Offensive Security, the creators of Kali Linux, announced today that they would be offering free access to their live-streamed ‘Penetration Testing with Kali Linux (PEN-200/PWK)’ training course later this month. . The course will prepare you for the Offensive Security Certified Professional (OSCP) certification exam, taught in person before the pandemic. However, during the pandemic, live training ended for some time, with companies creating online, remote courses. As part of this transition, Offensive Security released ' OffSec Academy ,' a thirteen-week online course to prepare students for the OSCP certification. . Locate a complimentary web course focused on Kali Linux that equips you for the OSCP certification offered by Offensive Security.. Kali Linux Training, Free Penetration Course, OSCP Preparation. . Brittany Day
After a week-long boot camp, Frank Bentz, chief information security officer at Sandy Spring Bank, emerged with a new title: Certified Ethical Hacker.. It took about 60 hours of training and countless hours spent hacking into fake computer networks, but Bentz said he The link for this article located at Washington Post is no longer available. . In a landscape of cyber threats, CISO Frank Bentz took action to enhance his skills, pursuing CEH certification through a comprehensive training program.. Frank Bentz, Certified Ethical Hacker, Cybersecurity Skills. . LinuxSecurity.com Team
Interest in IT security certifications is booming, as more U.S. companies tighten up the protection surrounding their critical network infrastructure and as a growing number of employees view security expertise as recession proof.. 5 hot IT certification picks for 2010 Three of the top 10 IT certifications in terms of demand among U.S. employers are security related, according to Foote Partners, a consultancy that tracks IT employment trends. These include the Red Hat Certified Security Specialist The link for this article located at Network World is no longer available. . The rising demand for IT security certifications highlights businesses' focus on cybersecurity, with Red Hat leading the charge in professional training and expertise. Red Hat Certified Security, IT Certifications, Network Security. . Alex
Thanks to Andreas Fabis for sending this in to us. atsec information security is pleased to announce the successful Common Criteria Certification of Red Hat Enterprise Linux Version 5.3 at EAL 4 (augmented for flaw remediation) with the Controlled Access Protection Profile (CAPP). Under Common Criteria, products are evaluated against strict standards for various features, including security functionality, development environment, security vulnerability handling, documentation of security-related topics, and product testing. . The evaluation covers a potentially distributed, but closed, network of Dell 11th Generation PowerEdge servers running the evaluated version of Red Hat Enterprise Linux and also includes the evaluated version of Red Hat Enterprise Linux running under Xen on the Dell 11th Generation PowerEdge servers. The cryptography provided by OpenSSL, which is used by security-enforcing components, was tested using the Cryptographic Algorithm Validation Program (CAVP) established by NIST. This validation demonstrates the compliance of the OpenSSL cryptographic algorithms with a reference implementation. The certification of Red Hat Enterprise Linux Version 5.3 through NIAP’s Common Criteria Evaluation and Validation Scheme (CCEVS) adds another open-source operating system to atsec's portfolio of more than 60 OS evaluations during the course of the last decade. Staff members at atsec have extensive experience with ITSEC and Common Criteria — some dating back to the 1980's. The evaluation technical report and the certificate will be available on the NIAP web site and also on the Common Criteria portal: niap-ccevs commoncriteriaportal About atsec information security atsec information security is an independent, standards-based IT (information technology) security consulting and evaluation services company that combines a business-oriented approach to information security with in-depth technical knowledge and global experience. atsec was founded in Munich (Germany) in January 2000and has extensive international operations with offices in the US, Sweden, the UK, and China. atsec leverages its deep security, process, and standards expertise to consult on a wide range of IT security needs, enabling clients to establish integrated security management procedures in order to manage security risk and improve data, product, and business process reliability. atsec works with leading global companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, RWE, and Wincor-Nixdorf. . The evaluation covers a potentially distributed, but closed, network of Dell 11th Generation PowerEd. thanks, andreas, fabis, sending, atsec, information, security, pleased, announce. . LinuxSecurity.com Team
The National Institute of Standards and Technology has revoked certification of the open-source encryption tool OpenSSL under the Federal Information Processing Standard. OpenSSL in January became one of the first open-source software products to be validated under NIST. The revocation caught the Open Source Software Institute, which shepherded the module through the validation process, by surprise. The link for this article located at GCN.com is no longer available. . OpenSSL unexpectedly revokes its FIPS certification, prompting worries about the implications for security in open source software.. OpenSSL, FIPS, Compliance Standards, Open Source Security. . Brittany Day
Open-source stacks are poised to shake up the world of government security certifications, such as the National Institute of Standards and Technology's Federal Information Processing Standard 140-2 and the National Information Assurance Partnership's Common Criteria ratings. Agencies that must buy software to meet these standards are finding that an open-source, modular approach can provide new choices on the marketplace. . That's what the Defense Department's Defense Medical Logistics Standard Support program found three years ago. The agency was looking at spending $200,000 to $500,000 on virtual private network software for its 600 HP-UX servers, and the software had to be FIPS-140-2-compliant. The trouble was, the agency planned to move off HP-UX in a few years, rendering the investment null, said Steve Marquess, a DMLSS consultant from Veridical Systems Inc. of Adamstown, Md., who spoke at the recent LinuxWorld conference. The link for this article located at GCN is no longer available. . The emergence of open source technology is transforming government security certifications by enhancing cybersecurity and fostering reliable, collaborative solutions. Open Source Stacks, Government Security, Compliance Certification, Modular Software Choices. . Benjamin D. Thomas
Red Hat yesterday announced the availability of a new security certification for IT professionals: Red Hat Certified Security Specialist (RHCSS). The announcement of the RHCSS certification is the Company's latest milestone in its "Security in a Networked World" initiative lanched in August. . Adding to its award-winning Red Hat Certified Engineer (RHCE) program, and Red Hat Certified Architect (RHCA) program, Red Hat Certified Security Specialist (RHCSS) is the first performance based certification focused on security competency for enterprise Linux servers. Over the past year, Red Hat has expanded its portfolio of security solutions with the availability of SELinux in Red Hat Enteprise Linux v. 4, Red Hat Directory Server and Red Hat Certificate System. The new RHCSS program provides a complete curriculum of hands-on training courses to support these solutions. The link for this article located at Irishdev.com is no longer available. . Ubuntu launches UBCP, its latest skill-oriented credential aimed at safeguarding cloud infrastructure for business-grade systems.. Red Hat Certified Security Specialist, enterprise Linux certification, security training courses. . LinuxSecurity.com Team
The ink is barely dry on all of the Red Hat Enterprise Linux 4 materials, and the company is already gearing up for the launch of RHEL 5. While Red Hat is not being terribly specific about what is in RHEL 5 just yet, the company did announce last week that it is working with server maker IBM and security expert Trusted Computer Solutions to begin the Common Criteria security certification for the forthcoming RHEL 5, which is due in late 2006. . The Common Criteria testing is time-consuming and expensive, particularly since Linux runs on so many platforms. (In fact, more platforms than any operating system in the history of computing.) Red Hat and IBM are teaming up to test the future Linux on IBM's xSeries, The link for this article located at is no longer available. . The Common Criteria testing is time-consuming and expensive, particularly since Linux runs on so man. barely, enterprise, linux, materials, company, already. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.