Injection
  • Cross-Site Scripting (XSS) 
  • Broken Authentication and Session Management
  • Insecure Direct Object References
  • Cross-Site Request Forgery (CSRF)
  • Security Misconfiguration
  • Insecure Cryptographic Storage
  • Failure to Restrict URL Access
  • Insufficient Transport Layer Protection
  • Unvalidated Redirects and Forwards
About Security Compass:
Security Compass is an industry-leading information security firm that provides professional services and training to security-conscious companies. We bring extensive, internationally recognized, cross-industry experience to every client engagement. To our clients, we’re not simply an information security company - we are trusted partners in the development of secure software.

*You must submit the CPEs yourself through the (ISC)2 Member website.

Here's the link:
http://securitycompass.com/computer-based-training/

Thursday, June 7, 2012

InfoSecurity Professional Issue #18 Quiz

This links to all issues of their magazine:



Here's what I did:
Apply CPE to Credential/Concentration: CISSP
Domain for CPE Credit: CISSP - Multiple Domains (Group A)
Activity Start Date: 06/07/12
CPE Type: (ISC)2's InfoSecurity Professional Magazine Quiz
Magazine issue: #18

Tuesday, April 24, 2012

FEMA's Emergency Management Institute


FEMA's Emergency Management Institute has a lot of free courses you can take online, complete with test! I'm not sure if you can get a certificate from them (Update 5Jun12 - Looks like one reader did get a certificate from this course. Thanks AY!), but it looks like they would be some great disaster recovery CPE's!

Here's their link:
http://training.fema.gov/IS/NIMS.asp
If anyone completes one, please let me know if you get a certificate or transcript or something!


Thanks to Russ McRee and the SANS ISC for this one, check out his journal entry here:
https://isc.sans.edu/diary/Emergency+Operations+Centers+Security+Incident+Management+A+Correlation/13030

Wednesday, April 18, 2012

DOD Intrusion Detection System IDS Analysis Part 2

The IASE Released a new training module, though I haven't been through it yet. Let me know how it goes!

Here's the link:
http://iase.disa.mil/eta/ids-part2/ids_part2/launchpage.htm

Wednesday, April 11, 2012

InfoSecurity Professional Issue #17 Quiz

This links to all issues of their magazine:
https://www.isc2.org/infosecurity_professional/default.aspx


Here's what I did:
Apply CPE to Credential/Concentration: CISSP
Domain for CPE Credit: CISSP - Multiple Domains (Group A)
Activity Start Date: 04/11/2012
CPE Type: (ISC)2's InfoSecurity Professional Magazine Quiz
Magazine issue: #17

Tuesday, March 27, 2012

ISC2's SecurityTALK

Plenty of Webcasts to choose from. I'm not sure if they'll give you a certificate or not, I haven't had time to do one yet! If someone can email me to let me know, please do so and I'll update this thing!

Here's the link:
https://www.isc2.org/SecurityTALK.aspx

Here's the info from their page:
SecurityTALK
Industry Knowledge at Your Fingertips
SecurityTALK is a searchable library of presentations and documents directly related to information security. From one convenient location, you have access to the following resources:
(ISC)² Online Events: e-Symposium webcasts and ThinkTank webinars
Industry Presentations: webcasts, webinars and podcasts on a variety of industry topics 
Industry Research: research and whitepapers pertaining to information security
CPEs
You can earn CPEs by reviewing some of the materials in this media channel. To determine which resources are available for credit(s), refer to the (ISC)2 CPE Policies & Guidelines.
Submit Your Presentation or Research
Help this valuable site grow! You can offer your industry knowledge and expertise and make it available to your peers here.
See our SecurityTALK Submission Guidelines.
Check back often to keep up-to-date with what's happening in your industry.

Wednesday, March 7, 2012

ISC2 Need to Knows for Security Managers 10 part Series

Nice stack of information here! Sign up! Not sure of the CPE potential yet...

