• CADMUS Cybersecurity Training Ecosystem

      We are delighted to welcome you to our specialized cybersecurity training ecosystem. Our mission is to provide you with the most advanced tools and knowledge to excel in the digital security landscape.

      The CADMUS project aims to address the cybersecurity expertise shortage in Europe by developing targeted training opportunities based on approaches including cyber range projects, serious games, table top exercises, hackathons, bootcamps, and traineeships. These interventions aim to upskill educators, trainers, SME and startup employees, civil servants as well as graduate students who target cybersecurity careers. The project will utilize existing initiatives and offers in cyber security training to build upon and develop enhanced training curricula based on integrating proven training models and standards. The project started on December 1st, 2024, and will run for 36 months (until November 2027).

      Below, you will find our range of available cybersecurity courses and training modules. If you wish to participate, please click on the registration button of each course and follow the instructions provided therein.

      We look forward to seeing you in our training sessions!

    •  
      Malware Analysis Closed

      Introduction to Malware Detection

      A foundational course covering static and dynamic malware analysis techniques, behavioural indicators, and detection methodologies.

      Registration deadline: 26 April 2026
       
      Table-top Exercise Closed

      Public Sector Ransomware Crisis

      A structured simulation exercise examining incident response, stakeholder coordination, and decision-making under a ransomware scenario in public sector environments.

