We may earn an affiliate commission when you visit our partners.
Course image
Pearson

This course covers systems and application security. You'll explore the critical aspects of endpoint security, learning to build, install, and maintain security measures using technologies like TPM, IDS, IPS, and host-based firewalls. Gain insights into identifying and mitigating malicious code and social engineering attacks, equipping you with proactive strategies to safeguard systems. You'll learn about secure virtual environments, including hypervisors, containers, and virtual appliances to effectively manage virtualization technologies. You'll also learn about cloud security, including service deployment models and navigating legal and regulatory concerns. Additionally, the course covers Enterprise Mobility Management, focusing on mobile device security and provisioning techniques.

Enroll now

Here's a deal for you

Save money when you learn with a deal that may be relevant to this course.
All coupon codes, vouchers, and discounts are applied automatically unless otherwise noted.

What's inside

Syllabus

Save this course

Create your own learning path. Save this course to your list so you can find it easily later.
Save

Activities

Coming soon We're preparing activities for (SSCP) Systems Security Certified Practitioner: Unit 6. These are activities you can do either before, during, or after a course.

Career center

Learners who complete (SSCP) Systems Security Certified Practitioner: Unit 6 will develop knowledge and skills that may be useful to these careers:
Virtualization Security Specialist
A Virtualization Security Specialist focuses on securing virtualized infrastructures, which are fundamental components of modern IT environments. This course is an ideal match for aspiring professionals in this field, as it delves deeply into securing virtual environments. You will learn about key components such as hypervisors, containers, and virtual appliances, and gain expertise in effectively managing their security. Understanding how to build and maintain robust security measures across these virtual platforms is paramount. This course is specifically designed to provide the targeted knowledge and practical strategies necessary for mitigating unique threats and ensuring the integrity of virtualized systems, making it invaluable for a Virtualization Security Specialist.
Endpoint Security Specialist
As an Endpoint Security Specialist, your primary responsibility is to secure all endpoints—such as workstations, servers, and mobile devices—from various cyber threats. This course is an exemplary fit for this career path, diving deep into the critical aspects of endpoint security. You will learn to build, install, and maintain security measures using technologies like TPM, IDS, IPS, and host-based firewalls, which are indispensable tools for an Endpoint Security Specialist. Furthermore, gaining insights into identifying and mitigating malicious code directly prepares you to protect endpoints from malware. This course is specifically designed to provide the hands-on knowledge and practical strategies required for mastering endpoint protection.
Mobile Device Security Administrator
As a Mobile Device Security Administrator, you are responsible for securing an organization's mobile devices and ensuring compliance with security policies. This course is an outstanding preparation for this specialized role. It explicitly covers Enterprise Mobility Management, focusing on mobile device security and provisioning techniques, which are central to your daily responsibilities. You will gain crucial insights into protecting a mobile fleet from various threats and managing their security posture effectively. Understanding endpoint security and malicious code mitigation, also covered, provides a comprehensive view of securing these critical endpoints. This particular course offers highly relevant, focused training invaluable for mastering mobile device security.
Cloud Security Engineer
As a Cloud Security Engineer, you specialize in designing, implementing, and managing security controls for cloud-based systems and applications. This course directly addresses key aspects of this specialized field. You will learn about cloud security, including various service deployment models and navigating associated legal and regulatory concerns, which is fundamental to building secure cloud architectures. The insights into securing virtual environments, such as hypervisors and containers, further enhance your ability to protect cloud infrastructure effectively. This course is particularly tailored to equip you with the specific knowledge and practical techniques required to ensure robust security in dynamic cloud environments.
Cybersecurity Analyst
As a Cybersecurity Analyst, you constantly monitor systems, detect threats, and respond to security incidents to protect an organization's digital assets. This course helps build a foundation in systems and application security, which is critical for performing daily tasks in this role. You will learn about endpoint security technologies like IDS, IPS, and host-based firewalls, directly applicable to analyzing security alerts and preventing breaches. Understanding how to identify and mitigate malicious code and social engineering attacks, as covered in the course, helps you proactively safeguard systems. This course is particularly valuable for developing the practical skills needed to detect, analyze, and neutralize cyber threats effectively.
Application Security Engineer
An Application Security Engineer focuses on identifying, preventing, and remediating security vulnerabilities within software applications throughout their lifecycle. This course provides comprehensive coverage of application security, a core component of this role. You will gain insights into identifying and mitigating malicious code and understanding social engineering attacks, which are crucial for developing secure coding practices and reviewing application designs. The course's discussions on systems security and secure virtual environments, including containers, offer valuable context for securing the deployment and operational aspects of applications. This particular course helps build a solid foundation in the principles and practices essential for securing the software that powers modern enterprises.
Security Engineer
A Security Engineer designs, implements, and maintains robust security infrastructures to protect systems and data. This role demands a deep understanding of various security technologies and practices, areas extensively covered in this course. You will learn to build, install, and maintain security measures using technologies like TPM, IDS, IPS, and host-based firewalls, which are core components of a security engineer's toolkit. The course's insights into securing virtual environments, including hypervisors and containers, and navigating cloud security concerns are directly applicable to engineering secure, scalable solutions. This particular course helps build the practical expertise required to develop and deploy effective security controls across diverse technical environments.
