Cybersecurity, learned like a practitioner.
24 learning paths · 398 modules live · every lesson written by someone who has shipped the control or run the engagement. Free to start.
Latest modules
Most recent practitioner playbooks across every track. Filter by topic, level, or search in the sidebar.
Physical and Environmental Security Programme
Why physical security is a cyber concern — perimeter, building entry, server hall, workstation security, USB controls, red-team physical pen-testing, and integrating physical with cyber programme.
Quantum-Safe Cryptography Readiness
ML-KEM, ML-DSA, SLH-DSA — what NIST PQC standards mean for 2026 organisations, harvest-now-decrypt-later threat, crypto-agility, hybrid TLS, migration roadmap for Indian banks.
Wireless Security and Wi-Fi Attacks — WEP to WPA3, and Why Captive Portals Lie
Wi-Fi has gone through five generations of security: WEP (broken, do not deploy), WPA/WPA2 (still common, still attackable via offline cracking and KRACK), WPA3 (the modern default with SAE replacing PSK), and 802.1X / WPA3-Enterprise for managed environments. This module covers
Social Engineering Defence
Phishing, vishing, smishing, BEC, deepfake voice/video, MFA fatigue — modern social engineering and the layered defence programme: tooling, training, simulation, executive protection.
Security Governance for CISOs
How CISOs build a governance programme that survives both audits and incidents — security committee structure, risk appetite, policy hierarchy, board reporting, KRIs that matter.
Zero Trust Architecture — From VPN to Identity-Aware Access
What Zero Trust actually is, the five CISA pillars, the reference stack for Indian mid-market organisations, and a realistic 12 to 18 month rollout sequence — identity, devices, conditional access, ZTNA, workload identity, data classification.
Security Policy Architecture — A Working Hierarchy
The four-tier policy hierarchy (charter, policies, standards, procedures), the minimum 17-policy set for Indian mid-market organisations, how to write policies people actually follow, exception management, and the realistic review cadence.
Threat Modelling — STRIDE, PASTA, LINDDUN in Practice
Threat modelling methodologies that work — STRIDE, PASTA, attack trees, LINDDUN for privacy. The practical workflow for engineering teams, anti-patterns to avoid, tooling, and DPDP/ISO alignment.
AI Foundations — Tokens, Context & Cost
How LLMs actually work — tokenisation, context windows, embeddings, and the cost economics every Indian practitioner needs to know.
Prompt Engineering for Practitioners
Beyond LinkedIn tips. Structured prompting, few-shot, JSON output, tool use, and how to ship reliable prompts that don't silently regress.
Practitioners who've
shipped the controls.
Every module is written by someone who has built the defence or run the engagement. No repackaged tutorials, no generic theory.
Why learn here
Practitioner-written.
Each lesson is authored by someone who has shipped the control or run the engagement in production.
Quiz after every module.
20+ questions with explanations. 70%+ to mark complete. Unlimited retries.
Progress tracked.
Completions, scores and streaks saved automatically. Resume exactly where you left off.
India-priced.
Start free. ₹499/mo for intermediate. ₹4,999/yr for advanced. No hidden fees, ever.