      Registration deadline: 6 May 2026

Μαθήματα

Basics of Security Hardening of Networking Devices
Cyber Range Courses
ID: CADMUS-CR-01 Owner: AU
Available for training June 2026
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Basic
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer
ECSF Skills View Skills ▾
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Apply auditing tools and techniques
  • Assess and enhance an organisation’s cybersecurity posture
  • Audit with integrity, being impartial and independent
  • Coordinate the integration of security solutions
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Identify and solve cybersecurity-related issues
  • Implement cybersecurity recommendations and best practices
  • Manage and analyse log files
  • Work on operating systems, servers, clouds and relevant infrastructures
Description View Description ▾
This Bootcamp course introduces the fundamental concepts of network switching, routing, and security at Layers 2 and 3. Participants will learn how switching operates within network infrastructure and explore its security implications. Through hands-on practice, they will configure VLANs, trunk links, and inter-switch connections, apply port security, and implement Spanning Tree Protocol to maintain network stability. The course also covers essential hardening techniques, such as securing management interfaces, isolating unused ports and VLANs, and enabling SSH for secure remote access with password encryption. On the routing side, learners will configure static and dynamic routing protocols and apply standard and extended Access Control Lists (ACLs) to control traffic and enhance security.
Advanced Layer 2 Switching and Security Strategies
Cyber Range Courses
ID: CADMUS-CR-02 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Basic–Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Penetration Tester Cyber Incident Responder Cybersecurity Auditor Cybersecurity Architect
ECSF Skills View Skills ▾
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Assess the security and performance of solutions
  • Configure solutions according to the organisation’s security policy
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Identify and exploit vulnerabilities
  • Identify, analyse and correlate cybersecurity events
  • Implement cybersecurity recommendations and best practices
  • Integrate cybersecurity solutions to the organisation’s infrastructure
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Work on operating systems, servers, clouds and relevant infrastructures
Description View Description ▾
This Cyber Range course provides an introduction to secure network switching through guided, hands-on configuration of Cisco IOS-based switches. Participants learn to design, implement, and secure Layer 2 environments following CIS and DISA STIG recommendations. The exercises combine networking fundamentals with applied cybersecurity controls to ensure network resilience. Learners simulate common network attacks (e.g., rogue DHCP, MAC spoofing) and deploy corresponding countermeasures.
Advanced Layer 3 Security Hardening and Traffic Control
Cyber Range Courses
ID: CADMUS-CR-03 Owner: AU
Available for training March 2027
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Basic–Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer
ECSF Skills View Skills ▾
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Assess the security and performance of solutions
  • Configure solutions according to the organisation’s security policy
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Identify and exploit vulnerabilities
  • Identify, analyse and correlate cybersecurity events
  • Implement cybersecurity recommendations and best practices
  • Integrate cybersecurity solutions to the organisation’s infrastructure
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Work on operating systems, servers, clouds and relevant infrastructures
Description View Description ▾
This Cyber Range course provides practical training in secure routing and network segmentation based on the CIS Cisco ACI Router STIG Benchmark v1.0.0. Participants will learn to harden router configurations, secure control planes, implement routing protocol authentication, and design segmented networks using VRFs and ACLs. The session combines theoretical grounding with hands-on exercises in a simulated enterprise environment, replicating best practices for BGP, OSPF, and inter-domain routing security.
Firewall Configuration and Security Management
Cyber Range Courses
ID: CADMUS-CR-04 Owner: AU
Available for training March 2027
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Basic–Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Cybersecurity Auditor Cyber Incident Responder Cybersecurity Architect Cybersecurity Researcher
ECSF Skills View Skills ▾
  • Configure solutions according to the organisation’s security policy
  • Implement cybersecurity recommendations and best practices
  • Select appropriate specifications, procedures and controls
  • Manage and analyse log files
  • Integrate cybersecurity solutions to the organisation’s infrastructure
  • Decompose and analyse systems to develop security and privacy requirements and identify effective solutions
  • Identify and solve cybersecurity‑related issues
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
Description View Description ▾
This Cyber Range course provides hands-on training in configuring and securing firewalls following the CIS pfSense Firewall Benchmark v1.1.0 (2023). Participants will harden firewall configurations, implement traffic control policies, and enforce security mechanisms such as VPN encryption, logging, and intrusion mitigation. Through realistic network scenarios, trainees will create, test, and verify firewall policies that ensure confidentiality, integrity, and availability in both enterprise and small-office networks.
Linux OS Security Hardening and Compliance Validation
Cyber Range Courses
ID: CADMUS-CR-05 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Basic–Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Cybersecurity Architect Cybersecurity Auditor
ECSF Skills View Skills ▾
  • Implement cybersecurity recommendations and best practices
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Assess and enhance an organisation’s cybersecurity posture
  • Manage and analyse log files
  • Work on operating systems, servers, clouds and relevant infrastructures
  • Identify and solve cybersecurity-related issues
  • Decompose and analyse systems to develop security and privacy requirements and identify effective solutions
  • Apply auditing tools and techniques
  • Configure solutions according to the organisation’s security policy
Description View Description ▾
This Cyber Range exercise provides a hands-on environment for implementing security controls and hardening Linux systems according to CIS and STIG guidelines. Participants perform configuration and validation tasks on Ubuntu 24.04 and Red Hat Enterprise Linux 9 virtual machines. They will execute hardening procedures covering authentication, privilege management, logging, auditing, and network protection. The exercise concludes with a compliance verification phase using CIS-CAT or audit scripts, ensuring participants can evaluate and report on the security posture of Linux systems.
Windows OS Security Hardening and Active Directory Defense
Cyber Range Courses
ID: CADMUS-CR-06 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Basic–Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Cybersecurity Architect Cybersecurity Auditor
ECSF Skills View Skills ▾
  • Implement cybersecurity recommendations and best practices
  • Configure solutions according to the organisation’s security policy
  • Work on operating systems, servers, clouds and relevant infrastructures
  • Manage and analyse log files
  • Decompose and analyse systems to identify weaknesses and ineffective controls
Description View Description ▾
This Cyber Range exercise provides hands-on experience in securing Windows 11 workstations and Windows Server 2025 environments, focusing on Active Directory, authentication mechanisms, and OS-level hardening. Participants perform security configuration tasks following CIS Benchmarks and best practices. The exercise includes identifying deviations, applying remediations through Group Policy Objects, PowerShell scripts, and security templates, and verifying compliance using built-in and third-party auditing tools.
Android Device Security and Hardening
Cyber Range Courses
ID: CADMUS-CR-07 Owner: AU
Available for training March 2027
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Basic–Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Cyber Incident Responder Cybersecurity Architect
ECSF Skills View Skills ▾
  • Configure solutions according to the organisation’s security policy
  • Implement cybersecurity recommendations and best practices
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Assess the security and performance of solutions
  • Manage and analyse log files
  • Identify, analyse and correlate cybersecurity events
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Work on operating systems, servers, clouds and relevant infrastructures
Description View Description ▾
This Cyber Range exercise introduces participants to securing Android mobile devices based on CIS Benchmark. Through guided hands-on tasks, trainees configure, audit, and harden Android environments, focusing on authentication, application control, network access, and privacy. Participants will simulate both user-level and administrator-level activities, including detecting policy deviations, adjusting configurations, and validating compliance with organizational security policies. The exercise concludes with compliance validation and policy reporting using device analysis tools and MDM frameworks.
Business Continuity Planning and Resilience Simulation
Cyber Range Courses
ID: CADMUS-CR-08 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Risk Manager Cybersecurity Architect Cybersecurity Implementer
ECSF Skills View Skills ▾
  • Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls
  • Build resilience against points of failure aCyber Rangeoss the architecture
  • Analyse and consolidate organisation’s quality and risk management practices
  • Assess the security and performance of solutions
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Identify non-cyber events with implications on cyber-related activities
  • Work on operating systems, servers, clouds and relevant infrastructures
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
Description View Description ▾
This course provides a comprehensive overview of business continuity and disaster recovery (BCDR) principles, integrating theory with hands-on cyber-range exercises. It equips participants with the skills to identify risks, conduct impact analyses, design continuity strategies, and execute disaster recovery plans under pressure.
Disaster Recovery Operations and Technical Restoration
Cyber Range Courses
ID: CADMUS-CR-09 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cyber Incident Responder Cybersecurity Risk Manager Chief Information Security Officer (CISO)
ECSF Skills View Skills ▾
  • Build resilience against points of failure aCyber Rangeoss the architecture
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls
  • Assess the security and performance of solutions
  • Collect information while preserving its integrity
  • Work on operating systems, servers, clouds and relevant infrastructures
  • Identify and solve cybersecurity-related issues
  • Communicate, present and report to relevant stakeholders
  • Understand, practice and adhere to ethical requirements and standards
Description View Description ▾
This Cyber Range module provides hands-on experience in disaster recovery operations using a fully virtualized environment. Participants practice backup configuration, VM snapshotting, replication, restoration, and failover orchestration. A simulated outage scenario requires execution of full DR activation procedures, including service restoration, data verification, and failback to the production environment. The workflow integrates real procedures aligned with ISO 22301, NIST SP 800-34, and industry DR best practices.
CISO Governance, Compliance and Security Oversight
Cyber Range Courses
ID: CADMUS-CR-10 Owner: AU
Available for training June 2026
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) Cybersecurity Risk Manager Cybersecurity Auditor Cyber Legal, Policy & Compliance Officer
