Internal Audit Training, IT Audit Training Courses, Information Security Training - CPE Interactive

Continuing Professional Education for Audit, Assurance, & Info Security

Course Description

Microsoft is a major player in both the CyberSpace infrastructure and application development arenas. In this practical, information packed seminar, you will learn a structured approach to securing and auditing Microsoft servers and networking infrastructure, including Active Directory, from end-to-end and from top to bottom. You will cover all key Windows server control points, as well as common CyberSecurity risks, safeguards, and audit procedures. Forests, domains, directory services, Group Policy Object (GPO) control audit points and associated CyberSecurity and CyberAudit procedures within the Microsoft Active Directory architecture will be analyzed and demonstrated. Key changes affecting CyberSecurity and audit in different versions of Windows servers will be highlighted. You will gain criteria for selecting and experience in using best-of-breed bundled and freeware CyberSecurity and CyberAudit tools.

Bonus: You will receive a comprehensive “Windows Server and Active Directory Audit Data Collection Guide”

Learning Objectives

  • Identify the different versions and roles of Microsoft Windows servers and important differences in built-in CyberSecurity and CyberAuditability features
  • Locate sources of industry CyberSecurity and CyberAudit best practice guidance
  • Assess logical access control and other system configuration parameters that affect the CyberSecurity of each Windows server and associated domain objects
  • Gain familiarity with Windows CyberSecurity policy deployment and patch management
  • Learn the basics of Lightweight Directory Access Protocol (LDAP) and its impact on Active Directory and Windows CyberSecurity policy deployment
  • Learn how to use built-in and low cost software tools to gather CyberAudit evidence and assess the level of CyberSecurity for Windows servers and Active Directory

Course Outline

Microsoft Windows Server and Active Directory Architecture

  • Server roles and CyberSecurity control points
  • Variations among different versions of Windows Server
  • CyberSecurity risks associated with Microsoft Windows Server and Active Directory

Windows Server

  • Windows CyberSecurity Policies and Group Policy Objects (GPOs)
  • User accounts
  • User authentication
  • Groups and privileged user authority
  • Access control authorization
  • Logical access control authorization
  • Microsoft TCP/IP applications and network services CyberSecurity risks and CyberAudit procedures
  • Tools, techniques, and references for CyberAudits of Windows server CyberSecurity

Active Directory

  • Types of Active Directory objects, domain controller roles, and user groups
  • Domains, forests, and associated policy and trust relationship CyberSecurity risks, safeguards, and CyberAudit procedures
  • Active Directory containers and CyberSecurity (IT) network infrastructure
  • Lightweight Directory Access Protocol (LDAP) design and CyberSecurity
  • Domain user authentication protocols: NTLM, Kerberos
  • CyberSecurity vulnerability and patch management
  • Tools, techniques, and references for auditing Active Directory CyberSecurity

Additional Information

Who Should Attend

IT Auditors
Information Security Managers, Analysts, and Architects
System Administrators

Learning Level



Group Live or Group Internet-Based



Advanced Preparation


Recommended Prerequisites

CyberAudits of Identity and Access Control Management (CY01) or equivalent training. A basic understanding of IT audit controls and terminology is assumed.

Session Duration

On Site: 3 Days

CPE Credits: 24 CPEs

Questions? Contact us

Phone: +1 (781) 784-4390
Email: fill out form below

    [recaptcha size:compact class:captcha]