Skip to main content
ITF-0144PractitionerCurrent Intake
XSEC

XSEC: Xcademia Security Essentials Practitioner

5-Day Instructor-Led Programme

The XSEC Certification Programme is the practitioner foundation for cybersecurity professionals who need a comprehensive, hands-on grounding in core security domains: network security, access control, cryptography, threat analysis, and incident response fundamentals. Assessed on Day 5 through a supervised security assessment exercise. No MCQs. No exam. No question bank. The starting point for every Xcademia career path.

Duration

5 Days

Price

$3,745

XSEC: Xcademia Security Essentials Practitioner
Duration
5 Days
Complete in 5 days
Learning Style
Mentor-led, practical and scenario-based
Guided walkthroughs, real-world examples, and applied skills for the workplace.

Course Overview

The entry point to professional cybersecurity should not be a multiple choice test. Security+ tests whether a candidate has memorised the right answers. ISC2 CC is a free exam designed to grow membership numbers. SANS GSEC costs nearly $10,000 for what is fundamentally foundational content. XSEC gives security practitioners a genuine, instructor-led foundation built around practical skills and assesses it through actual security work, not MCQ recall.

Across five instructor-led days, participants build capability across the complete foundation of professional cybersecurity: network security architecture and monitoring, access control and identity management, cryptography and PKI, threat analysis and vulnerability management, security operations fundamentals, incident response basics, cloud security foundations, and UK GDPR data protection awareness. Every concept is immediately applied in a practical exercise.

On Day 5, participants complete a supervised security assessment exercise covering multiple foundation domains. A senior practitioner observes performance across practical stations. XSEC certificate and Practitioner Assessment Report issued together. Aligned with NIST CSF 2.0 all six functions, CIS Controls v8, ISO 27001:2022, CompTIA Security+ SY0-701 objectives (content alignment, not exam preparation), NCSC 10 Steps to Cyber Security, and UK GDPR data protection foundations.

Hands-On Learning

Hands-on exercises every module: firewall rule analysis, SIEM log analysis, GPO hardening review, phishing identification, vulnerability scan interpretation, and incident triage decision-making.

Mentor-Led Sessions

Mentor-led sessions connecting every concept to a real-world scenario: how a misconfigured firewall enabled a breach, how a stolen credential led to ransomware, how a missing patch became a front-page story.

Career-Ready Skills

Apply core security knowledge practically across network security, access control, cryptography, threat analysis, and incident response, and communicate security risk clearly to technical and non-technical audiences.

Learning Outcomes

Apply network security architecture principles including segmentation, firewall policy, and encrypted communications to real infrastructure scenarios

Implement access control and identity management using RBAC, MFA, and least privilege principles aligned to CIS Controls v8

Explain and apply cryptographic concepts including symmetric and asymmetric encryption, hashing, digital certificates, and PKI

Conduct basic vulnerability assessment activities including scan interpretation, CVSS prioritisation, and remediation tracking

Triage and classify security incidents using structured methodology aligned to NIST SP 800-61 and escalate appropriately

Apply governance fundamentals including ISO 27001, UK GDPR, and NIST CSF 2.0 to security programme design conversations

Prerequisites

1

Minimum 6 months in an IT, helpdesk, or technical support role. No prior security experience required.

2

Basic understanding of computer systems, networks, and operating systems at user-administration level

3

No programming or scripting experience required. XSEC is the entry-level programme in the Xcademia certification ladder.

Detailed Syllabus

Organized by professional domains with comprehensive coverage

Topics Covered:
  • OSI model in a security context: which layers matter most for which attack types
  • Network segmentation for security: VLANs, DMZ design, and micro-segmentation basics
  • Firewall types and policy fundamentals: packet filter, stateful inspection, and NGFW
  • IDS and IPS placement, detection vs prevention modes, and signature vs anomaly approaches
  • VPN fundamentals: IPSec vs SSL TLS, split tunnelling risks, and always-on VPN design
Stage 5Final Capstone

XSEC: Xcademia Security Essentials Practitioner — Capstone Project

On Day 5, participants rotate through a series of practical assessment stations covering network security, access control, threat analysis, vulnerability management, and incident triage. They complete hands-on tasks at each station demonstrating applied knowledge rather than theoretical recall. The senior practitioner observes performance, provides professional feedback, and issues the Practitioner Assessment Report and XSEC certificate together on passing standard.