ECSF Skills View Skills ▾
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Analyse and consolidate organisation’s quality and risk management practices
  • Assess and enhance an organisation’s cybersecurity posture
  • Define and apply maturity models for cybersecurity management
  • Communicate, present and report to relevant stakeholders
  • Collect, evaluate, maintain and protect auditing information
Description View Description ▾
This Cyber Range module enables participants to take on the role of a CISO overseeing a simulated organisation. Using the open-source CISO Assistant platform, trainees configure governance frameworks, assess compliance maturity, manage evidence, and prepare audit-ready documentation. The combined LMS and Cyber Range exercises replicate real-world CISO workflows, including reporting, gap analysis, risk scoring, and executive communication.
Incident Response
Cyber Range Courses
ID: CADMUS-CR-11 Owner: AU+EUC
Available for training September 2026
Duration 12 hours
Platform Category Cyber Range LMS
Proficiency Level Intermediate-Advanced
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cyber Incident Responder Digital Forensics Investigator Cyber Threat Intelligence Specialist
ECSF Skills View Skills ▾
  • Collect information while preserving its integrity
  • Conduct technical analysis and reporting
  • Identify threat actors TTPs and campaigns
  • Identify, analyse and correlate cybersecurity events
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
Description View Description ▾
This Cyber Range module places participants in the role of technical incident responders. Using a fully simulated enterprise environment, participants investigate and contain a multi-stage security incident involving malware, lateral movement, privilege escalation and command-and-control communications. Learners perform real technical tasks including triage, log analysis, forensics collection, network traffic inspection, containment and eradication.
Secure Coding C/C++
Cyber Range Courses
ID: CADMUS-CR-12 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category LMS Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Secure Coder / Secure Software Developer (proposed addition to ECSF framework)
ECSF Skills View Skills ▾
  • Review codes assess their security
  • Develop code, sCyber Rangeipts and programmes
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Assess the security and performance of solutions
  • Identify and solve cybersecurity-related issues
  • Apply auditing tools and techniques
  • Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles
  • Manage and analyse log files
  • Decompose and analyse systems to develop security and privacy requirements and identify effective solutions
  • Implement cybersecurity recommendations and best practices
Description View Description ▾
This course teaches participants how to design and write secure code, prevent vulnerabilities, and integrate security into the software development lifecycle. Combining LMS modules with practical labs, the training emphasizes secure programming techniques, vulnerability identification, and remediation.
Secure Coding .Net/C#
Cyber Range Courses
ID: CADMUS-CR-13 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category LMS Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Secure Coder / Secure Software Developer (proposed addition to ECSF framework)
ECSF Skills View Skills ▾
  • Review codes assess their security
  • Develop code, sCyber Rangeipts and programmes
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Assess the security and performance of solutions
  • Identify and solve cybersecurity-related issues
  • Apply auditing tools and techniques
  • Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles
  • Manage and analyse log files
  • Decompose and analyse systems to develop security and privacy requirements and identify effective solutions
  • Implement cybersecurity recommendations and best practices
Description View Description ▾
This course introduces participants to the theory and practice of modern cryptography with a focus on post-quantum methods. It covers classical symmetric/asymmetric algorithms, quantum threats, and hands-on implementation of PQC algorithms. Practical labs emphasize integration of PQC into real systems, hybrid deployment, and migration strategies.
Secure Coding Java
Cyber Range Courses
ID: CADMUS-CR-14 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category LMS Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Secure Coder / Secure Software Developer (proposed addition to ECSF framework)
ECSF Skills View Skills ▾
  • Review codes assess their security
  • Develop code, sCyber Rangeipts and programmes
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Assess the security and performance of solutions
  • Identify and solve cybersecurity-related issues
  • Apply auditing tools and techniques
  • Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles
  • Manage and analyse log files
  • Decompose and analyse systems to develop security and privacy requirements and identify effective solutions
  • Implement cybersecurity recommendations and best practices
Description View Description ▾
This intensive two-day program equips senior executives with the strategic insights and leadership tools needed to govern enterprise-wide cybersecurity. Through expert-led sessions, case studies, and interactive workshops, participants will learn how to oversee risk management, shape effective policies, and lead organizational culture toward resilience. Designed for board members, C-suite leaders, and top-level decision-makers, the course empowers executives to navigate complex cyber threats, make informed strategic decisions, and safeguard organizational trust in an increasingly digital world.
Secure Coding Python
Cyber Range Courses
ID: CADMUS-CR-15 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category LMS Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Secure Coder / Secure Software Developer (proposed addition to ECSF framework)
ECSF Skills View Skills ▾
  • Review codes assess their security
  • Develop code, sCyber Rangeipts and programmes
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Assess the security and performance of solutions
  • Identify and solve cybersecurity-related issues
  • Apply auditing tools and techniques
  • Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles
  • Manage and analyse log files
  • Decompose and analyse systems to develop security and privacy requirements and identify effective solutions
  • Implement cybersecurity recommendations and best practices
Description View Description ▾
This course covers methods and tools for gathering, analyzing and applying cyber threat intelligence (CTI). Students will learn the roles of tactical, operational and strategic intelligence. The class emphasizes using CTI platforms (e.g. MISP) and OSINT tools to collect data on threat actors and campaigns. Participants will practice analysing threat actor behaviors and TTPs, and learn to produce intelligence reports that inform defenders. Through labs, they will integrate threat feeds into a SIEM and demonstrate how intelligence can improve early detection and response. Threat intelligence provides details on threats- including actors, tactics, techniques, and procedures- enabling organizations to anticipate and mitigate attacks.
Secure Coding Mobile
Cyber Range Courses
ID: CADMUS-CR-16 Owner: AU
Available for training September 2026
Duration 12 hours
Platform Category LMS Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cybersecurity Implementer Secure Coder / Secure Software Developer (proposed addition to ECSF framework)
ECSF Skills View Skills ▾
  • Review codes assess their security
  • Develop code, sCyber Rangeipts and programmes
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Assess the security and performance of solutions
  • Identify and solve cybersecurity-related issues
  • Apply auditing tools and techniques
  • Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles
  • Manage and analyse log files
  • Decompose and analyse systems to develop security and privacy requirements and identify effective solutions
  • Implement cybersecurity recommendations and best practices
Description View Description ▾
This course uses interactive games and scenario-based exercises to train participants in cybersecurity incident response. A tabletop exercise (TTX) is a role-playing activity where participants respond to a presented scenario in their real or fictional roles. The goal is not perfect performance but working as a team and identifying weaknesses in peacetime. Game-based learning (e.g. capture-the-flag challenges, cyber war-games) creates immersive, problem-solving environments that boost engagement and knowledge retention. Participants will engage in TTX scenarios (e.g. ransomware attack on a company) and serious games to practice decision-making, communication, and coordination. Debrief sessions solidify lessons and suggest policy improvements.
Post-Quantum Cryptography
Cyber Range Courses
ID: CADMUS-CR-17 Owner: AU, CTI
Available for training January 2027
Duration 40 hours
Platform Category LMS Labs BTCMP
Proficiency Level Advanced
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cybersecurity Architect Cybersecurity Researcher Chief Information Security Officer (CISO) Cybersecurity Auditor Cybersecurity Implementer
ECSF Skills View Skills ▾
  • Anticipate cybersecurity threats, needs and upcoming challenges
  • Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles
  • Decompose and analyse systems to develop security and privacy requirements and identify effective solutions
  • Develop code, sCyber Rangeipts and programmes
  • Review codes assess their security
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Assess the security and performance of solutions
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
Description View Description ▾
This course teaches how to embed security throughout the software development lifecycle. Learners will study how to integrate security into requirements, design, implementation, and deployment. Topics include secure coding standards, threat modeling methods, and use of automated analysis tools. Students will practice static application security testing (SAST) on codebases, dynamic scanning of running apps, and dependency analysis. Emphasis is on “shifting left” security by adding checks early: for example, using CI/CD to run SonarQube or OWASP ZAP scans. The goal is to reduce software vulnerabilities and ensure robust development practices.
Network Penetration Testing
Cyber Range Courses
ID: CADMUS-CR-18 Owner: CTI
Available for training July 2026
Duration 20 hours
Platform Category Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self-paced (with hands-on labs)
ECSF Roles View Roles ▾
Penetration Tester Cybersecurity Implementer Cybersecurity Researcher
ECSF Skills View Skills ▾
  • Anticipate cybersecurity threats, needs and upcoming challenges
  • Assess and enhance an organisation’s cybersecurity posture
  • Conduct ethical hacking
  • Conduct technical analysis and reporting
  • Identify and exploit vulnerabilities
  • Identify, analyse and correlate cybersecurity events
  • Use penetration testing tools effectively
  • Work on operating systems, servers, clouds and relevant infrastructures
  • Assess the security and performance of solutions
  • Work ethically and independently; not influenced and biased by internal or external actors
  • Work under pressure
Description View Description ▾
This course provides a deep dive into Network Penetration Testing, focusing exclusively on the assessment and exploitation of network infrastructures. Trainees learn how attackers map, probe, and compromise networked systems by exploiting protocol weaknesses, insecure services, misconfigurations, and weak segmentation practices. The program covers scanning, enumeration, service exploitation, password attacks, lateral movement, and network-level post-exploitation techniques. Participants practice intensively within a realistic cyber range, where they will attack multi-segmented networks, bypass defenses, exploit vulnerable services, capture credentials, and escalate access across the environment. Emphasis is placed on understanding real-world attacker techniques (MITM, spoofing, pivoting), while building the ability to produce professional reporting and remediation guidance for securing enterprise networks.
Network Penetration Testing
Cyber Range Courses

