Five days.
Eighteen modules.

Mapped directly to the four CAS-005 domains. Sequenced so every day's labs depend on the previous. No surface review, every module includes a hands-on environment.

// DAY 01 — GOVERNANCE & RISK
Day 01 / Domain 1

Governance, Risk & Compliance.

The day that opens the bootcamp because every later decision routes through it. Risk frames architecture; governance frames operations.

MOD / 01
Regulatory landscape
GDPR, HIPAA, PCI-DSS, NIST 800-53/171, ISO 27001, the frameworks that drive enterprise control selection.
90 min
MOD / 02
Threat modeling
STRIDE, PASTA, attack trees. Lab: build a threat model for a sample fintech application.
120 min · lab
MOD / 03
Risk quantification
FAIR methodology, qualitative vs. quantitative trade-offs, communicating risk to leadership.
90 min
MOD / 04
GRC tooling
Lab: configure a GRC platform with controls mapped to two frameworks, surface gaps via reports.
120 min · lab
// DAY 02 — ARCHITECTURE
Day 02 / Domain 2

Security Architecture.

Designing the patterns that keep complex enterprises resilient. The heaviest theoretical day; every concept is grounded in a lab.

MOD / 05
Zero-trust patterns
From network-centric to identity-centric architecture. BeyondCorp, SASE, ZTNA, what they mean in practice.
90 min
MOD / 06
Identity federation
SAML, OIDC, SCIM. Lab: federate three SaaS apps through a single IdP with conditional access.
120 min · lab
MOD / 07
Cryptographic primitives
Symmetric, asymmetric, hashing, KDFs, post-quantum considerations. When to use what, and the failure modes of each.
90 min
MOD / 08
AI/ML-aware design
Threat surface of LLM-integrated apps, model supply chain, prompt injection, data leakage. Emerging exam content.
90 min
// DAY 03 — ENGINEERING
Day 03 / Domain 3

Security Engineering.

The heaviest hands-on day. Implementation work that ships secure-by-default.

MOD / 09
IAM at scale
Lab: design and implement an RBAC + ABAC hybrid for a multi-tenant SaaS environment.
120 min · lab
MOD / 10
Endpoint hardening
Linux + Windows baselines. Lab: harden a CIS Level 2 environment and validate via Lynis/STIG-Viewer.
120 min · lab
MOD / 11
PKI in practice
Lab: stand up an offline root + intermediate CA, issue and revoke certs, integrate with an internal service mesh.
120 min · lab
MOD / 12
Containers + serverless
Image hardening, runtime security, IAM for Lambda/Cloud Functions, secrets in pipelines.
90 min · lab
// DAY 04 — OPERATIONS
Day 04 / Domain 4

Security Operations.

Detection engineering, threat hunting, incident response, forensics. The day that ends with a full incident simulation.

MOD / 13
Detection engineering
Writing Sigma rules, tuning for false positives, mapping detections to MITRE ATT&CK.
120 min · lab
MOD / 14
Threat hunting
Hypothesis-driven hunts, hunting through SIEM and EDR telemetry, documenting findings.
90 min · lab
MOD / 15
Incident response
NIST 800-61 lifecycle, playbook design, SOAR automation patterns, post-incident review discipline.
90 min
MOD / 16
IR simulation
Capstone: full breach scenario across endpoint, network, and cloud. You lead the response.
180 min · lab
// DAY 05 — EXAM
Day 05 / Calibration

Exam simulation and study plan.

Final day is exam-mechanics, simulation, and personalized calibration. Most candidates schedule the live exam inside two weeks of finishing.

MOD / 17
Full-length simulation
165 minutes, 90 questions, performance-based items, scored and reviewed live with the cohort.
165 min · simulation
MOD / 18
Calibration + scheduling
Gap analysis, weak-area study plan, voucher scheduling, exam-day tactics. Post-bootcamp support handoff.
120 min
Ready to enroll?

Pick a format.
Lock a seat.

Same curriculum across all four delivery formats. Pick the one that fits your team and your calendar.