Assessed by a senior Xcademia practitioner

Framework Alignment

This course is mapped directly onto the standards your organisation already answers to. No invented frameworks, no proprietary jargon.

  • NIST CSF 2.0

    Global

    All six functions (Govern, Identify, Protect, Detect, Respond, Recover) introduced and contextualised throughout all domains

  • CIS Controls v8

    Global

    Implementation Groups 1 and 2: foundational security controls mapped throughout programme content

  • ISO 27001:2022

    Global

    Annex A control categories introduced and referenced in governance domain throughout

  • NCSC 10 Steps to Cyber Security

    Global

    UK government baseline: all 10 steps contextualised throughout the programme

  • CompTIA Security+ SY0-701

    Global

    Content alignment (not exam preparation): XSEC covers all Security+ objective domains with practical application

  • UK GDPR and Data Protection Act 2018

    Global

    Data protection fundamentals in governance domain: UK-specific regulatory context throughout

  • MITRE ATT&CK (Introduction)

    Global

    Tactics and techniques introduced in threat landscape domain as the foundation for advanced Xcademia programmes

Skills You'll Gain

Master these in-demand skills through hands-on practice

Network security architectureAccess control and IAMCryptography and PKI basicsVulnerability management fundamentalsSecurity operations awarenessIncident response basicsCloud security fundamentalsUK GDPR data protectionISO 27001 awarenessNIST CSF 2.0 introductionMITRE ATT&CK introductionSecurity career development

Career Progression

A clear view of the roles this programme supports, what typically comes next, and where learners progress over time

Junior Security AnalystIT Security AdministratorNetwork Security TechnicianCompliance Analyst (Junior)Graduate Security Professional
Flexible Delivery Options

Ways to Learn

Choose the learning format that works best for you and your team

Book Now

Live Online

Instructor-Led Training

Join live instructor-led sessions from anywhere. Interactive, engaging, and flexible.

5 Days
Small cohorts
  • Live instructor interaction (real-time)
  • Trainer-led walkthroughs and real examples
  • Guided resources and session notes provided
  • Structured Q&A and practical discussion

Price per person

$3,745+ VAT

Group enrolments and early planning options available.

All prices are exclusive of VAT where applicable. Group enrolments and custom packages available on request.

Premium Training Option

Prefer a Faster, Personalised Route into IT?

Not everyone learns best in a group. If you want focused guidance, faster clarity, and confidence you can use on the job, our 1-to-1 Fast-Track Training gives you private, mentor-led support tailored to your experience and goals.

Personalised XSEC: Xcademia Security Essentials Practitioner learning plan
Tailored to your pace and goals
Live 1-to-1 sessions
With an experienced mentor
Real-world troubleshooting
Practice, not just exam theory
Flexible scheduling
To fit around work, study, or family

"Many learners choose 1-to-1 when they want understanding, not memorisation."

Exam & Certification Information

Everything you need to know about the certification exams

Xcademia Certification Programme

Xcademia Certification Programme

On successful completion of XSEC: Xcademia Security Essentials Practitioner, learners are assessed on the final day through a supervised practitioner scenario. Three outcomes are possible, Certificate Awarded, Certificate Deferred, or Not Awarded. The Practitioner Assessment Report and certificate are issued together. Verified at xcademia.com/verify.

Certificate Awarded

Assessed competent on the final day.

Certificate Deferred

Resit available on a future cohort.

Not Awarded

Attendance record issued. Reassessment possible.

Frequently Asked Questions

Everything you need to know about this course

XSEC is the entry point to professional cybersecurity. It is designed for IT professionals transitioning into security, helpdesk staff who want to specialise, graduates entering their first security role, and professionals from adjacent technical roles who want to formalise their security knowledge. No prior security experience is required.

Share:

Ready to Start Your Learning Journey?

Take the next step in your professional development

Digital certificate upon completion
Comprehensive course materials
Expert instructor support
Flexible learning options