This course provides a deep dive into Network Penetration Testing, focusing exclusively on the assessment and exploitation of network infrastructures. Trainees learn how attackers map, probe, and compromise networked systems by exploiting protocol weaknesses, insecure services, misconfigurations, and weak segmentation practices.

Web Application Penetration Testing
Cyber Range Courses

This course provides a comprehensive, hands-on exploration of Web Application Penetration Testing, focusing on real-world techniques, exploitation workflows, and attacker methodologies. Through a combination of theory, guided demonstrations, and intensive cyber range labs, participants learn how to deconstruct and assess modern web applications across all layers-client-side, server-side, authentication flows, and backend architectures.

The training is fully aligned with OWASP Testing Guide (WSTG), OWASP Top 10, CWE, ASVS, and industry standards for offensive security operations. Learners engage with practical scenarios including session hijacking, API exploitation, business logic attacks, misconfiguration discovery, injection exploitation, and chained attack escalation.

By the end of the course, participants will have the skills required to conduct full-scope web penetration tests, produce actionable findings, and support secure development and risk mitigation across organizations.

WEB Application Penetration Testing
Cyber Range Courses
ID: CADMUS-CR-19 Owner: CTI
Available for training December 2026
Duration 20 hours
Platform Category Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical (Online instructor-led, hands-on cyber range labs)
ECSF Roles View Roles ▾
Penetration Tester Cybersecurity Implementer Cybersecurity Architect Cyber Incident Responder Cybersecurity Auditor Digital Forensics Investigator Cyber Threat Intelligence Specialist
ECSF Skills View Skills ▾
  • Conduct ethical hacking
  • Identify and exploit vulnerabilities
  • Use penetration testing tools effectively
  • Identify, analyse and correlate cybersecurity events
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Conduct technical analysis and reporting
  • Model threats, actors and TTPs
  • Work on operating systems, servers, clouds and relevant infrastructures
  • Think Cyber Rangeeatively and outside the box
  • Communicate, present and report to relevant stakeholders
  • Work ethically and independently; not influenced and biased by internal or external actors
Description View Description ▾
This course focuses on penetration testing techniques targeting operating systems, including Windows and Linux environments. Learners study how OS-level vulnerabilities, misconfigurations, privilege escalation paths, and insecure services can be discovered and exploited. The curriculum covers enumeration, local and remote exploitation, post-exploitation techniques, credential dumping, persistence mechanisms, and lateral movement. Participants practice hands-on in a cyber range, attacking intentionally vulnerable OS images and applying real exploitation workflows. The course prepares learners to understand and evaluate the security posture of system-level components and to propose effective remediation strategies.
Denial of Service (DoS)
Cyber Range Courses
ID: CADMUS-CR-20 Owner: CTI
Available for training July 2026
Duration 6x4 hours
Platform Category Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self-paced (with hands-on labs)
ECSF Roles View Roles ▾
Cyber Incident Responder Digital Forensics Investigator Cyber Threat Intelligence Specialist Penetration Tester Chief Information Security Officer (CISO) Cyber Threat Intelligence Specialist Cybersecurity Architect
ECSF Skills View Skills ▾
  • Anticipate cybersecurity threats, needs and upcoming challenges
  • Build resilience against points of failure aCyber Rangeoss the architecture
  • Conduct technical analysis and reporting
  • Identify, analyse and correlate cybersecurity events
  • Implement cybersecurity recommendations and best practices
  • Manage and analyse log files
  • Model threats, actors and TTPs
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
Description View Description ▾
This course provides a comprehensive, hands-on exploration of Web Application Penetration Testing, focusing on real-world techniques, exploitation workflows, and attacker methodologies. Through a combination of theory, guided demonstrations, and intensive cyber range labs, participants learn how to deconstruct and assess modern web applications across all layers—client-side, server-side, authentication flows, and backend architectures. The training is fully aligned with OWASP Testing Guide (WSTG), OWASP Top 10, CWE, ASVS, and industry standards for offensive security operations. Learners engage with practical scenarios including session hijacking, API exploitation, business logic attacks, misconfiguration discovery, injection exploitation, and chained attack escalation. By the end of the course, participants will have the skills required to conduct full-scope web penetration tests, produce actionable findings, and support secure development and risk mitigation across organizations.
Operating Systems Penetration Testing
Cyber Range Courses
ID: CADMUS-CR-21 Owner: CTI
Available for training December 2026
Duration 20 hours
Platform Category Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self-paced (with hands-on labs)
ECSF Roles View Roles ▾
Penetration Tester Cybersecurity Researcher Cybersecurity Implementer Cyber Incident Responder Cybersecurity Architect Digital Forensics Investigator Cyber Threat Intelligence Specialist
ECSF Skills View Skills ▾
  • Conduct ethical hacking
  • Identify, analyse and correlate cybersecurity events
  • Identify and exploit vulnerabilities
  • Use penetration testing tools effectively
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Work on operating systems, servers, clouds and relevant infrastructures
  • Conduct technical analysis and reporting
  • Communicate, present and report to relevant stakeholders
  • Work ethically and independently; not influenced and biased by internal or external actors
  • Work under pressure
  • Perform social engineering
Description View Description ▾
This advanced course introduces participants to the methodologies, tools and techniques used to assess the security of mobile applications and Operational Technology (OT) environments. Students learn how to analyze and exploit vulnerabilities in Android/iOS applications through static analysis, dynamic testing, reverse engineering, traffic interception, and exploitation of insecure mobile design patterns. For OT, participants explore industrial control system architectures, SCADA environments, PLC behavior, industrial network protocols, and critical vulnerabilities found in real-world OT infrastructures. Through a safe cyber range designed for industrial systems, learners practice reconnaissance, protocol testing, exploitation, segmentation bypass and post-exploitation methods adapted to safety-critical environments. The course blends mobile and OT domains to highlight how modern cyber-physical and mobile-controlled industrial systems can be compromised, and how to mitigate these threats effectively.
Mobile/OT Penetration Testing
Cyber Range Courses
ID: CADMUS-CR-22 Owner: CTI
Available for training July 2026
Duration 30 hours
Platform Category Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical (online theory, physical lab environment for OT components)
ECSF Roles View Roles ▾
Penetration Tester Penetration Tester Cybersecurity Implementer Cybersecurity Architect Cyber Incident Responder Cybersecurity Researcher Cyber Threat Intelligence Specialist
ECSF Skills View Skills ▾
  • Conduct ethical hacking
  • Identify and exploit vulnerabilities
  • Use penetration testing tools effectively
  • Conduct technical analysis and reporting
  • Identify, analyse and correlate cybersecurity events
  • Assess the security and performance of solutions
  • Implement cybersecurity recommendations and best practices
  • Select appropriate specifications, procedures and controls
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls
  • Model threats, actors and TTPs
  • Identify threat actors TTPs and campaigns
  • Manage and analyse log files
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Develop and communicate, detailed and reasoned investigation reports
  • Communicate, present and report to relevant stakeholders
  • Review and enhance security documents, reports, SLAs and ensure the security objectives
  • Identify and solve cybersecurity-related issues
  • Draw cybersecurity architectural and functional specifications
  • Coordinate the integration of security solutions
  • Build resilience against points of failure aCyber Rangeoss the architecture
  • Think Cyber Rangeeatively and outside the box
  • Organise and work in a systematic and deterministic way based on evidence
  • Work ethically and independently; not influenced and biased by internal or external actors
Description View Description ▾
This course teaches participants how to design and write secure code, prevent vulnerabilities, and integrate security into the software development lifecycle. Combining LMS modules with practical labs, the training emphasizes secure programming techniques, vulnerability identification, and remediation.
TBA
Cyber Range Courses
ID: CADMUS-CR-23 Owner: NCSA
Available for training
Duration 1 week (≈10 total hours)
Platform Category Cyber Range Interactive Simulation
Proficiency Level Basic / Intermediate
Training Type Upskilling / Awareness
Delivery Method Online instructor-led (with interactive gaming elements)
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) Cyber Incident Responder Cybersecurity Risk Manager Cybersecurity Educator Cybersecurity Auditor
ECSF Skills View Skills ▾
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Work under pressure
  • Collaborate with other team members and colleagues
  • Manage cybersecurity resources
  • Build a cybersecurity risk-aware environment
  • Identify, analyse and correlate cybersecurity events
  • Assess and enhance an organisation’s cybersecurity posture
  • Motivate and encourage people
Description View Description ▾
This course teaches participants how to design and write secure code, prevent vulnerabilities, and integrate security into the software development lifecycle. Combining LMS modules with practical labs, the training emphasizes secure programming techniques, vulnerability identification, and remediation.
Cyber Threat Intelligence
Cyber Range Courses
ID: CADMUS-CR-24 Owner: NCSA
Available for training
Duration 20 hours
Platform Category Cyber Range & Online Lab
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self-paced (optional virtual instructor sessions)
ECSF Roles View Roles ▾
Penetration Tester Cyber Threat Intelligence Specialist Cybersecurity Researcher Digital Forensics Investigator
ECSF Skills View Skills ▾
  • Identify and exploit vulnerabilities
  • Use penetration testing tools effectively
  • Conduct ethical hacking
  • Perform social engineering
  • Conduct technical analysis and reporting
Description View Description ▾
This course teaches participants how to design and write secure code, prevent vulnerabilities, and integrate security into the software development lifecycle. Combining LMS modules with practical labs, the training emphasizes secure programming techniques, vulnerability identification, and remediation.
Advanced Digital Forensics and Incident
Cyber Range Courses
ID: CADMUS-CR-25 Owner: NCSA
Available for training March 2026
Duration 4 weeks
Platform Category Cyber Pange
Proficiency Level Advanced
Training Type Upskilling Cyber Range oss-skilling, advanced forensics domain.
Delivery Method Online Instructor-Led
ECSF Roles View Roles ▾
Digital Forensics Investigator Cyber Incident Responder Cyber Legal, Policy & Compliance Officer
ECSF Skills View Skills ▾
  • Explain and present digital evidence in a simple, straightforward and easy to understand way
  • Identify, analyse and correlate cybersecurity events
  • Work ethically and independently; not influenced and biased by internal or external actors
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
Description View Description ▾
This course teaches participants how to design and write secure code, prevent vulnerabilities, and integrate security into the software development lifecycle. Combining LMS modules with practical labs, the training emphasizes secure programming techniques, vulnerability identification, and remediation.
Defend the Hospital- Cyber Serious Game
Serious Game Courses
ID: CADMUS-SGTTX-02 Owner: CTI
Available for training February 2027
Duration 12 hours
Platform Category Serious Game
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self‑paced
ECSF Roles View Roles ▾
Cyber Incident Responder Cybersecurity Risk Manager Chief Information Security Officer (CISO)
ECSF Skills View Skills ▾
  • Collaborate with other team members and colleagues
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Analyse and consolidate organisation’s quality and risk management practices
  • Work under pressure
  • Communicate, coordinate and cooperate with internal and external stakeholders
Description View Description ▾
An interactive serious game placing teams in charge of defending a digital hospital. Players deploy controls, respond to injects, and adapt strategies as threats escalate, a scoring engine tracks resilience and patient‑safety impact.
Post-Quantum Cryptography Transition Challenge
Serious Game Courses
ID: CADMUS-SGTTX-04 Owner: CTI
Available for training May 2026
Duration 10 hours
Platform Category Serious Game
Proficiency Level Advanced
Training Type Cross‑skilling
Delivery Method Online instructor‑led
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) Cybersecurity Risk Manager Cybersecurity Architect
ECSF Skills View Skills ▾
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Implement cybersecurity risk management frameworks, methodologies and guidelines and ensure compliance with regulations and standards
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Analyse and consolidate organisation’s quality and risk management practices
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
Description View Description ▾
Post-Quantum Cryptography Transition Challenge (Serious Game)

A competitive serious game simulating the shift from classical public-key crypto to PQC. Participants face supply-chain disruptions, adversary pressure, and compliance deadlines. Teams score based on resilience, adoption efficiency, and stakeholder trust.
Cyber Crisis Leadership Challenge
Serious Game Courses
ID: CADMUS-SGTTX-10 Owner: CTI
Available for training May 2026
Duration10 hours
Platform Category Serious Game
Proficiency Level Advanced
Training Type Cross‑skilling
Delivery Method Online instructor‑led
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) Cybersecurity Risk Manager Cyber Legal, Policy & Compliance Officer
ECSF Skills View Skills ▾
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Review and enhance security documents, reports, SLAs and ensure the security objectives
  • Manage cybersecurity resources
  • Collaborate with other team members and colleagues
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
Description View Description ▾
Cyber Crisis Leadership Challenge (Serious Game)

A competitive serious game where participants assume leadership roles during a cross‑sector cyber crisis. Teams make timed decisions affecting national security and business continuity, scoring reflects risk reduction, trust, and transparency.
Public Sector Ransomware Crisis
Table Top Exercise Courses
ID: CADMUS-SGTTX-01 Owner: CTI
Available for trainingMay 2026
Duration 5 hours
Platform Category Table Top Exercise
Proficiency Level Basic–Intermediate
Training Type Reskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cyber Legal, Policy & Compliance Officer Chief Information Security Officer (CISO) Cyber Incident Responder
ECSF Skills View Skills ▾
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response (Intermediate)
  • Communicate, coordinate and cooperate with internal and external stakeholders (Intermediate)
  • Analyse and comply with cybersecurity-related laws, regulations and legislations (Intermediate)
  • Manage cybersecurity resources (Basic)
  • Review and enhance security documents, reports, SLAs and ensure the security objectives (Intermediate)
Description View Description ▾
A practical tabletop exercise where a municipal administration faces a ransomware attack disrupting citizen services. Teams rank systems, negotiate priorities, write and send public messages, and coordinate with law enforcement and data protection authorities.
Registration
Please register before 6 May 2026
Critical Infrastructure Incident Response
Table Top Exercise Courses
ID: CADMUS-SGTTX-03 Owner: CTI
Available for training February 2027
Duration 6 hours
Platform Category Table Top Exercise
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online instructor‑led
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) Cyber Incident Responder Cybersecurity Risk Manager
ECSF Skills View Skills ▾
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Analyse and consolidate organisation’s quality and risk management practices
  • Work under pressure
Description View Description ▾
A facilitator‑led tabletop exercise simulating a cascading cyber‑physical incident against a critical infrastructure operator. Participants work in roles to rank events, decide on containment vs. continuity, coordinate with external stakeholders (regulator, CERT, media), and conclude with a structured post-event analysis and discussion.
Cyber Security Audit Simulation & Compliance Review
Table Top Exercise Courses
ID: CADMUS-SGTTX-05 Owner: AU
Available for training June 2026
Duration 6 hours
Platform Category Table Top Exercise
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cybersecurity Auditor Cyber Legal, Policy & Compliance Officer Cybersecurity Risk Manager Chief Information Security Officer (CISO) Cybersecurity Implementer
ECSF Skills View Skills ▾
  • Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls
  • Apply auditing tools and techniques
  • Audit with integrity, being impartial and independent
  • Collect, evaluate, maintain and protect auditing information
  • Communicate, present and report to relevant stakeholders
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Follow and practice auditing frameworks, standards and methodologies
  • Organise and work in a systematic and deterministic way based on evidence
  • Work ethically and independently; not influenced and biased by internal or external actors
  • Work under pressure
Description View Description ▾
Cyber Security Audit Simulation & Compliance Review

