HTTP/S Playbook for Teams: Bootcamp Unit
RCCE students will learn HTTP and HTTPS protocol security including request/response analysis, header security (HSTS, CSP, X-Frame-Options), TLS/SSL configuration, certificate management, and common HTTP-based attacks. RCCE students will learn to analyze HTTP traffic for security issues, configure security headers to protect web applications, implement proper TLS configurations, manage digital certificates, detect and investigate HTTP-based attacks including request smuggling, host header injection, and cookie manipulation, troubleshoot HTTPS connectivity issues, and audit web server configurations for security weaknesses. This team-oriented course builds collaborative workflows and organizational playbooks for security operations. Building on core knowledge, RCCE students will learn to create and implement standardized procedures that enable consistent performance across team members and shifts. Students develop the documentation, communication, and coordination skills needed for effective team-based security operations.
- Security Engineers building defensive controls
- Security Analysts and Blue Team members
- Systems Administrators with security responsibilities
- GRC and Risk Professionals supporting controls
- Professionals implementing HTTP/S Playbook for Teams: Bootcamp Unit
- Execute hands-on tasks for http/s playbook for teams
- Execute hands-on tasks for bootcamp unit
- Explain Course Overview fundamentals
- Execute hands-on tasks for what you will learn
- Execute hands-on tasks for team playbook focus — covering Target Outcome.
- Design a scalable privilege management architecture with policy and enforcement
- Execute hands-on tasks for client request
- Execute hands-on tasks for request structure
- Build detections and response workflows for privilege escalation, including Method: GET, POST, PUT, DELETE, PATCH.
- Execute hands-on tasks for http/1.1, http/2, http/3 versions — covering Status codes: 1xx-5xx ranges.
- Execute hands-on tasks for security concern
- Execute hands-on tasks for restrict put/delete to authenticated endpoints only
| Module 01 | HTTP/S Playbook for Teams |
| Module 02 | Bootcamp Unit |
| Module 03 | Course Overview |
| Module 04 | What You Will Learn |
| Module 05 | Team Playbook Focus |
| Module 06 | HTTP Protocol Architecture |
| Module 07 | Client Request |
| Module 08 | Request Structure |
| Module 09 | Response Structure |
| Module 10 | HTTP/1.1, HTTP/2, HTTP/3 versions |
| Module 11 | Security Concern |
| Module 12 | Restrict PUT/DELETE to authenticated endpoints only |
| Module 13 | 204 No Content |
| Module 14 | 4xx Client Error |
All hands-on labs run on Rocheston Rose X OS. Students practice http/s playbook for teams: bootcamp unit by implementing the controls discussed in class, with a focus on real-world deployment, monitoring, and validation.
- Lab 1: Execute hands-on tasks for http/s playbook for teams
- Lab 2: Execute hands-on tasks for bootcamp unit
- Lab 3: Explain Course Overview fundamentals
- Lab 4: Execute hands-on tasks for what you will learn
- Lab 5: Execute hands-on tasks for team playbook focus
Upon successful completion of this course, students will receive an official RCCE Course Completion Certificate for HTTP/S Playbook for Teams: Bootcamp Unit, verifiable through the Rocheston certification portal.
- Full access to all course materials and slide decks
- Hands-on lab access on Rocheston Rose X OS environment
- Access to Rocheston CyberNotes
- Access to Rocheston Zelfire — EDR/XDR SIEM platform
- Access to Rocheston Raven — online cyber range exercise platform
- Access to Rocheston Vulnerability Vines AI