Entries Tagged 'Announcements' ↓

OpenFISMA.org

The OpenFISMA project is an open source application designed to reduce the complexity and automate the regulatory requirements of the Federal Information Security Management Act (FISMA) and the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF). While many security managers are eager to demonstrate their best practices for incident response, patch management, and configuration management, they are overwhelmed with the reporting and documentation requirements of FISMA. You can download our released software right away or peruse the current documentation.

OpenFISMA is built on the Zend Framework which is an open source, object oriented, web application framework with a flexible architecture. ZF is often referred to as a ‘component library’ because it has many loosely coupled components that you can use more or less independently. However, Zend Framework also provides a core model-view-controller (MVC) implementation that you can use to provide basic ‘best practices’ structure to web applications.

Submit Training Requests

If you have a request for specific types of training, please feel free to send me an email.  I’ll try to find it for you.
-Scott (scott@freeitsecuritytraining.com)

We Have a LinkedIn Group!

FreeITSecurityTraining.comIf you have an account on LinkedIn, you can join the FreeITSecurityTraining LinkedIn group.

Thanks for all your support!

-Scott (scott@freeitsecuritytraining.com)

Community-supported Free IT Security Training

Hello everyone!

Welcome to FreeITSecurityTraining.com. I’ve decided to create a community-supported free IT security training portal. If you have resources for *free* training, please register and post. Let’s keep things legitimate/legal (according to U.S. laws), so please don’t post copyrighted information.

Here are a few examples of training types to post:

  • Certified Information Systems Security Professional (CISSP)
  • CompTIA Security+
  • Certified Ethical Hacker (CEH)
  • Systems Security Certified Practitioner (SSCP)
  • Security Certified Network Specialist (SCNS)
  • Security Certified Network Professional (SCNP)
  • Security Certified Network Architect (SCNA)
  • Computer Hacking Forensic Investigator (CHFI)
  • Cisco Certified Security Professional (CCSP)
  • Qualified Wireless Analyst and Defender (QWAD)
  • GIAC Security Audit Essentials (GSAE)
  • GIAC Information Security Professional (GISP)
  • GIAC Certified Incident Manager (GCIM)
  • GIAC Information Security Fundamentals (GISF)
  • GIAC Security Essentials Certification (GSEC)
  • GIAC Certified Penetration Tester (GPEN)
  • GIAC Certified Firewall Analyst (GCFW)
  • GIAC Certified Intrusion Analyst (GCIA)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Windows Security Administrator (GCWN)
  • GIAC Certified UNIX Security Administrator (GCUX)
  • GIAC Certified Forensics Analyst (GCFA)
  • GIAC Securing Oracle Certification (GSOC)
  • GIAC Reverse Engineering Malware (GREM)
  • GIAC Assessing Wireless Networks (GAWN)
  • GSSP Secure Software Programmer - C (GSSP-C)
  • GSSP Secure Software Programmer - Java (GSSP-JAVA)
  • BackTrack training
  • Any network security training
  • Any forensic analysis training
  • Any web application security audit training

Once we get a reasonable number of responses, I hope to organize the links in an easy-to-use format categorized by training type.

-Scott (scott@freeitsecuritytraining.com)