This Tabletop Exercise simulates a complete cybersecurity audit, where participants act as the audit team responsible for evaluating the security posture of a fictional organisation. Participants review policies, logs, risk assessment documents, technical controls, and operational workflows; conduct interviews; validate evidence; classify findings; and deliver a professional audit report. The TTX replicates real-world audit pressure: incomplete documentation, conflicting evidence, stakeholder resistance and time constraints.
Asset & Risk Management – Organisational Exposure Assessment
Table Top Exercise Courses
ID: CADMUS-SGTTX-06 Owner: AU
Available for training December 2026
Duration 10 hours
Platform Category Table Top Exercise
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cybersecurity Risk Manager Cyber Legal, Policy & Compliance Officer
ECSF Skills View Skills ▾
  • Analyse and consolidate organisation’s quality and risk management practices
  • Assess and enhance an organisation’s cybersecurity posture
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
  • Propose and manage risk-sharing options
  • Communicate, present and report to relevant stakeholders
  • Organise and work in a systematic and deterministic way based on evidence
  • Work under pressure
Description View Description ▾
Asset & Risk Management – Organisational Exposure Assessment

This TTX simulates the process of identifying organisational assets, assessing risks, prioritising treatment actions and preparing risk reports for executive decision-makers. Participants work through dynamic scenario injects and incomplete information, performing asset classification, BIA, risk scoring, and mitigation planning. The exercise mirrors real-world governance and risk workflows, requiring participants to collaborate across technical, legal, business and compliance domains.
Cybersecurity Crisis Management for Public Authorities
Table Top Exercise Courses
ID: CADMUS-SGTTX-07 Owner: AU
Available for training June 2026
Duration 8 hours
Platform Category Table Top Exercise
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cyber Incident Responder Cyber Legal, Policy & Compliance Officer Cybersecurity Risk Manager
ECSF Skills View Skills ▾
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Analyse and comply with cybersecurity-related laws, regulations and legislations
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
  • Work under pressure
  • Build a cybersecurity risk-aware environment
Description View Description ▾
Cybersecurity Crisis Management for Public Authorities

This course prepares public authorities to manage and coordinate cybersecurity crises affecting government services. Through a combination of LMS-based theoretical modules and a live, instructor-led tabletop exercise, participants gain practical experience in crisis communication, inter-agency cooperation, regulatory compliance and the protection of essential public services. The final TTX places learners in a realistic scenario where they must coordinate across ministries, municipalities, national CERT/CSIRT and external partners while maintaining continuity of vital public services.
Incident Response – Cross-Functional Crisis
Table Top Exercise Courses
ID: CADMUS-SGTTX-08 Owner: AU
Available for training June 2026
Duration 6 hours
Platform Category Table Top Exercise
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cyber Incident Responder Cyber Legal, Policy & Compliance Officer
ECSF Skills View Skills ▾
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Analyse and comply with cybersecurity-related laws, regulations and legislations
  • Identify and solve cybersecurity-related issues
  • Work under pressure
  • Collaborate with other team members and colleagues
Description View Description ▾
This Tabletop Exercise provides a realistic, multi-phase simulation of a major cyber incident affecting a fictional enterprise. Participants assume role-specific responsibilities-Management, Legal, HR, or PR-and respond to escalating scenario injects. Each team performs its own tasks while collaborating with others to manage incident impact, regulatory obligations, staff issues, communications and executive expectations. The TTX replicates real-world crisis dynamics: incomplete information, operational pressure, regulatory deadlines, and media attention.
Implementing Cryptography Correctly
Table Top Exercise Courses
ID: CADMUS-SGTTX-09 Owner: CTI
Available for training February 2027
Duration 6 hours
Platform Category Table Top Exercise
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online instructor‑led
ECSF Roles View Roles ▾
Cybersecurity Architect Cybersecurity Implementer Cyber Incident Responder
ECSF Skills View Skills ▾
  • Implement cybersecurity risk management frameworks, methodologies and guidelines and ensure compliance with regulations and standards
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Select appropriate specifications, procedures and controls
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Analyse and consolidate organisation’s quality and risk management practices
Description View Description ▾
A facilitator-led exercise where teams face escalating scenarios of crypto misuse (e.g., weak random numbers, deprecated algorithms, improper key storage). Participants decide on trade-offs between quick fixes, long-term solutions, and regulatory compliance. Ends with a collaborative post event analysis and remediation actions.
Introduction to malware detection
Malware Analysis Courses
ID: CADMUS-MARE-01 Owner: CTI
Available for training April 2027
Duration 12 hours
Platform Category Sisyfos
Proficiency Level Basic
Training TypeUpskilling Reskilling
Delivery Method Online self-paced
   
ECSF Roles View Roles ▾
Cyber Threat Intelligence Specialist Digital Forensics Investigator Cybersecurity Researcher
ECSF Skills View Skills ▾
Use and apply CTI platforms and tools Conduct technical analysis and reporting Explain and present digital evidence in a simple, straightforward and easy to understand way Identify threat actors TTPs and campaigns
Description View Description ▾
Introduction to malware detection: An introduction to malware analysis and detection focusing on the basics of static and dynamic analysis. The students will learn the malware analysis methodology and workflow an perform automated malware analysis, detection and fingerprinting. The students will also have the opportunity to employ Sisyfos, a unique platform for malware analysis and learning.
Registration
Please register before 26 April 2026
Malware analysis, detection and threat intelligence
Malware Analysis Courses
ID: CADMUS-MARE-02 Owner: CTI
Available for training May 2026
Duration 24 hours
Platform Category Sisyfos
Proficiency Level Intermediate
Training Type Upskilling Reskilling
Delivery Method Online self‑paced Online instructor‑led support
ECSF Roles View Roles ▾
Cyber Threat Intelligence Specialist Digital Forensics Investigator Cyber Incident Responder
ECSF Skills View Skills ▾
  • Use and apply CTI platforms and tools
  • Identify threat actors TTPs and campaigns
  • Conduct technical analysis and reporting
  • Explain and present digital evidence in a simple, straightforward and easy to understand way
Description View Description ▾
Malware analysis, detection and threat intelligence

An intermediate level course diving deep into malware analysis, using both static and dynamic analysis techniques. The course combines automated malware analysis using the Sisyfos platform with manual analysis of software samples. Additionally, the most popular malware detection mechanisms are presented with a focus on YARA rules and custom rule generation. Finally, students will learn how to extract threat intelligence from malware samples and share it employing MISP.
Reverse Engineering
Malware Analysis Courses
ID: CADMUS-MARE-03 Owner: CTI
Available for training May 2026
Duration 20 hours
Platform Category Sisyfos
Proficiency Level Advanced
Training Type Upskilling Reskilling
Delivery MethodOnline self‑paced (optional) Online instructor‑led support

ECSF Roles View Roles ▾
Cybersecurity Researcher Digital Forensics Investigator Penetration Tester
ECSF Skills View Skills ▾
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Review codes assess their security
  • Conduct technical analysis and reporting
  • Identify and exploit vulnerabilities
  • Develop codes, scripts and programmes
Description View Description ▾
Reverse Engineering

An advanced course focusing on reverse engineering of software and malware samples. The course introduces reverse engineering employing the Ghidra reverse engineering suite and provides the students with a hands-on experience. Additionally, advanced techniques such as packing, encryption and antiRE will be explored along with automated reverse engineering with Sisyfos and AI. The students will also have the opportunity to reverse engineer real-world malware samples.
OT/ ICS Security
Malware Analysis Courses
ID: CADMUS-MARE-04 Owner: CTI
Available for training December 2026
Duration 20 hours
Platform Category LMS, ICS/SCADA, Simulation Environment
Proficiency Level Advanced
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cyber Incident Responder Cyber Threat Intelligence Specialist Digital Forensics Investigator Chief Information Security Officer (CISO) Cybersecurity Educator Cybersecurity Implementer Cybersecurity Researcher Penetration Tester
ECSF Skills View Skills ▾
  • Identify threat actors TTPs and campaigns
  • Conduct technical analysis and reporting
  • Develop and communicate, detailed and reasoned investigation reports
  • Manage and analyse log files
  • Identify and solve cybersecurity-related issues
  • Conduct ethical hacking
Description View Description ▾
OT/ ICS Security

A highly specialized training designed to develop capabilities in identifying, dissecting, analyzing, and understanding malware targeting OT/ICS, SCADA and IIoT systems. Using a controlled lab sandbox integrated with industrial digital-twin simulations, participants study advanced threat actor tactics, protocol abuse, firmware exploitation and binary reversing specific to safety-critical industrial environments.

