Hacker Tools, Techniques and Incident Handling
This ethical hacking course teaches you attacker tools and techniques from the defender's chair, so you recognize reconnaissance, exploitation and post-exploitation as they happen. Every exercise runs under written authorization inside our isolated Toronto lab range.
You then work a structured incident handling process end to end, from preparation and identification through containment, eradication and recovery, and write the handover notes a response team can act on.
- Duration
- 8 weeks
- Format
- Live online, instructor-led
- Prerequisites
- None required
- Class size
- Capped at 12 learners

What you will be able to do
- Run reconnaissance and enumeration against an authorized target and document the attack surface
- Explain how each phase of an intrusion works and the evidence it leaves
- Escalate privileges and move laterally in a controlled lab, then detect the same activity
- Follow the six-step incident handling process from preparation to lessons learned
- Build an incident timeline from logs and indicators of compromise
- Map observed attacker behaviour to MITRE ATT&CK techniques
- Write a clear incident report and handover note a senior responder can act on
Course outline
5 modules
- Passive open source intelligence within agreed scope
- Active host and service discovery
- DNS, subdomain and network mapping
- Turning findings into an attack plan
What you need before you start
- Comfort with the Windows and Linux command line
- Basic networking knowledge, including TCP/IP and common ports
- A computer that can run a browser and a remote desktop client
Who this course is for
- SOC analysts who want to understand the attacks they defend against
- Incident responders formalising their process
- System and network administrators moving toward security
- IT professionals preparing for the EC-Council CEH exam
Where this leads
Prepares you for
CEH
Awarded by EC-Council
This course maps to the EC-Council Certified Ethical Hacker, or CEH, exam. The certificate is granted by EC-Council after you pass their exam, not by the academy. We prepare you for the topics and the hands-on style it assesses.
Questions about this course
More in offensive security
Ready to launch your cyber security career?
Join the next live online cohort. No experience required, just bring the curiosity.