Security Operations Center Analyst
A Security Operations Center Analyst monitors security systems, detects threats, and performs initial incident triage and response. This course provides direct, applicable knowledge for excelling in such a dynamic environment. You will explore critical aspects of endpoint security, including technologies like IDS, IPS, and host-based firewalls, which are core tools for monitoring and threat detection within a SOC. Gaining insights into identifying and mitigating malicious code and social engineering attacks directly informs your ability to analyze alerts and identify genuine threats. This course helps build a practical understanding of defensive security measures and threat analysis essential for a Security Operations Center Analyst.
Incident Response Analyst
An Incident Response Analyst is on the front lines, detecting, analyzing, and containing cyber incidents as they occur. The practical knowledge gained from this course is highly beneficial for effectively responding to security breaches. You will explore systems and application security, along with specific techniques for identifying and mitigating malicious code and social engineering attacks—all vital skills for understanding how incidents unfold and how to react. Learning about endpoint security measures like IDS and IPS also helps an Incident Response Analyst in correlating event logs and pinpointing the source of an attack. This course helps build a robust understanding of threat vectors and containment strategies.
DevSecOps Engineer
A DevSecOps Engineer integrates security practices into every stage of the software development and operations lifecycle, ensuring security is 'shifted left.' This course provides highly relevant knowledge for implementing robust security within agile development pipelines. You will gain insights into application security and identifying and mitigating malicious code, which are crucial for building secure applications from inception. The course's discussions on secure virtual environments, including containers, are directly applicable to securing modern deployment paradigms. This course helps build a practical understanding of how to embed security controls and foster a security-conscious culture, making it valuable for a DevSecOps Engineer.
Malware Analyst
A Malware Analyst investigates malicious software to understand its functionality, origin, and impact, and to develop effective countermeasures. This course offers significant foundational knowledge directly relevant to this intricate field. You will gain crucial insights into identifying and mitigating malicious code, which is a core skill for any Malware Analyst. While deep reverse engineering may require additional specialized training, the course's focus on understanding malware's impact on systems and applications, alongside endpoint security measures, provides an essential framework for initial analysis and response. This course helps build a practical understanding of malicious code behavior and its mitigation, enabling you to contribute significantly to threat intelligence efforts.
Vulnerability Management Analyst
A Vulnerability Management Analyst systematically identifies, assesses, and prioritizes security weaknesses across an organization's IT infrastructure. This course provides valuable context and technical understanding essential for this role. You will gain insights into systems and application security, which helps in recognizing potential points of exploitation. The course's focus on identifying and mitigating malicious code and understanding social engineering attacks provides a deeper appreciation of the types of threats that exploit vulnerabilities. Knowledge of endpoint security technologies like host-based firewalls further aids in assessing the effectiveness of existing controls. This course helps build a fundamental understanding of how vulnerabilities are exploited and how to prioritize their remediation.
Security Consultant
A Security Consultant advises organizations on various aspects of cybersecurity, including strategy, architecture, and implementation. This role often requires a broad understanding of security domains, which this course helps to cultivate. You will explore systems and application security, endpoint protection, secure virtual environments, and cloud security, all of which are common areas of client engagement. The course's coverage of legal and regulatory concerns in cloud security is particularly valuable for providing comprehensive advice on compliance and risk. This course helps build out a wide-ranging technical foundation. This role often requires an advanced degree or substantial professional experience to excel.
Information Security Officer
An Information Security Officer is responsible for an organization's overall information security strategy, policy development, and risk management. While this role often requires extensive experience, the foundational knowledge gained from this course is highly relevant. You will explore critical aspects of systems and application security, including endpoint protection and the mitigation of malicious code, which are essential for understanding the underlying risks and controls you will manage. The course's coverage of legal and regulatory concerns in cloud security and Enterprise Mobility Management provides valuable context for developing compliant and effective security policies. This course helps build a comprehensive understanding of the technical landscape an Information Security Officer oversees. This role typically requires an advanced degree.
Information Technology Auditor
An Information Technology Auditor assesses an organization's IT systems, processes, and controls to ensure they meet compliance standards, manage risks, and achieve operational objectives. This course is certainly useful for understanding the technical underpinnings of controls you will evaluate. You will explore systems and application security, endpoint protection, and secure virtual environments, which are all key areas for audit review. Crucially, the course's coverage of legal and regulatory concerns in cloud security provides invaluable context for assessing an organization's adherence to industry standards and regulations. This particular course helps build a foundational technical understanding essential for evaluating security postures and identifying areas of non-compliance.