The course balances theoretical threat intelligence with deep hands-on reversing and forensics of real-world ICS malware samples.
Reverse Engineering / Malware Analysis
Malware Analysis Courses
ID: CADMUS-MARE-05 Owner: NCSA
Available for training December 2026
Duration 30 hours
Platform Category Cyber Range
Proficiency Level Advanced
Training Type Upskilling
Delivery Method Online self-paced
ECSF Roles View Roles ▾
Cybersecurity Researcher Cyber Threat Intelligence Specialist Digital Forensics Investigator
ECSF Skills View Skills ▾
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Conduct technical analysis and reporting
  • Use and apply CTI platforms and tools
  • Identify threat actors TTPs and campaigns
Description View Description ▾
Reverse Engineering / Malware Analysis

Malware is a growing threat to organizations. This course provides hands-on training in analyzing malware by reverse engineering. Students will learn to examine malware in a controlled environment using both static (disassembly) and dynamic (sandbox execution) techniques. Key tools include IDA Pro and Ghidra for disassembly, PEStudio for file inspection, Process Monitor for runtime behavior, and Cuckoo Sandbox (an open-source automated malware analysis system) for capturing execution logs. Participants will collect IOCs (network indicators, file hashes, registry changes) and write YARA detection rules.
HW Hacking
Malware Analysis Courses
ID: CADMUS-MARE-06 Owner: CTI
Available for training March 2027
Duration 20 hours
Platform Category LMS + Malware / Reverse Engineering Track + Hardware Exploitation Labs
Proficiency Level Intermediate
Training Type Upskilling Cross-skilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) Cyber Incident Responder Cyber Legal, Policy & Compliance Officer Cyber Threat Intelligence Specialist Cybersecurity Auditor Cybersecurity Educator Cybersecurity Implementer Cybersecurity Researcher Digital Forensics Investigator Penetration Tester
ECSF Skills View Skills ▾
  • Identify and exploit vulnerabilities
  • Conduct technical analysis and reporting
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Develop code, scripts and programmes
  • Review codes assess their security
  • Use penetration testing tools effectively
  • Collect information while preserving its integrity
  • Identify, analyse and correlate cybersecurity events
  • Identify threat actors TTPs and campaigns
  • Model threats, actors and TTPs
  • Think creatively and outside the box
  • Work ethically and independently; not influenced and biased by internal or external actors
Description View Description ▾
HW Hacking

A high-intensity professional cybersecurity training track combining theoretical foundations with real-world hands-on labs in malware analysis, reverse engineering, exploit development and hardware hacking. The program includes sandbox-based labs, advanced RE workshops and physical hardware exercises.
MARE: Introduction to Purple Team Operations
Malware Analysis Courses
ID: CADMUS-MARE-07 Owner: CTI
Available for training October 26
Duration 30 hours
Platform Category LMS Sisyfos
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self paced
ECSF Roles View Roles ▾
Cybersecurity Researcher Cyber Threat Intelligence Specialist Digital Forensics Investigator
ECSF Skills View Skills ▾
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Conduct technical analysis and reporting
  • Collect, analyse and correlate cyber threat information originating from multiple sources
  • Use and apply CTI platforms and tools
  • Identify threat actors TTPs and campaigns
Description View Description ▾
MARE: Introduction to Purple Team Operations

