COMP-302
CompTIA SecurityX Bootcamp
Description
CompTIA SecurityX (formerly CASP+) is an expert-level cybersecurity certification for security architects and senior security engineers charged with leading and improving an enterprise’s cybersecurity readiness. CompTIA SecurityX provides hands-on technical mastery and is the ideal certification for advanced practitioners of cybersecurity who require the necessary skills to design, implement, and manage cybersecurity solutions on complex networks to skillfully build a resilient enterprise and prevent the next attack.
U.S. DoDM 8140.03 APPROVED BY DEPARTMENT OF DEFENSE
Prerequisite
Download top 100 cyber terms and study before starting course. A+, Network+, Security+, CySA+, and PenTest+ or equivalent is recommended.
Objectives
By the end of this course, participants will:
- Architect, engineer, integrate, and implement secure solutions across complex environments.
- Use automation, monitoring, detection, and incident response to support enterprise security operations.
- Apply security practices to cloud, on-premises, and hybrid environments.
- Consider cryptographic technologies/techniques and the impact of emerging trends on information security.
- Identify the appropriate governance, compliance, risk management, and threat modeling strategies.
Key Takeaways
- Assess cyber readiness within an enterprise and design/implement the proper solutions to ensure the organization is ready for the next attack
- Develop technical skills in on-premises, cloud native, and hybrid environments; governance, risk, and compliance; assessing an enterprise’s cybersecurity readiness; and leading technical teams to implement enterprise-wide cybersecurity solutions
Who Is This For
This course is ideal for advanced cybersecurity practitioners.
Certificate of Completion
- Certificate of Completion issued after successful completion of all chapters, hands-on exercises, and course evaluation.
- Certificate is downloadable from the Ghost Team Academy Education Portal.
Training Outline
Day 1 – Overview, Enterprise Risk & Governance
- Topics:
- Role of the enterprise cybersecurity architect/engineer; scope of SecurityX
- Governance, risk and compliance (GRC) fundamentals: frameworks (COBIT, ITIL), regulatory drivers (GDPR, HIPAA, PCI-DSS)
- Advanced risk management: quantitative vs qualitative, third-party risk, vendor supply chain, threat-intelligence integration
- Labs/Exercises: Scenario-based risk assessment and mapping to enterprise security controls
- End of day review: Key GRC concepts, domain practice quiz
Day 2 – Architecture & Integration of Secure Solutions
- Topics:
- Enterprise security architecture: hybrid/-cloud/on-premise integration, network segmentation, micro-segmentation, zero-trust models
- Virtualization and cloud security: containers, microservices, orchestration security
- Cryptography, PKI, key lifecycle management, mobile and endpoint security at scale
- Labs/Exercises: Design a secure hybrid architecture incorporating cryptographic controls and mobility endpoints
- End of day review: Architecture domain quiz and scenario walk-through
Day 3 – Advanced Security Engineering & Operations
- Topics:
- Security engineering: endpoint controls, identity and access architecture, privileged access management, enterprise mobility
- Automation, orchestration, and monitoring: SIEM, SOAR, detection engineering
- Incident response, forensics, threat hunting, advanced adversary tactics (APT, nation-state)
- Labs/Exercises: Simulated incident response in enterprise environment; Build and trigger detection, analyze artifacts
- End of day review: Security operations domain quiz and discussion
Day 4 – Emerging Technologies, Research & Collaboration
- Topics:
- Emerging trends: AI/ML in cyber-defense, blockchain/crypto, IoT/OT security, 5G/edge computing
- Research methods: open source intelligence (OSINT), threat-hunting frameworks, trending threat-analysis tools
- Collaboration across enterprise teams: integrating security across DevOps (DevSecOps), engineering, architecture, governance
- Labs/Exercises: Threat-hunting exercise using OSINT and telemetry; Build report of findings and propose mitigation strategy
- End of day review: Research & collaboration domain quiz, strategic discussion
Day 5 – Capstone, Exam Preparation & Certification Readiness
- Capstone lab: Full enterprise scenario that integrates risk, architecture, operations, emerging tech, and response. Teams design solution, present findings and controls.
- Exam prep session: Performance-based exercises (PBQs), multiple-choice practice, time-management strategies
- Review of critical subtleties: exam blueprint, pass/fail structure (CAS-005 up to 90 questions, 165 minutes)
- Next steps: preparing your exam schedule, study plan for after bootcamp, resources for continued practice
- End of bootcamp: Wrap-up, certification journey guidance, Q&A
- Practice Exam




















