Next boot camp starts soon. Enroll now.

Cisco Certified CyberOps Associate Training Boot Camp

Transform your career in 2 days

With the rise of data and security breaches in organizations ranging from retail to government operations, the need for a robust cybersecurity team has never been greater. Infosec’s Cisco Certified CyberOps Associate Training Boot Camp can help launch your information security career. The Cisco Certified CyberOps Associate provides essential skills, and accreditation enhances any professional career as a cybersecurity analyst.

Course essentials

Boot camp at a glance

  • Method

    Live online, in-person or team onsite

  • Duration

    2 days

  • Experience

    1-3 years

  • Average salary


  • Meets 8570.1

    DoD Information Assurance requirements

What you'll learn

Training overview

exam pass guarantee logo

This comprehensive training boot camp equips you with the knowledge and skills necessary to enter the field of cybersecurity operations. By completing this course, you will:

  • Gain a strong foundation in cybersecurity operations: Learn the principles, concepts and best practices related to cybersecurity operations so you can analyze and respond to security threats effectively.
  • Prepare for the Cisco Certified CyberOps Associate certification: Acquire the knowledge and skills required to pass the Cisco Certified CyberOps Associate certification exam, validating your understanding of cybersecurity operations and enhancing your professional credibility.
  • Become adept in security monitoring: Learn various techniques and tools to monitor security events and incidents and detect and respond to potential threats in real-time.
  • Master host-based analysis: Develop the skills to analyze host-based logs, identify security events and investigate potential security breaches on individual systems.
  • Excel in network intrusion analysis: Learn to analyze network traffic, detect and investigate network-based attacks and identify indicators of compromise to protect organizational networks from cyber threats.
  • Understand security policies and procedures: Gain insights into security management concepts, incident response planning, risk assessment and compliance requirements to effectively contribute to an organization’s security posture.

Award-winning training you can trust

What's included

Everything you need to know

  • 90-day extended access to Boot Camp components, including class recordings
  • 100% Satisfaction Guarantee
  • Exam Pass Guarantee
  • Exam voucher
  • Free 90-day Infosec Skills subscription (access to 1,400+ additional courses and labs)
  • Hands-on cyber ranges and labs
  • Knowledge Transfer Guarantee
  • Onsite proctoring of exam
  • Unlimited practice exam attempts

Before your boot camp


Before enrolling in our authorized Cisco Certified CyberOps Associate Boot Camp, you should have:

  • A sound working experience with basic network security and TCP/IP


Training schedule

Preparation (before the boot camp starts)

CCNA prep course

Day 1
Morning session

Security concepts

  • Describe the CIA triad
  • Compare security deployments
  • Describe security terms
  • Compare security concepts
  • Describe the principles of the defense-in-depth strategy
  • Compare access control models
  • Describe terms as defined in CVSS
  • Identify the challenges of data visibility (network, host, and cloud) in detection
  • Identify potential data loss from provided traffic profiles
  • Interpret the 5-tuple approach to isolate a compromised host in a grouped set of logs
  • Compare rule-based detection vs. behavioral and statistical detection

Security monitoring

  • Compare attack surface and vulnerability
  • Identify the types of data provided by these technologies
  • Describe the impact of these technologies on data visibility
  • Describe the uses of these data types in security monitoring
  • Describe network attacks, such as protocol-based, denial of service, distributed denial of service and man-in-the-middle
  • Describe web application attacks, such as SQL injection, command injections and crosssite scripting
  • Describe social engineering attacks
  • Describe endpoint-based attacks, such as buffer overflows, command and control (C2), malware and ransomware
  • Describe evasion and obfuscation techniques, such as tunneling, encryption and proxies
  • Describe the impact of certificates on security (includes PKI, public/private crossing the network, asymmetric/symmetric)
  • Identify the certificate components in a given scenario
  • Cipher-suite
Afternoon session

Security monitoring continued

Host-based analysis

  • Describe the functionality of these endpoint technologies in regard to security monitoring
  • Identify components of an operating system (such as Windows and Linux) in a given scenario
  • Describe the role of attribution in an investigation
  • Identify type of evidence used based on provided logs
  • Compare tampered and untampered disk image
  • Interpret operating system, application, or command line logs to identify an event
  • Interpret the output report of a malware analysis tool (such as a detonation chamber or sandbox)

Network intrusion analysis

  • Map the provided events to source technologies
  • Compare impact and no impact for these items
  • Compare deep packet inspection with packet filtering and stateful firewall operation
  • Compare inline traffic interrogation and taps or traffic monitoring
  • Compare the characteristics of data obtained from taps or traffic monitoring and transactional data (NetFlow) in the analysis of network traffic
  • Extract files from a TCP stream when given a PCAP file and Wireshark
  • Identify key elements in an intrusion from a given PCAP file
  • Interpret the fields in protocol headers as related to intrusion analysis
  • Interpret common artifact elements from an event to identify an alert
  • Interpret basic regular expressions
Evening session