Malware is a growing threat to organizations. This course provides hands-on training in analyzing malware by reverse engineering. Students will learn to examine malware in a controlled environment using both static (disassembly) and dynamic (sandbox execution) techniques. Key tools include IDA Pro and Ghidra for disassembly, PEStudio for file inspection, Process Monitor for runtime behavior, and Cuckoo Sandbox (an open-source automated malware analysis system) for capturing execution logs. Participants will collect IOCs (network indicators, file hashes, registry changes) and write YARA detection rules.
Security Awareness and Cybersecurity Hygiene
Bootcamps
ID: CADMUS-BTCMP-01 Owner: AU
Available for training June 2026
Duration 3 hours
Platform Category LMS (online self-paced)
Proficiency Level Basic
Training Type Cross‑skilling
Delivery Method Online self-paced
ECSF Roles View Roles ▾
Cybersecurity Educator
ECSF Skills View Skills ▾
  • Identify needs in cybersecurity awareness, training and education
  • Develop evaluation programs for the awareness, training and education activities
  • Build a cybersecurity risk-aware environment
  • Influence an organisation’s cybersecurity culture
  • Motivate and encourage people
  • Identify threat actors TTPs and campaigns
Description View Description ▾
A short self-paced course that introduces the core principles of cyber hygiene and safe digital behaviour. Participants learn how to recognise online threats, protect accounts, avoid phishing, use secure passwords, apply MFA and safely handle data in everyday activities.
Secure Coding
Bootcamps
ID: CADMUS-BTCMP-02 Owner: AU
Available for training September 2026
Duration 16 hours
Platform Category LMS Cyber Range
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cybersecurity implementer Secure Coder / Secure Software Developer (proposed addition to ECSF framework)
ECSF Skills View Skills ▾
  • Review codes assess their security
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Identify and solve cybersecurity-related issues
  • Implement cybersecurity recommendations and best practices
  • Develop code, scripts and programmes
  • Conduct user and business security requirements analysis
Description View Description ▾
This course teaches participants how to design and write secure code, prevent vulnerabilities, and integrate security into the software development lifecycle. Combining LMS modules with practical labs, the training emphasizes secure programming techniques, vulnerability identification, and remediation.
Basics of Security Hardening of Networking Devices
Bootcamps
ID: CADMUS-BTCMP-03 Owner: AU
Available for training June 2026
Duration 8 hours
Platform Category Cyber Range LMS
Proficiency Level Basic
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cybersecurity Implementer
ECSF Skills View Skills ▾
  • Implement cybersecurity recommendations and best practices
  • Assess the security and performance of solutions
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Work on operating systems, servers, clouds and relevant infrastructures
Description View Description ▾
This Bootcamp course introduces the fundamental concepts of network switching, routing, and security at Layers 2 and 3. Participants will learn how switching operates within network infrastructure and explore its security implications. Through hands-on practice, they will configure VLANs, trunk links, and inter-switch connections, apply port security, and implement Spanning Tree Protocol to maintain network stability. The course also covers essential hardening techniques, such as securing management interfaces, isolating unused ports and VLANs, and enabling SSH for secure remote access with password encryption. On the routing side, learners will configure static and dynamic routing protocols and apply standard and extended Access Control Lists (ACLs) to control traffic and enhance security.
Network Security Hardening & Defense
Bootcamps
ID: CADMUS-BTCMP-04 Owner: AU
Available for training March 2027
Duration 40 hours
Platform Category ILT LMS CyberRange
Proficiency Level Basic-Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cybersecurity Implementer Cybersecurity Architect Cyber Incident Responder
ECSF Skills View Skills ▾
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles
  • Identify and exploit vulnerabilities
  • Assess the security and performance of solutions
  • Identify, analyse and correlate cybersecurity events
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Implement cybersecurity recommendations and best practices
  • Manage and analyse log files
Description View Description ▾
This Bootcamp provides an intensive, hands-on learning experience in network security, combining structured LMS learning, instructor-led sessions and four advanced Cyber Range modules. Participants harden switches, routers, and firewalls, implement segmentation, secure routing and apply advanced L2/L3 protection mechanisms. Using real-world network scenarios, learners identify misconfigurations, secure network devices and implement policies according to CIS benchmarks and industry best practices.
Operating System Security Hardening & Defense
Bootcamps
ID: CADMUS-BTCMP-05 Owner: AU
Available for training March 2027
Duration 40 hours
Platform Category ILT LMS CyberRange
Proficiency Level Basic-Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cybersecurity Implementer Cybersecurity Architect Cyber Incident Responder
ECSF Skills View Skills ▾
  • Assess the security and performance of solutions
  • Configure solutions according to the organisation’s security policy
  • Identify and solve cybersecurity-related issues
  • Select appropriate specifications, procedures and controls
  • Implement cybersecurity recommendations and best practices
  • Manage and analyse log files
Description View Description ▾
This Bootcamp provides a comprehensive and practical immersion into operating system security across Linux, Windows and Android environments. Participants learn to harden OS configurations, apply CIS Benchmarks, secure identity and access mechanisms, validate compliance and defend against OS-level threats. Through LMS content, instructor-led workshops and three Cyber Range modules, learners obtain the skills required to secure workstation, server and mobile endpoints in enterprise environments.
Incident Response – Technical Operations
Bootcamps
ID: CADMUS-BTCMP-06 Owner: AU
Available for training September 2026
Duration 40 hours
Platform Category ILT - LMS Sisyfos CyberRange
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cyber Incident Responder Cyber Threat Intelligence Specialist
ECSF Skills View Skills ▾
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Identify, analyse and correlate cybersecurity events
  • Collect information while preserving its integrity
  • Identify threat actors TTPs and campaigns
  • Manage and analyse log files
  • Develop and communicate, detailed and reasoned investigation reports
  • Work under pressure
Description View Description ▾
This Bootcamp prepares learners to operate as technical incident responders in modern security operations. Through structured LMS lessons, trainer-led workshops and an intensive Cyber Range experience, participants learn to investigate real-world incidents including malware intrusions, lateral movement, data exfiltration and ransomware staging. The Bootcamp focuses on triage, forensics, analysis, containment and reporting - core skills for SOC Tier 2–3 and IR teams.
Incident Response – Crisis Leadership & Decision Management
Bootcamps
ID: CADMUS-BTCMP-07 Owner: AU
Available for training June 2026
Duration 8 hours
Platform Category ILT - LMS
Proficiency Level Intermediate-Advanced
Training Type Upskilling
Delivery Method Online self-paced, Hybrid, Physical
ECSF Roles View Roles ▾
Cyber Legal, Policy & Compliance Officer Chief Information Security Officer (CISO) Cybersecurity Risk Manager
ECSF Skills View Skills ▾
  • Analyse and comply with cybersecurity-related laws, regulations and legislations
  • Analyse and consolidate organisation’s quality and risk management practices
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
  • Communicate, present and report to relevant stakeholders
  • Build a cybersecurity risk-aware environment
  • Understand legal framework modifications implications to the organisation’s cybersecurity and data protection strategy and policies
Description View Description ▾
This Bootcamp prepares executives and senior managers to lead major cyber incidents. Through a combination of LMS learning, scenario-based masterclasses and a full-day cross-functional TTX, participants learn how to coordinate organisational response efforts, manage crisis decisions, communicate with stakeholders and regulators, and provide executive leadership through uncertainty. The Bootcamp mirrors real-world crisis response including time pressure, incomplete information, regulatory deadlines and media scrutiny.
Incident Response – Cyber Legal, Compliance & Regulatory Response
Bootcamps
ID: CADMUS-BTCMP-08 Owner: AU
Available for training June 2026
Duration 5 hours
Platform Category ILT - LMS
Proficiency Level Intermediate-Advanced
Training Type Upskilling
Delivery Method Online self-paced, Hybrid, Physical
ECSF Roles View Roles ▾
Cyber Legal, Policy & Compliance Officer Cyber Incident Responder Cybersecurity Risk Manager
ECSF Skills View Skills ▾
  • Analyse and comply with cybersecurity-related laws, regulations and legislations
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Communicate, present and report to relevant stakeholders
  • Identify and solve cybersecurity-related issues
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Work under pressure
Description View Description ▾
This Bootcamp provides legal and compliance professionals with the skills needed to operate during a major cyber incident. Learners gain knowledge of regulatory frameworks, breach notification requirements, liability management and evidence handling. The programme includes trainer-led sessions and full participation in the Operation Nightfall Breach Tabletop Exercise, where legal teams must make rapid decisions, draft notifications, and guide the organisation through regulatory constraints.
Incident Response – HR & Organisational Support
Bootcamps
ID: CADMUS-BTCMP-09 Owner: AU
Available for training June 2026
Duration 4 hours
Platform Category ILT - LMS
Proficiency Level Intermediate-Advanced
Training Type Upskilling
Delivery Method Online self-paced, Hybrid, Physical
ECSF Roles View Roles ▾
Cyber Legal, Policy & Compliance Officer Cybersecurity Risk Manager
ECSF Skills View Skills ▾
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Analyse and comply with cybersecurity-related laws, regulations and legislations
  • Carry out working-life practices of data protection and privacy issues
  • Influence an organisation’s cybersecurity culture
Description View Description ▾
This Bootcamp prepares HR and people-operations professionals to support cyber incident response activities. Participants learn how to manage insider investigations, employee communications, access governance, and workforce well-being during major incidents. The programme includes LMS content, role-based templates, and participation in the unified TTX Operation Nightfall Breach, where HR actions are essential for managing insider suspicion, employee morale, misinformation and internal communication.
Incident Response – Communications, Media Handling & Public Messaging
Bootcamps
ID: CADMUS-BTCMP-10 Owner: AU
Available for training June 2026
Duration 4 hours
Platform Category ILT - LMS
Proficiency Level Intermediate-Advanced
Training Type Upskilling
Delivery Method Online self-paced, Hybrid, Physical
ECSF Roles View Roles ▾
Cyber Legal, Policy & Compliance Officer Cybersecurity Risk Manager
ECSF Skills View Skills ▾
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Communicate, present and report to relevant stakeholders
  • Work under pressure
  • Communicate, explain and adapt legal and regulatory requirements and business needs
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
  • Influence an organisation’s cybersecurity culture
Description View Description ▾
This Bootcamp equips Public Relations and Communications teams with the essential skills needed to handle cyber crisis scenarios. Participants learn how to develop strategic, accurate and aligned messaging under pressure, manage external communications and work closely with Legal and Management to protect organisational reputation. The programme includes expert-led workshops, LMS learning and active participation in the Operation Nightfall Breach Tabletop Exercise, where PR teams must respond to media pressure, misinformation and stakeholder demands in real time.
Threat Intelligence & Threat Hunting
Bootcamps
ID: CADMUS-BTCMP-11 Owner: AU
Available for training June 2026
Duration 32 hours
Platform Category ILT LMS CyberRange
Proficiency Level Intermediate-Advanced
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cyber Threat Intelligence Specialist
ECSF Skills View Skills ▾
  • Anticipate cybersecurity threats, needs and upcoming challenges
  • Automate threat intelligence management procedures
  • Collect, analyse and correlate cyber threat information originating from multiple sources
  • Communicate, present and report to relevant stakeholders
  • Identify non-cyber events with implications on cyber-related activities
  • Identify threat actors TTPs and campaigns
  • Identify, analyse and correlate cybersecurity events
  • Manage and analyse log files
  • Model threats, actors and TTPs
  • Use and apply CTI platforms and tools
Description View Description ▾
This Bootcamp provides a fully hands-on, Cyber Range–driven experience in tactical threat intelligence and threat hunting. Participants work with real datasets, malware artefacts, and open-source TI platforms (MISP, OpenCTI) to extract indicators, map TTPs, and hunt adversaries across simulated SOC environments. The course emphasises practical skills across the threat intelligence lifecycle, preparing participants for real-world blue-team and threat analyst roles.
