Skip to main content
Image coming soon

SEC5233 Mastering CIS Controls for Hosting Operations Analysts

$199.00
Adding to cart… The item has been added

A tailored course, built for your situation

Mastering CIS Controls for Hosting Operations Analysts

Build repeatable security configurations that scale across infrastructure units

$199 one-time
24-hour access provisioning 30-day money-back guarantee Hand-built implementation playbook
12 modules. 12 chapters per module. 144 chapters total.
12 modules, each with 12 chapters (144 chapters total), text-based, plus downloadable templates and a hand-built implementation playbook delivered alongside course access.
Security configurations that work in one region fail in another due to inconsistency

The situation this course is for

Without standardized baselines, infrastructure teams waste cycles reinventing controls, fail audits unnecessarily, and delay deployments waiting for security alignment.

Who this is for

Senior Hosting and Infrastructure Analysts responsible for secure, repeatable deployment patterns across regions

Who this is not for

Junior admins learning basics, executives seeking summaries, or auditors focused solely on compliance checklists

What you walk away with

  • Deploy CIS-aligned configurations that pass audit without rework
  • Standardize secure baselines across Windows, Linux, and cloud platforms
  • Reduce misconfiguration incidents by 60% using automated validation templates
  • Gain recognition as the go-to practitioner for cross-unit security consistency
  • Influence infrastructure design choices before deployment cycles begin

The 12 modules (with all 144 chapters)

Module 1. Introduction to CIS Controls Framework
Understand the structure, scope, and governance model of the CIS Benchmarks. Learn how levels one and two apply to hosting environments and how they align with UK operational resilience expectations.
12 chapters in this module
  1. What CIS Controls Are
  2. Structure of CIS Benchmarks
  3. Level 1 vs Level 2 Controls
  4. Mapping to Hosting Infrastructure
  5. CIS vs NIST CSF Overview
  6. CIS and UK GDPR Alignment
  7. Role of Automation in Implementation
  8. Benchmark Update Cycle
  9. Vendor-Specific Benchmarks
  10. Cloud Configuration Baselines
  11. Operating System Coverage
  12. Industrial Control Systems Add-On
Module 2. CIS Control 1: Inventory and Control of Hardware Assets
Establish a reliable, automated hardware inventory tied to secure configuration baselines. Learn how to track unauthorized devices and enforce policy compliance across hybrid environments.
12 chapters in this module
  1. Hardware Asset Discovery Methods
  2. Automated Inventory Tools
  3. Device Ownership Tracking
  4. Unauthorized Device Detection
  5. Decommissioning Workflow
  6. Hardware Refresh Cycles
  7. Virtual Machine Tracking
  8. Cloud Instance Monitoring
  9. Agent-Based vs Agentless
  10. Integration with ServiceNow
  11. Alerting on New Devices
  12. Reporting to Leadership
Module 3. CIS Control 2: Inventory and Control of Software Assets
Implement software whitelisting and version control to reduce attack surface. Learn how to maintain an accurate, actionable software inventory across multiple hosting zones.
12 chapters in this module
  1. Software Discovery Techniques
  2. Approved Software List
  3. Unapproved Software Removal
  4. Version Lifecycle Tracking
  5. Patch Compatibility Checks
  6. Software Ownership Model
  7. Virtualized Application Monitoring
  8. Container Image Tracking
  9. License Compliance Integration
  10. Cloud-Native Binary Oversight
  11. Automated Reporting
  12. Integration with Jira
Module 4. CIS Control 3: Data Protection
Classify data at rest and enforce encryption standards across hosting environments. Learn how to map data flows and protect sensitive information per UK GDPR expectations.
12 chapters in this module
  1. Data Classification Framework
  2. Discovery of Sensitive Data
  3. Encryption Standards Mapping
  4. Database Encryption
  5. File Share Protection
  6. Cloud Storage Encryption
  7. Key Management Basics
  8. Data Loss Prevention Overview
  9. Access Control Integration
  10. Audit Logging Setup
  11. Breach Detection Signals
  12. Data Flow Diagramming
Module 5. CIS Control 4: Secure Configuration for Hardware and Software
Develop and deploy hardened configurations for operating systems and applications. Learn how to automate configuration validation across heterogeneous infrastructure.
12 chapters in this module
  1. Baseline Configuration Design
  2. CIS Benchmark Profiles
  3. Windows Hardening
  4. Linux Hardening
  5. Cloud Platform Settings
  6. Configuration Drift Detection
  7. Automated Remediation
  8. Group Policy Integration
  9. Change Management Sync
  10. Pre-Deployment Validation
  11. Post-Deployment Scanning
  12. Audit Readiness Checks
Module 6. CIS Control 5: Account Management
Enforce least privilege through consistent account provisioning and deactivation. Learn how to audit access rights and eliminate standing privileges in hosting environments.
12 chapters in this module
  1. User Role Definition
  2. Privileged Account Inventory
  3. Just-In-Time Access
  4. Service Account Management
  5. Password Policy Enforcement
  6. Multi-Factor Authentication
  7. Account Lockout Policies
  8. Remote Access Controls
  9. Shared Account Tracking
  10. Break-Glass Account Setup
  11. Access Review Cycles
  12. Integration with Azure AD
Module 7. CIS Control 6: Access Control Management
Implement role-based access controls across systems and applications. Learn how to align permissions with job functions and reduce lateral movement risk.
12 chapters in this module
  1. Role-Based Access Design
  2. Permission Review Process
  3. Access Request Workflow
  4. Segregation of Duties
  5. Emergency Access Controls
  6. Cloud IAM Policies
  7. File System Permissions
  8. Database Access Rights
  9. Application Access Levels
  10. Remote Worker Access
  11. Vendor Access Management
  12. Access Recertification
Module 8. CIS Control 7: Continuous Vulnerability Management
Establish a repeatable process for scanning, prioritizing, and remediating vulnerabilities. Learn how to integrate scanning tools into deployment pipelines.
12 chapters in this module
  1. Vulnerability Scanning Schedule
  2. CVSS Scoring Basics
  3. Patch Prioritization Framework
  4. Automated Patch Deployment
  5. Zero-Day Response
  6. Cloud Vulnerability Tools
  7. Third-Party Component Risks
  8. Software Bill of Materials
  9. Remediation SLA Setup
  10. Integration with Jira
  11. Reporting to Management
  12. Post-Remediation Validation
Module 9. CIS Control 8: Audit Log Management
Collect, protect, and analyze logs from critical systems. Learn how to detect anomalies and support investigations with reliable audit trails.
12 chapters in this module
  1. Log Source Identification
  2. Centralized Logging Setup
  3. Log Retention Policy
  4. SIEM Integration
  5. Event Correlation
  6. Anomaly Detection
  7. Log Integrity Protection
  8. Cloud Log Export
  9. User Activity Monitoring
  10. Security Alert Thresholds
  11. Incident Response Support
  12. Audit Readiness
Module 10. CIS Control 9: Email and Web Browser Protections
Harden email and web access points commonly exploited in attacks. Learn how to configure browser security and filter malicious content.
12 chapters in this module
  1. Browser Security Settings
  2. Phishing Protection
  3. Email Attachment Filtering
  4. URL Filtering
  5. Web Proxy Integration
  6. Content Disarm and Reconstruction
  7. Browser Extension Controls
  8. Pop-Up Blocker Setup
  9. HTTPS Enforcement
  10. DNS Filtering
  11. User Training Integration
  12. Reporting Suspicious Messages
Module 11. CIS Control 10: Malware Defenses
Deploy layered defenses against malware and ransomware. Learn how to configure endpoint protection and detect malicious behavior.
12 chapters in this module
  1. Antivirus Configuration
  2. Host-Based Firewall
  3. Behavioral Analysis
  4. Ransomware Protection
  5. Endpoint Detection and Response
  6. Threat Intelligence Feeds
  7. Malware Sandbox
  8. Zero-Trust Integration
  9. Quarantine Procedures
  10. Incident Escalation
  11. Backup Integration
  12. Recovery Testing
Module 12. Implementing CIS Across Business Units
Scale CIS adoption beyond a single team. Learn how to influence peers, secure leadership support, and maintain consistency across regions.
12 chapters in this module
  1. Change Management Strategy
  2. Stakeholder Engagement
  3. Pilot Deployment
  4. Feedback Collection
  5. Regional Adaptation
  6. Documentation Standards
  7. Training Rollout
  8. Executive Reporting
  9. Cross-Team Collaboration
  10. Lessons Learned
  11. Continuous Improvement
  12. Certification Preparation

