CSIS Top 20 Critical Security Controls Training Boot Camp

4.6 (738 ratings)

Duration
5 days
Method
Live online or team onsite
Price
$2,799.00

This boot camp helps you master the 20 Important Security Controls as published by the Center for Strategic and International Studies (CSIS).

This course is offered only as a private group session.

100% Satisfaction Guarantee

What you'll learn

Training overview

Securing the United States against cyber-attacks has become one of the nation’s highest priorities. To achieve this objective, networks, systems, and the operations teams that support them must vigorously defend against external attacks. Furthermore, for those external attacks that are successful, defenses must be capable of thwarting, detecting and responding to follow-on attacks on internal networks as attackers spread inside a compromised network.

This group of 20 crucial controls is designed to begin the process of establishing a prioritized baseline of information security measures and controls that can be applied across enterprise environments. Fifteen of these controls can be monitored, at least in part, automatically and continuously. Five controls are essential but do not appear to be able to be monitored continuously or automatically with current technology and practices.

What's included

Everything you need to know

Certification Logo
  • 90-day extended access to Boot Camp components, including class recordings
  • 100% Satisfaction Guarantee
  • Free 90-day Infosec Skills subscription (access to 1,400+ additional courses and labs)
  • Knowledge Transfer Guarantee

Syllabus

Training schedule

Day 1
Morning session

Information Security Overview

  • Mitigating Threats
  • Organizational Security
  • User- and Role-based Security
  • Authentication
  • Peripheral Security
  • Application and Messaging Security
  • Cryptography
Afternoon session

Information Security Overview continued

Schedule may vary from class to class

Day 2
Morning session

Information Security Overview

  • Public Key Infrastructure
  • Network Security
  •  Ports and Protocols
  •  Wireless Security
  •  Remote Access Security
  •  Vulnerability Testing and Monitoring
  •  Business Continuity
Afternoon session

Information Security Overview continued

Schedule may vary from class to class

Day 3
Morning session

The Top 20 Controls

  • Inventory of authorized and unauthorized devices
  • Inventory of authorized and unauthorized software
  • Secure configurations for hardware and software on workstations and servers
  • Continuous vulnerability assessment
  • Malware defenses
  • Application software security
  • Wireless device control
  • Data recovery capability
Afternoon session

The Top 20 Controls continued

Schedule may vary from class to class

Day 4
Morning session

The Top 20 Controls continued

  • Security skills assessment and appropriate training to fill gaps
  • Secure configurations for network devices such as Firewalls, Routers, and Switches
  • Limitation and control of network ports, protocols, and services
  • Controlled use of administrative privileges
  • Boundary defense
Afternoon session

The Top 20 Controls continued

Schedule may vary from class to class

Day 5
Morning session

The Top 20 Controls continued

  • Maintenance, monitoring, and analysis of security audit logs
  • Controlled access based on the need to know
  • Account monitoring and control
  • Data loss prevention
  • Incident response management
  • Secure network engineering
  • Penetration tests and red team exercises
Afternoon session

The Top 20 Controls continued

Schedule may vary from class to class


What makes the Infosec CSIS prep course different?

You can rest assured that the CSIS training materials are fully updated and synced with the latest version of the exam. With 20 years of training experience, we stand by our CSIS training with 100% satisfaction guaranteed. This means if you’re not 100% satisfied with your training at the end of the first day, you may withdraw and enroll in a different online or in-person course.

Infosec success stories

"The team at Infosec was great from the start, and they were as excited about my journey as I was. They explained the value behind each training I was considering and how it could further my goals. Their enthusiasm was a great motivation throughout the boot camp." 

Elle Autumn

EC-Council Certified Ethical Hacking Course: CEH Certification Training Boot Camp Read Elle's Story

"Infosec has uniquely prepared me for any CMMC retraining that will take place inevitably in the future. With them, it’s not just about completing the certification; it's about being a true contributor to the ecosystem."

James Ahern

Certified CMMC Assessor (CCA) Boot Camp Read James's Story

"The hands-on training was the best part. You have an instructor you can actually reach out to and ask questions — not only on the material, but also about things out in the wild with cybersecurity."

Eddie Quinones

CompTIA Security+ Certification Training Boot Camp Read Eddie's Story

"The Infosec CISM Boot Camp gave me the ability to intelligently explain why I'm making a decision. Ultimately, the C-suite is happy and they know, 'Hey, here's a person that we can rely on."

Mohammad Mirza

ISACA Certified Information Security Manager (CISM) Training Boot Camp Read Mohammad's Story

Guaranteed results

Our Boot Camp guarantees

100% Satisfaction Guarantee

100% Satisfaction Guarantee

If you’re not 100% satisfied with your training at the end of the first day, you may withdraw and enroll in a different online or in-person course.

Knowledge Transfer Guarantee

Knowledge Transfer Guarantee

If an employee leaves within three months of obtaining certification, Infosec will train a different employee at the same organization tuition-free for up to one year.

Who should attend

Who Should Attend Image
  • Information security professionals
  • Network administrators
  • System architects and engineers
  • IT and security managers
  • Anyone looking to learn about critical security controls

Award-winning training you can trust

2025 G2 Summer - Leader Enterprise - eLearning Content
2024 Training Industry Top 20 Online Learning Library
2024 TrustRadius Top Rated - Skills
2024 G2 Winter - Users Love Us - SAT

No available dates

We're sorry, but CSIS Top 20 Critical Security Controls Training Boot Camp does not have any scheduled dates. However, we’d love to help you get the specialized training you need. Book a meeting with a representative today to discuss setting up a course.

Why choose Infosec?

Category

Infosec

SANS Institute

Training Camp

Global Knowledge (Skillsoft)

Triple Guarantee
Included
Not Included
Not Included
Not Included
Exam Pass Guarantee
Included
Not Included
Limited
Limited
100% Satisfaction Guarantee
Included
Not Included
Limited
Not Included
Knowledge Transfer Guarantee*
Included
Not Included
Limited
Not Included
Skills Verification Platform
Included

AI-powered, hands-on skill validation

Not Included
Not Included
Not Included
Validates methodology & problem-solving approach
Included
Not Included
Not Included
Not Included
Continuous skill tracking over time
Included
Not Included
Not Included
Limited
Hands-on labs & cyber ranges
Included
Included
Included
Included
Role-Based Learning Paths
Included

12 Roles

Limited
Not Included
Included
Role-Based Training
Included

Integrated for all roles

Separate
Limited
Separate
Post-Training Access & Additional Upskilling
Included

90 days

Limited
Not Included
Annual subscription
Instructor Quality
10+ years, active practitioners
10+ years, active practitioners
Varies
Varies
Delivery Options
Live-online, in-person, self-paced, accelerated, immersive, custom on-site
Live-online, in-person, self-paced, accelerated, immersive, custom on-site
Live, in-person, self-paced, accelerated, custom on-site
Live, in-person, self-paced, custom on-site
Partnerships / Programming
Not Included
Not Included
Not Included
Not Included
Compliance Coverage
DoD, NICE, MITRE, NIST, ISO, ISA/IEC
DoD, NICE, MITRE, NIST, ISO, ISA/IEC
Limited
Limited
CompTIA, ISACA, ISC2, EC-Council, Cisco Certifications
Included
Not Included
Included
Included
AWS / Azure / Cloud Certifications
Included
Limited
Included
Included
PMP & IT management Certifications
Included
Limited
Limited
Included

*Protects your investment if trained employees leave within three months of obtaining certification (Infosec will train a different employee at the same organization tuition-free for up to one year).