Cyber Security Technician
Gain the skills and knowledge to protect your organisation from cyber threats as a qualified cyber security technician.
- Off-the-job training: ~450 hours. Level 3 — Entry level. Coding at L3 is introduced as a supporting skill: reading, adapting, and writing simple scripts to assist cyber security operations.
18 months delivery + 3 months EPA
Level 3 Cyber Security Technician
£11,000
What you’ll be able to do
Tools you'll learn
Curriculum
10 Modules · 69 Topics01Cyber Security Foundations & Landscape50h · 7 topics
01Cyber Security Foundations & Landscape50h · 7 topics
Key Skills Gained
Classify SME information assets by CIA (Confidentiality, Integrity, Availability) requirements and conduct a controls inventory
Research real-world SME breaches and map attack patterns
Capture and analyse basic network traffic using Wireshark
Explore web vulnerabilities (SQLi, XSS) with OWASP WebGoat
Encrypt files using GPG and inspect TLS certificates
Classify data assets by sensitivity level
Produce a security landscape assessment for your SME
02Threats, Actors & Social Engineering50h · 8 topics
02Threats, Actors & Social Engineering50h · 8 topics
Key Skills Gained
Map threat actors to SME industry using MITRE ATT&CK Navigator
Conduct attack surface analysis of an SME digital footprint
Analyse phishing emails and design staff awareness exercises
Set up and use a malware analysis sandbox (REMnux)
Simulate malware scenarios and identify mitigations
Produce threat intelligence reports for business stakeholders
Identify and classify indicators of compromise (IoCs)
Create phishing response flowcharts for SME helpdesks
03Vulnerabilities, Attacks & Assessment50h · 7 topics
03Vulnerabilities, Attacks & Assessment50h · 7 topics
Key Skills Gained
Explore web application vulnerabilities in depth (OWASP WebGoat/DVWA)
Demonstrate credential attacks in lab (Burp Suite)
Assess AI/LLM security risks relevant to SME operations
Run vulnerability scans using OpenVAS/Nessus Essentials
Score and prioritise findings using CVSS/NVD
Produce vulnerability assessment reports with remediation roadmaps
Scope vulnerability assessments for SME environments
04Identity, Data Protection & Asset Management45h · 7 topics
04Identity, Data Protection & Asset Management45h · 7 topics
Key Skills Gained
Configure LDAP/AD with role-based access control
Implement MFA and enforce password policies
Conduct user access rights reviews for SME staff
Build and maintain SME asset inventories with lifecycle tracking
Create data classification schemes and apply DLP rules
Analyse user behaviour logs for insider threat indicators
Design insider threat awareness guidance for SME management
05Cryptography40h · 6 topics
05Cryptography40h · 6 topics
Key Skills Gained
Encrypt files and communications using AES/GPG
Generate and manage RSA key pairs for secure transfer
Create CSRs and manage SSL/TLS certificates (OpenSSL)
Configure HTTPS with proper TLS settings on web servers
Verify file integrity using SHA-256 hashing
Implement data masking on sample databases
06Hardening, Network Security & Monitoring45h · 7 topics
06Hardening, Network Security & Monitoring45h · 7 topics
Key Skills Gained
Harden Windows/Linux servers using CIS benchmarks
Configure firewall rules (pfSense/iptables)
Deploy and tune IDS alerts (Snort/Suricata)
Set up email authentication (DMARC/SPF/DKIM)
Deploy SIEM and ingest multi-source logs (Wazuh/Elastic Stack)
Create monitoring dashboards and automated alert rules
Build a SOC-in-a-Box monitoring solution for an SME
07Security Architecture, Resilience & Change Management50h · 7 topics
07Security Architecture, Resilience & Change Management50h · 7 topics
Key Skills Gained
Design secure network architectures for SME environments
Configure VPN connections and network segmentation (VLANs)
Implement Zero Trust access policies in a lab
Build disaster recovery plans with RTO/RPO calculations
Configure automated server backup solutions
Conduct tabletop DR exercises for SME scenarios
Document change management processes (CAB, impact analysis, backout plans)
08Incident Response & Digital Forensics40h · 6 topics
08Incident Response & Digital Forensics40h · 6 topics
Key Skills Gained
Execute incident response tabletop exercises (ransomware scenario)
Create forensic disk images and maintain chain of custody
Reconstruct incident timelines from SIEM and log data (Wazuh/Elastic Stack)
Parse and correlate logs across multiple data sources
Write incident reports for technical and non-technical audiences
Conduct threat hunting using dashboards and packet captures
09GRC, Compliance & Security Awareness50h · 8 topics
09GRC, Compliance & Security Awareness50h · 8 topics
Key Skills Gained
Build risk registers with quantitative analysis (SLE/ARO/ALE)
Map SME policies against UK legislation and identify compliance gaps
Conduct vendor assessments and draft SLA requirements
Perform mock compliance audits (Cyber Essentials/ISO 27001)
Design security culture improvement plans
Create phishing simulation campaigns with success metrics
Develop security awareness training calendars for SME staff
Draft key security policies (AUP, incident response, data handling)
10Security+ Exam Preparation & EPA Readiness30h · 6 topics
10Security+ Exam Preparation & EPA Readiness30h · 6 topics
Key Skills Gained
Apply exam strategies for Security+ PBQs and scenario questions
Demonstrate integrated security assessment across all domains
Compile and present a professional apprenticeship portfolio
Articulate all KSBs confidently in professional discussion format
Conduct timed practice exams with gap analysis and targeted revision
Perform mock EPA practical demonstrations (patching, access control, IR)
The Learning Model
A proven approach designed to build real, job-ready skills through practice, feedback, and community
Self-Paced, Flexible Learning
Students learn through flexible online study, not traditional lectures, so they can organise their learning around their life and progress at their own speed.
Intensive Sprint-Based Curriculum
The curriculum is organised into short intensive sprints that use curated, high-quality learning material and prioritise hands-on practice over passive content consumption.
Real-World Projects
Each sprint ends with a practical real-world project designed to simulate industry challenges, so students apply knowledge immediately.
Professional Reviews
After completing a project, students receive two one-on-one reviews — typically with a Senior Team Lead and a Junior Team Lead or peer — replicating the kind of review experience used at tech companies.
Peer Review & The Protégé Effect
Students also review others' work, which reinforces their understanding (through the Protégé Effect) and builds teamwork and critical thinking skills.
Community & Expert Support
Learning is supported by a community of learners, weekly standups, open support sessions, and guidance from experienced industry professionals.
Workshops for Mastery
Learners get access to weekly masterclass workshops for the most popular topics, allowing them to learn from experts together with peers.
Why This Model Works
By combining self-directed learning with structured sprints, real-world projects, and professional feedback loops, our model mirrors how successful tech teams operate. Students don't just learn theory — they build the habits, skills, and confidence needed to contribute from day one in a professional environment.
Curriculum updates
Topic details and content may evolve over time as we respond to industry developments and continuously improve our courses to ensure the best learning experience.