RCCE Course
Course #946

Network testing Monitoring and Detection

📊 Level: Intermediate
⏱️ Duration: 2 Days
🏷️ Track: Offensive Security
📋 Prerequisites: Foundations
🖥️ Mode: Online Instructor-Led
📝 Course Description

RCCE students will learn network penetration testing methodologies including external and internal network testing, port scanning, service enumeration, vulnerability exploitation, lateral movement, and privilege escalation in network environments. RCCE students will learn to plan and scope network penetration tests, conduct host discovery and service enumeration, identify and exploit network service vulnerabilities, perform credential attacks against network authentication services, demonstrate lateral movement through network environments, escalate privileges to domain administrator access, document network test findings, and provide remediation guidance prioritized by business risk. This monitoring course teaches comprehensive detection and observability strategies for proactive security operations. Building on core knowledge, RCCE students will learn to instrument systems for security telemetry, build detection pipelines, configure alerting, and maintain monitoring coverage as environments evolve. Students gain the visibility and detection capabilities needed to catch threats early.

🎯 Target Audience
  • Security Engineers building defensive controls
  • Security Analysts and Blue Team members
  • Systems Administrators with security responsibilities
  • GRC and Risk Professionals supporting controls
  • Professionals implementing Network testing Monitoring and Detection
🧠 What You Will Learn
  • Execute hands-on tasks for network testing
  • Monitor and audit privilege usage; detect escalation attempts
  • Explain Course Overview fundamentals
  • Execute hands-on tasks for offensive track — covering External and internal network testing, Port scanning and service enumeration.
  • Execute hands-on tasks for defensive track — covering Security telemetry instrumentation, Detection pipeline construction.
  • Execute hands-on tasks for learning outcomes — covering Plan and scope penetration tests, Exploit network service vulnerabilities.
  • Execute hands-on tasks for topic map
  • Execute hands-on tasks for 07 lateral movement
  • Build detections and response workflows for privilege escalation
  • Execute hands-on tasks for 08 privilege escalation
  • Execute hands-on tasks for 03 port scanning techniques
  • Execute hands-on tasks for 09 threat landscape
📚 Course Outline
Module 01Network Testing
Module 02Monitoring and Detection
Module 03Course Overview
Module 04Offensive Track
Module 05Defensive Track
Module 06Learning Outcomes
Module 07Topic Map
Module 0807 Lateral Movement
Module 0913 Detection Pipeline Arch
Module 1008 Privilege Escalation
Module 1103 Port Scanning Techniques
Module 1209 Threat Landscape
Module 1315 Alert Configuration
Module 14Scope Definition
🧪 Lab Details

All hands-on labs run on Rocheston Rose X OS. Students practice network testing monitoring and detection by implementing the controls discussed in class, with a focus on real-world deployment, monitoring, and validation.

  • Lab 1: Execute hands-on tasks for network testing
  • Lab 2: Monitor and audit privilege usage; detect escalation attempts
  • Lab 3: Explain Course Overview fundamentals
  • Lab 4: Execute hands-on tasks for offensive track
  • Lab 5: Execute hands-on tasks for defensive track
📊 Skill Level
Intermediate
Beginner Intermediate Advanced Expert
Duration
2 Days
🎓
Certificate
Completion
🖥️
Lab Platform
Rose X OS
👨‍🏫
Mode of Training
Online Instructor-Led
🔥
Platform
Zelfire
🐦‍⬛
Cyber Range
Raven
📓
Study Material
CyberNotes
🏆 Certificate

Upon successful completion of this course, students will receive an official RCCE Course Completion Certificate for Network testing Monitoring and Detection, verifiable through the Rocheston certification portal.

🔑 Student Access & Materials
  • Full access to all course materials and slide decks
  • Hands-on lab access on Rocheston Rose X OS environment
  • Access to Rocheston CyberNotes
  • Access to Rocheston Zelfire — EDR/XDR SIEM platform
  • Access to Rocheston Raven — online cyber range exercise platform
  • Access to Rocheston Vulnerability Vines AI