Here's the link:

Update on ISC2 exams

Here's a post from Hal Tipton on ISC2's blog (The tables don't import, so you should just head over there and read it. Here's the link: http://blog.isc2.org/isc2_blog/2012/03/2012-a-new-era-for-isc%C2%B2s-arsenal-of-certification-exams-.html


2012 a New Era for (ISC)²®’s Arsenal of Certification Exams

2012 a New Era for (ISC)²®’s Arsenal of Certification Exams
By W. Hord Tipton, CISSP-ISSEP, CAP, CISA, Executive Director, (ISC)²
 2012 marks a new era for (ISC)2. This year, the last of our arsenal of certification exams will be transitioned from paper-based to computer-based testing (CBT).  Beginning June 1, 2012, candidates around the globe will be able to register to take the CISSP, CISSP concentrations and the SSCP certification exams via CBT, with the ability to sit for an exam as early as the next day. Not only will this important final step in the testing transition process create a better user experience for a larger pool of candidates and greater global exam accessibility, it will also allow (ISC)2 to realize its vision to fill the pipeline of the next generation of qualified information security professionals.
Our pilot program in Latin America for CISSP and SSCP exams via CBT has proven successful, with the exam being offered in English, Brazilian Portuguese and Spanish, and the SSCP examination offered via CBT in English and Spanish. (ISC)2 certification exams via CBT are currently offered and will be offered in the future in the following languages accordingly:
CredentialDate AvailableGeographic AvailabilityLanguages
CAPAvailable NowWorldwideEnglish
CISSPAvailable NowLatin AmericaBrazilian Portuguese
English
Spanish
CSSLPAvailable NowWorldwideEnglish
SSCPAvailable NowLatin AmericaBrazilian Portuguese
English
Japanese
Future Release Dates
CredentialDate AvailableGeographic AvailabilityLanguages
CISSPJune 1st, 2012WorldwideBrazilian Portuguese
Chinese
English
French
German
Japanese
Korean
Spanish
ISSAPJune 1st, 2012WorldwideEnglish
ISSEPJune 1st, 2012WorldwideEnglish
ISSMPJune 1st, 2012WorldwideEnglish
SSCPJune 1st, 2012WorldwideBrazilian Portuguese
English
Indonesian
Spanish

All (ISC)² credential exams will be offered globally at approved Pearson VUE testing centers. For the convenience of its candidates, (ISC)² continues to expand its list of approved testing center locations within Pearson VUE’s extensive testing network, which includes more than 275 Pearson VUE-owned and -operated Pearson Professional Centers, the Pearson VUE Authorized Test Center Select network, and Pearson VUE Authorized Test Centers located on U.S. military installations around the world.
Beginning September 1, 2012, (ISC)2 will no longer offer paper-based testing (PBT) for any of its certification exams except for candidates located in areas outside of a 75-mile radius from an approved testing center and on a case-by-case basis. August 24, 2012 is the last day candidates can register to sit for regularly scheduled PBT exams occurring through August 31, 2012.
This transition changes the entire structure of our organization and aligns with what we’ve seen in most aspects of our lives – everything is going digital! From our methods of communication to paying bills to visiting the doctor, we have become technologically reliant to fulfill most of our daily tasks. As the leading information security certification and education body worldwide, it’s vital that (ISC)2 remains as current in our exam delivery methods as we do in our exam content.
(ISC)²’s transition to computer-based testing is an important investment in the future of its certification programs. This transition provides numerous benefits to candidates, members and the information security community, including:
  • Fair and precise evaluation of a candidate’s competency
  • Rapid turnaround of exam results
  • More choices as to when and where to take the exam
  • Easier registration
  • Fortified exam security
 Years of long days and nights full of intense analysis and testing have brought us to this point. This transition has certainly been a long-fathomed goal for the organization and I’m proud to see it come to fruition. I look forward to your comments and feedback as the organization moves toward an all-encompassing digitized testing format throughout 2012.

Friday, December 16, 2011

InfoSecurity Professional Issue #16 Quiz

An easy 2 CPEs today!

This links to all issues of their magazine:
https://www.isc2.org/infosecurity_professional/default.aspx

Here's what I did:
Apply CPE to Credential/Concentration: CISSP
Domain for CPE Credit: CISSP - Multiple Domains (Group A)
Activity Start Date: 12/16/2011
CPE Type: (ISC)2's InfoSecurity Professional Magazine Quiz
Magazine issue: #16

Thursday, December 8, 2011

SANS: How Attackers Exploit Modern, Secure Wireless Networks

Another awesome webcast here! (You also get a certificate in your SANS account)

The Link is here:
https://www.sans.org/webcasts/attackers-exploit-modern-secure-wireless-networks-94724