Optional group & individual study

Schedule may vary from class to class

Day 2
Morning session

Network intrusion analysis continued

Security policies and procedures

  • Describe management concepts
  • Describe the elements in an incident response plan as stated in NIST.SP800-61
  • Apply the incident handling process (such as NIST.SP800-61) to an event
  • Map elements to these steps of analysis based on the NIST.SP800-61
  • Map the organization stakeholders against the NIST IR categories (CMMC, NIST.SP800-61)
  • Describe concepts as documented in NIST.SP800-86
  • Identify these elements used for network profiling
  • Identify these elements used for server profiling
  • Identify protected data in a network
  • Classify intrusion events into categories as defined by security models, such as Cyber Kill Chain Model and Diamond Model of Intrusion
  • Describe the relationship of SOC metrics to scope analysis (time to detect, time to contain, time to respond, time to control)
Afternoon session

Exam prep

Take 200-201 exam

Guaranteed results

Our boot camp guarantees

Exam Pass Guarantee

Exam Pass Guarantee

If you don’t pass your exam on the first attempt, get a second attempt for free. Includes the ability to re-sit the course for free for up to one year (does not apply to CMMC-AB boot camps).

100% Satisfaction Guarantee

100% Satisfaction Guarantee

If you’re not 100% satisfied with your training at the end of the first day, you may withdraw and enroll in a different online or in-person course.

Knowledge Transfer Guarantee

Knowledge Transfer Guarantee

If an employee leaves within three months of obtaining certification, Infosec will train a different employee at the same organization tuition-free for up to one year.

Unlock team training discounts

If you’re like many of our clients, employee certification is more than a goal — it’s a business requirement. Connect with our team to learn more about our training discounts.


Frequently asked questions

What is the difference between CCNA Cyber Ops and Cisco Certified CyberOps Associates?

CCNA Cyber Ops and Cisco Certified CyberOps Associates refer to the same certification. The name “CCNA Cyber Ops” was previously used for this certification but has been updated and renamed “Cisco Certified CyberOps Associate.” The content and objectives of the certification remain the same.

Is it hard to pass Cisco Certified CyberOps exam?

The difficulty level of any certification exam can vary depending on individual skills, experience and preparation. The Cisco Certified CyberOps exam tests your knowledge and skills in cybersecurity operations. With dedicated preparation, including studying the exam objectives, practicing with relevant resources and gaining hands-on experience, you increase your chances of passing the exam successfully. Our boot camp contains all the information needed to pass the exam on your first try.

How is Cisco certification going to give a boost to my career?

Earning your Cisco CyberOps certification gives you a significant boost to your IT career, particularly in the field of network security. Cisco certifications validate your expertise and demonstrate your commitment to professional development. They enhance your knowledge and skills, making you a preferred candidate for job promotions and new opportunities.

Cisco certifications are globally recognized and respected, opening doors to career advancement prospects and potential salary increases. They also increase your employability and make you stand out among other candidates. Cisco certifications also ensure continuous learning and growth by keeping you updated with industry trends and technologies. Overall, Cisco certification shows you are a competent professional in the cybersecurity domain.

Meets 8570.1 requirements

Attention DoD Information Assurance workers! This boot camp helps meet U.S. Department of Defense Directive 8570.1 requirements for department employees or contractors engaged in work related to information security.

You're in good company


An excellent instructor that obviously knows the material by heart. He was always clear and concise in his explanations and would break it down if anyone in the class didn’t quite get how something worked. He is by far one of my favorite instructors ever, even though I only spent seven days with him.

Chris Soule, Rocky Gap Resort


My instructor was excellent. He made sure that I not only knew the information in order to pass my exams, he took it upon himself to teach us real-world knowledge that is necessary to do my job today.

Jeffrey McGill, TIC Gums, Inc.


Very impressed with Infosec. My instructor did a great job delivering the information strategically and in a way for all to understand. I would definitely take another class/certification prep course.

Sylvia Swinson, Texeltek

Enroll in a boot camp

  • June 10, 2023 - June 11, 2023

    Online only

  • June 17, 2023 - June 18, 2023

    Dulles, Virginia | Available online

  • July 15, 2023 - July 16, 2023

    San Diego, California | Available online

  • July 22, 2023 - July 23, 2023

    Dulles, Virginia | Available online

  • July 29, 2023 - July 30, 2023

    Chicago, Illinois | Available online

  • July 29, 2023 - July 30, 2023

    Dallas, Texas | Available online

  • August 5, 2023 - August 6, 2023

    Colorado Springs, Colorado | Available online

  • August 12, 2023 - August 13, 2023

    San DIego, California | Available online

  • August 26, 2023 - August 27, 2023

    Dulles, Virginia | Available online

  • September 16, 2023 - September 17, 2023

    Dallas, Texas | Available online

1 2 3