Reading list

We've selected 22 books that we think will supplement your learning. Use these to develop background knowledge, enrich your coursework, and gain a deeper understanding of the topics covered in (SSCP) Systems Security Certified Practitioner: Unit 6.
This is the primary official study guide for the SSCP certification and directly maps to the Unit 6 curriculum regarding systems and application security. It provides authoritative coverage of endpoint security, TPM, and cloud service models. is commonly used as a textbook for those preparing for the ISC2 exam and serves as a vital reference tool for industry professionals.
Written by a highly reputable author in the security field, this book offers a detailed breakdown of malware types and social engineering tactics covered in Unit 6. It is exceptionally valuable as additional reading for students who need complex concepts like hypervisors and EMM explained in plain language. The book is frequently cited as a top-tier resource for both academic study and professional development.
Is an essential supplement for students who want to test their knowledge of Unit 6 topics before the actual exam. It provides hundreds of practice questions on endpoint security, cloud models, and malware. It highly effective review tool that reinforces the learning objectives of the course.
Represents the Common Body of Knowledge (CBK) and provides the foundational background necessary for understanding the regulatory and legal aspects of cloud security mentioned in the course. It useful reference tool for understanding the standards that govern endpoint and mobile security provisioning. It adds significant breadth to the course by connecting technical controls to organizational policy.
This recently published book aligns perfectly with the course's focus on cloud deployment models (IaaS, PaaS, SaaS) and legal concerns. It provides a structured approach to navigating cloud security that mirrors the Unit 6 syllabus. It strong academic resource for those seeking to understand the shared responsibility model in cloud environments.
Focuses on the practical aspects of securing cloud service and deployment models, which major component of Unit 6. It provides a clear roadmap for navigating the security challenges of moving systems to the cloud. It useful reference tool for professionals tasked with implementing the strategies learned in the course.
Since many endpoint security measures are applied to Windows environments, this book serves as a practical guide for the 'build, install, and maintain' objectives of the course. It offers specific instructions on configuring host-based firewalls and leveraging TPM on Windows systems. It very recent and relevant technical reference for practitioners.
Supplements the course's section on identifying and mitigating malicious code by providing hands-on techniques for malware investigation. It useful reference tool for students who want to move from theoretical knowledge of malware to practical identification. It is particularly helpful for providing the prerequisite technical skills for advanced endpoint protection.
Focuses specifically on the strategies for securing endpoints, which is the core theme of Unit 6. It covers the deployment of host-based security measures and the management of mobile devices. It useful reference tool for those specifically interested in the endpoint protection platform (EPP) market.
This standard academic textbook used globally that covers IDS, IPS, and host-based firewalls in great detail. It provides the theoretical foundation for the endpoint security measures discussed in Unit 6. It is highly recommended for students who want a more formal, academic approach to the course material.
This handbook offers practical 'how-to' advice for many of the technologies mentioned in the course, such as IDS/IPS and host-based firewalls. It serves as a great supplement for students who want to know how to implement the concepts in a real-world enterprise environment. It is valued for its direct, practitioner-focused approach.