Here's what I did:
Domain: CISSP - Multiple Domains (Group A)
CPE Type: CBT
Course Name: SANS: How Attackers Exploit Modern, Secure Wireless Networks
Number of hours: 1

Tuesday, December 6, 2011

SANS: Who Do You Trust? SSL and TLS Under Attack with Eric Conrad

Very good webcast here! (You also get a certificate in your SANS account)

The Link is here:
https://www.sans.org/webcasts/trust-ssl-tls-attack-eric-conrad-94844

Here's what I did:
Domain: CISSP - Multiple Domains (Group A)
CPE Type: CBT
Course Name: SANS: Who Do You Trust? SSL and TLS Under Attack with Eric Conrad
Number of hours: 1

Tuesday, November 22, 2011

DoD Information Assurance Awareness version 10.0

DoD Information Assurance Awareness version 10.0

Updated course here, took about an hour.

The Link is here:
http://iase.disa.mil/eta/iaav10/index.htm

Here's what I did:
Domain: CISSP - Multiple Domains (Group A)
CPE Type: CBT
Course Name: DoD Information Assurance Awareness version 10.0
Number of hours: 1

Tuesday, August 23, 2011

EEye REM® and Retina Administrator Training

Note: You must have a U.S. Government CAC for this training.

Also To note: you could put this under Group A or Group B, depending on your needs.

It took me about 3 hours to do all of this, but I took some time to do it. I would say you can get 2-4 credits out of this.

Here's the link:
https://powhatan.iiie.disa.mil/tools/sccvi/training/online-training-index.html#

Here's what I did:
Domain for CPE Credit: Multiple Domains (Group A) OR Other - General Education (Group B)
CPE Type: Self-Study, CBT
Course Name: EEye REM® and Retina Administrator Training
Number of Hours: 3

Saturday, August 20, 2011

Some books I recommend!

Hello everyone! I added a short list of books I recommend to the right through an amazon link. I'm not the greatest page developer, so it doesn't looks super pretty.

These are all the books you'll need to pass the CISSP, or keep on your shelf for a reference. At least, they're all the ones I used/use! (Except for Eric Conrad's, I took his SANS course right before his book was published)

Tuesday, August 16, 2011

SANS Webcast: Innovation in Application Security: Application Risk Management

Here's the link:
https://www.sans.org/webcasts/innovation-application-security-application-risk-management-93548

Here's what I did:
Domain for CPE Credit: CISSP - Application Security
CPE Type: Self-Study, CBT
Course Name: SANS Webcast: Innovation in Application Security: Application Risk Management
Number of Hours: 1

Thursday, July 28, 2011

TechNet Webcast: Security Best Practices for Hyper-V and Server Virtualization (Level 300)

Came across this the other day. Pretty good tips here, for those of you running Hyper-V.

Here's the link:
http://www.microsoft.com/events/series/windowsserver2008.aspx?tab=Webcasts&seriesid=101&webcastid=13136

Here's what I did:
Domain for CPE Credit: CISSP - Multiple Domains (Group A)
CPE Type: Self-Study, CBT
Course Name: TechNet Webcast: Security Best Practices for Hyper-V and Server Virtualization (Level 300)
Number of Hours: 1

Wednesday, July 27, 2011

Give a security briefing

There are loads of CPE's fresh for the harvesting. Help yourself by helping others.

I've got a few links to help you out with this:
Microsoft's (Free) Security, privacy, and online safety brochures and fact sheets
http://www.microsoft.com/security/resources/brochures.aspx
Microsoft also has some free studies available for facts in your briefing:
http://www.microsoft.com/security/resources/research.aspx
National Cyber Security Alliance:
http://www.staysafeonline.org/
SANS Ouch! Newsletters can be of some help also:
http://www.securingthehuman.org/resources/newsletters/ouch

These are just four of many free resources available to you. Remember, for every briefing hour you give, it's a free hour. Try to set up a monthly briefing, and remember, food always attracts people! =)

Thursday, July 14, 2011

Scripting with Windows PowerShell - Part 3

Next part! Nothing new to report, just some different command learning!

Here's the link for part 2:
http://www.microsoft.com/events/series/windowsserver2008.aspx?tab=Webcasts&seriesid=101&webcastid=17430

Here's what I did:
Domain for CPE Credit: Group B (General Education)
CPE Type: Self-Study, CBT
Course Name: Scripting with Windows PowerShell - Part 3
Number of Hours: 1