How this maps to your situation

  • When launching new hosting zones
  • Before audit cycles begin
  • After a security incident
  • During cloud migration

Before vs. after

Before
Security configurations vary by region, leading to audit findings and rework.
After
Consistent, CIS-aligned baselines are deployed across all hosting units, reducing audit friction and increasing operational velocity.

What's included with your purchase

  • 12 modules with 12 chapters each (144 chapters total)
  • Downloadable templates and worked examples for every module
  • Hand-built implementation playbook delivered alongside course access
  • 30-day money-back guarantee

Delivery and format

  • Course and learning environment access provisioned within 24 hours of purchase
  • Hand-built implementation playbook delivered alongside course access

Format: Text-based modules and chapters in the Art of Service learning environment, plus downloadable templates and worked examples for every chapter, plus the hand-built implementation playbook delivered alongside course access.

Time investment: Approximately 3-4 hours per module, designed to fit around operational demands.

If nothing changes
Without standardized baselines, teams will continue to resolve the same configuration issues repeatedly, increasing risk and delaying projects.

How this compares to the alternatives

Unlike generic security courses, this program delivers actionable, role-specific implementation playbooks grounded in CIS Controls and tailored to hosting operations in multi-region environments.

Frequently asked

Who is this course for?
Senior hosting and infrastructure analysts responsible for secure, repeatable deployment patterns across regions and business units.
How is the course structured?
12 modules, each containing 12 chapters (144 chapters total).
Does the course cover cloud environments?
Yes, every module includes specific guidance for AWS, Azure, and GCP configurations aligned with CIS Benchmarks.
$199 one-time. Approximately 3-4 hours per module, designed to fit around operational demands..

Within 24 hours your account in the learning environment is provisioned and the tailored implementation playbook is delivered alongside it.

30-day money-back guarantee· 144 chapters· Hand-built playbook included· Account access within 24 hours