Considered the 'bible' of security engineering, this book provides immense breadth on how systems fail and how to build them securely. It covers hardware security, including TPM, and the broader context of systems security mentioned in the course title. It high-level reference tool that adds professional depth to the SSCP curriculum.
Provides excellent coverage of the administrative and technical controls involved in systems security. It is particularly helpful for understanding the legal and regulatory concerns associated with cloud and mobile security mentioned in the course syllabus. It widely used textbook in undergraduate cybersecurity programs.
As the course covers containers, this book provides the necessary background on how Docker works, which is essential for securing it. It very popular and frequently updated resource that is easy for learners to follow. It provides the technical breadth that supplements the security-focused container topics in the course.
This classic textbook provides the deep background knowledge required to understand hardware-level security like TPM and hypervisor architecture. While it broad academic text, the chapters on security and virtualization are directly relevant to the course's technical objectives. It is an essential reference for understanding the 'why' behind endpoint security technologies.
Introduces the Zero Trust model, which is the modern evolution of the endpoint and cloud security strategies discussed in Unit 6. It provides a forward-looking perspective on how to manage identity and access in virtualized and cloud environments. It is highly valuable as additional reading for those looking to stay current with industry trends.
Focuses specifically on the security of hypervisors and virtual appliances, which are key topics in Unit 6. It provides the technical depth needed to understand the unique risks associated with virtualization. While slightly older, it remains a critical reference for the core concepts of virtual environment management.
Is an excellent primer for the Enterprise Mobility Management (EMM) and mobile provisioning topics in Unit 6. It simplifies the complexities of BYOD and MDM policies for learners new to the field. It is more valuable as introductory reading to build confidence before tackling the more technical certification materials.
Provides the broader context for why endpoint security and malware identification are so critical. It describes what happens after a security failure, making it a valuable resource for understanding the defensive strategies in Unit 6. It highly reputable text used by industry professionals.
Written by one of the most famous figures in security, this book focuses heavily on the social engineering and privacy aspects relevant to the course. It provides engaging, real-world examples of how attackers bypass endpoint security. It is more valuable as additional reading to provide context and engagement with the subject matter.
Provides a broad overview of the cybersecurity landscape, including malware and social engineering. It is helpful for providing background knowledge to students who may find the SSCP technical requirements challenging. It recent publication that uses modern examples to illustrate security concepts.

Share

Help others find this course page by sharing it with your friends and followers:

Similar courses

Similar courses are unavailable at this time. Please try again later.
Our mission

OpenCourser helps millions of learners each year. People visit us to learn workspace skills, ace their exams, and nurture their curiosity.

Our extensive catalog contains over 50,000 courses and twice as many books. Browse by search, by topic, or even by career interests. We'll match you to the right resources quickly.

Find this site helpful? Tell a friend about us.

Affiliate disclosure

We're supported by our community of learners. When you purchase or subscribe to courses and programs or purchase books, we may earn a commission from our partners.

Your purchases help us maintain our catalog and keep our servers humming without ads.

Thank you for supporting OpenCourser.

© 2016 - 2025 OpenCourser