Cyber Security Auditor
Bootcamps
ID: CADMUS-BTCMP-12 Owner: AU
Available for training September 2026
Duration 30 hours
Platform Category ILT - LMS TTX
Proficiency Level Intermediate-Advanced
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cybersecurity Auditor Cyber Legal, Policy & Compliance Officer Cybersecurity Risk Manager
ECSF Skills View Skills ▾
  • Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls
  • Apply auditing tools and techniques
  • Audit with integrity, being impartial and independent
  • Collect, evaluate, maintain and protect auditing information
  • Communicate, present and report to relevant stakeholders
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Follow and practice auditing frameworks, standards and methodologies
  • Organise and work in a systematic and deterministic way based on evidence
  • Understand, practice and adhere to ethical requirements and standards
  • Work ethically and independently; not influenced and biased by internal or external actors
  • Work under pressure
Description View Description ▾
This Bootcamp prepares future cybersecurity auditors to plan, conduct, and report on security audits using recognised frameworks (ISO 27001, NIS2, SOC2, CIS Controls, DORA). Participants are trained in document review, control testing, evidence verification, stakeholder interviews, and audit report writing. The programme include TTX, where learners perform a complete end-to-end audit and present their findings to a simulated executive committee.
Business Continuity & Disaster Recovery
Bootcamps
ID: CADMUS-BTCMP-13 Owner: AU
Available for training June 2026
Duration 50 hours
Platform Category ILT LMS CyberRange
Proficiency Level Advanced
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cybersecurity Implementer
ECSF Skills View Skills ▾
  • Build resilience against points of failure across the architecture
  • Integrate cybersecurity solutions to the organisation’s infrastructure
  • Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls
  • Assess the security and performance of solutions
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Organise and work in a systematic and deterministic way based on evidence
Description View Description ▾
This intensive Bootcamp offers a comprehensive, hands-on approach to Business Continuity and Disaster Recovery. Combining LMS-based theory, instructor-led workshops, and two full Cyber Range modules (BC + DR), participants develop the capability to design, execute, and evaluate continuity and recovery strategies. The Bootcamp integrates risk analysis, BIA, continuity planning, technical HA configuration, disaster recovery restoration, and organisational crisis communication. The format supports both onsite and online delivery.
Cyber Security Manager (CISO)
Bootcamps
ID: CADMUS-BTCMP-14 Owner: AU
Available for training September 2026
Duration 58 hours
Platform Category ILT LMS TTX CyberRange
Proficiency Level Advanced
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) - primary Cybersecurity Risk Manager Cyber Legal, Policy & Compliance Officer Cybersecurity Auditor
ECSF Skills View Skills ▾
  • Develop, champion and lead the execution of a cybersecurity strategy
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
  • Analyse and consolidate organisation’s quality and risk management practices
  • Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks
  • Define and apply maturity models for cybersecurity management
  • Communicate, present and report to relevant stakeholders
  • Manage cybersecurity resources
  • Influence an organisation’s cybersecurity culture
  • Collaborate with other team members and colleagues
  • Work under pressure
Description View Description ▾
The Cyber Security Manager Bootcamp is an intensive, practitioner-oriented program that develops organisational security leadership competencies. Participants combine LMS theory, guided trainer sessions, Cyber Range governance exercises using CISO Assistant, and a structured TTX game covering asset management, BIA, risk assessment, mitigation planning, and executive reporting. The bootcamp prepares participants to take on mid to senior-level cybersecurity management responsibilities.
Train the innovative cybersecurity pedagogy and curriculum design trainers course
Bootcamps
ID: CADMUS-BTCMP-15 Owner: EUC
Available for training June 2026
Duration 40 hours
Platform Category Bootcamp
Proficiency Level Intermediate
Training Type Professional development
Delivery Method Hybrid (Online interactive lectures and offline curriculum design workshops)
ECSF Roles View Roles ▾
Cybersecurity educator
ECSF Skills View Skills ▾
  • Collaborate with other team members and colleagues
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Communicate, present and report to relevant stakeholders
  • Design, develop and deliver learning programmes to cover cybersecurity needs
  • Develop evaluation programs for awareness, training and education activities
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
  • Explain and communicate data protection and privacy topics to stakeholders and users
  • Identify and select appropriate pedagogical approaches for the intended audience
  • Identify needs in cybersecurity awareness, training and education
  • Influence an organisation’s cybersecurity culture
  • Motivate and encourage people
  • Provide training towards cybersecurity and data protection professional certifications
  • Utilise existing cybersecurity-related training resources
Description View Description ▾
An in-depth exploration of cutting-edge pedagogical techniques for cybersecurity education.
Digital Forensics
Bootcamps
ID: CADMUS-BTCMP-16 Owner: CTI
Available for training June 2026
Duration 40 hours
Platform Category Bootcamp LMS Cyber Range (Forensic VM Images & Incident Simulation Environments)
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) Cybersecurity Auditor Cyber Legal, Policy & Compliance Officer Digital Forensics Investigator Cyber Incident Responder Cyber Threat Intelligence Specialist Penetration Tester Cybersecurity Auditor Cybersecurity Researcher Penetration Tester Digital Forensics Investigator Cyber Legal, Policy & Compliance Officer
ECSF Skills View Skills ▾
  • Analyse and comply with cybersecurity-related laws, regulations and legislations
  • Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls
  • Carry out working-life practices of the data protection and privacy issues involved in the implementation of the organisational processes, finance and business strategy
  • Collect information while preserving its integrity
  • Collect, analyse and correlate cyber threat information originating from multiple sources
  • Communicate, coordinate and cooperate with internal and external stakeholders
  • Communicate, explain and adapt legal and regulatory requirements and business needs
  • Conduct technical analysis and reporting
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Develop and communicate, detailed and reasoned investigation reports
  • Explain and present digital evidence in a simple, straightforward and easy to understand way
  • Identify threat actors TTPs and campaigns
  • Identify, analyse and correlate cybersecurity events
  • Implement cybersecurity recommendations and best practices
  • Manage and analyse log files
  • Model threats, actors and TTPs
  • Organise and work in a systematic and deterministic way based on evidence
  • Practice all technical, functional and operational aspects of cybersecurity incident handling and response
  • Understand, practice and adhere to ethical requirements and standards
  • Work ethically and independently; not influenced and biased by internal or external actors
  • Work on operating systems, servers, clouds and relevant infrastructures
Description View Description ▾
A highly practical, forensic-focused bootcamp designed to equip participants with advanced digital investigation capabilities. Through forensic VM images, compromised hosts, malware samples, and complete incident simulations, trainees learn how to acquire, preserve, analyse, and interpret digital evidence across Windows, Linux, and cloud environments. The program blends theory with intensive hands-on labs, preparing participants for real-world DFIR roles in enterprise, law enforcement, and national cybersecurity contexts.
Executive Cybersecurity Leadership
Bootcamps
ID: CADMUS-BTCMP-17 Owner: NCSA
Available for training May 2026
Duration 2 days
Platform Category Bootcamp (LMS preparation and consolidation activities with instructor-led sessions and a table-top exercise)
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online, Instructor Led with Q&A Sessions
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) Cyber Legal, Policy & Compliance Officer
ECSF Skills View Skills ▾
  • Analyse and comply with cybersecurity-related laws, regulations and legislations
  • Assess and enhance an organisation’s cybersecurity posture
  • Collaborate with other team members and colleagues
  • Communicate, present and report to relevant stakeholders
  • Define and apply maturity models for cybersecurity management
  • Design, apply, monitor and review Information Security Management System (ISMS) either directly or by leading its outsourcing
  • Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks
  • Identify and solve cybersecurity-related issues
  • Influence an organisation’s cybersecurity culture
Description View Description ▾
This intensive two-day program equips senior executives with the strategic insights and leadership tools needed to govern enterprise-wide cybersecurity. Through expert-led sessions, case studies, and interactive workshops, participants will learn how to oversee risk management, shape effective policies, and lead organizational culture toward resilience. Designed for board members, C-suite leaders, and top-level decision-makers, the course empowers executives to navigate complex cyber threats, make informed strategic decisions, and safeguard organizational trust in an increasingly digital world.
OSINT Bootcamp
Bootcamps
ID: CADMUS-BTCMP-18 Owner: CTI
Available for training May 2026
Duration 20 hours
Platform Category Bootcamp (LMS Cyber Range)
Proficiency Level Basic
Training Type Upskilling / Cross-skilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cyber Threat Intelligence Specialist Cybersecurity Researcher Digital Forensics Investigator Penetration Tester Cyber Incident Responder
ECSF Skills View Skills ▾
  • Conduct ethical hacking
  • Identify, analyse and correlate cybersecurity events
  • Identify and exploit vulnerabilities
  • Use penetration testing tools effectively
  • Conduct technical analysis and reporting
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Work on operating systems, servers, clouds and relevant infrastructures
  • Communicate, present and report to relevant stakeholders
  • Work ethically and independently; not influenced and biased by internal or external actors
Description View Description ▾
The OSINT Bootcamp is an intensive, practitioner-led program designed to equip participants with the advanced skills required to navigate the vast landscape of publicly available information. In an era of data saturation, the ability to extract actionable intelligence from the "noise" is a critical capability for cybersecurity, investigative, and strategic roles. Through a blend of theoretical modules, instructor-led workshops, and hands-on Cyber Range labs, learners will master the art and science of Open Source Intelligence. The curriculum covers the entire intelligence lifecycle—from planning and secure data collection (OPSEC) to advanced analysis and final reporting. Participants will move beyond simple web searches, learning how to uncover hidden digital footprints across the Surface Web, Social Media platforms (SOCMINT), and the Dark Web. A significant portion of the bootcamp is dedicated to technical OSINT, including the investigation of network infrastructure, leaked datasets, and the use of automated tools to correlate complex entities. The program culminates in a Capstone Investigative Challenge, where participants apply their skills to a real-world simulated case study. By the end of this bootcamp, graduates will be able to conduct defensible investigations, verify the authenticity of digital media through geolocation, and provide clear, evidence-based reports to support decision-makers.
3-week Cybersecurity Bootcamp: Foundations to Capstone
Bootcamps
ID: CADMUS-BTCMP-19 Owner: NCSA
Available for training
Duration 50 hours
Platform Category Online Lab Environment
Proficiency Level Basic
Training Type Upskilling
Delivery Method Online instructor-led (live webinars) with self-paced labs and virtual exercises
ECSF Roles View Roles ▾
Cybersecurity auditor Cybersecurity risk manager Penetration tester
ECSF Skills View Skills ▾
  • Conduct technical analysis and reporting
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Identify and exploit vulnerabilities
  • Identify and solve cybersecurity-related issues
  • Use penetration testing tools effectively
  • Identify threat actors TTPs and campaigns
  • Follow and practice auditing frameworks, standards and methodologies
Description View Description ▾
This intensive 12-week program builds cybersecurity foundations and practical skills for beginners. The course is structured in three phases: Foundations (Month 1) covers core concepts like the CIA triad, basic networking and system administration, common threats, and an overview of cybersecurity roles. Tools & Techniques (Month 2) introduces hands-on use of security tools (network scanners, intrusion detection, logging/SIEM) and workflows (vulnerability scanning, incident response fundamentals). Capstone Simulation (Month 3) engages teams in realistic cyber-range exercises where students respond to simulated attacks (guided by instructors). The blended curriculum includes lectures, mentoring, labs, and practice challenges. Throughout, real-world scenarios and projects reinforce learning. Certification preparation and career guidance are integrated.