Cybersecurity, learned like a practitioner.
24 learning paths · 398 modules live · every lesson written by someone who has shipped the control or run the engagement. Free to start.
Latest modules
Most recent practitioner playbooks across every track. Filter by topic, level, or search in the sidebar.
Crisis Communications During an Incident
Why this module exists. The technical incident response succeeds or fails on operations; the public perception of the incident succeeds or fails on communications. The two need parallel investment. The five communication audiences Audience Concern Owner Customers “Am I affected? Should I act?” Communications + Customer Service Regulators Statutory notification + cooperation Legal + CISO […]
Ransomware Recovery — The 2026 Playbook
Why this module exists. Indian ransomware incidents have grown 40-60% year-over-year since 2023. Most affected organisations recover but at substantially higher cost than necessary — because their playbook was generic DR, not ransomware-specific. This module is the specialised version. What makes ransomware recovery different Adversarial. The attacker is still active when recovery begins — observes […]
Backup Strategy — 3-2-1-1-0 and Ransomware-Resilient Architecture
Why this module exists. A backup that fails to restore is worse than no backup — it costs effort to maintain and provides false assurance. This module covers what to back up, how to store it so attackers cannot destroy it, and how to verify it works. The 3-2-1 rule — the baseline The classic […]
Recovery Testing — Tabletop, Functional, Full Failover
Why this module exists. Indian enterprises that test their DR architecture annually consistently outperform those that test it on the day of incident. The difference is operational muscle memory. This module covers building it. The four testing tiers Tier Disruption What it tests Tabletop None Plan logic, role clarity, decision-making Walk-through None Detailed step verification […]
Business Impact Analysis — Deriving RTO and RPO
Why this module exists. BIA produces the answer to the most important BCDR question: “what does it cost the business if this system is down?” Without that answer, you cannot prioritise recovery, size investments, or set recovery objectives. This module is the BIA practitioner workflow. What BIA produces For each business function and supporting IT […]
Secure Destruction of Media and Hardware
Why this module exists. The data that you forgot was there is the data that becomes a breach. Every device that has ever held sensitive data is a potential exposure when retired. This module covers what to destroy, how, and how to prove it was done. The destruction-standard landscape NIST SP 800-88 Rev. 1 — […]
Environmental Controls — Power, HVAC, Fire Suppression
Why this module exists. The most-common Indian data-centre incident is not a cyber attack — it is an HVAC failure during summer, a UPS battery degradation, or a fire-suppression false trigger. Environmental controls are the practitioner’s lower-glamour, higher-frequency reality. Power — the foundation Layer Purpose Failure modes Utility power (grid) Primary supply Grid outages, surges, […]
Surveillance, Visitor Management, and Physical Incident Response
Why this module exists. Most Indian enterprises have CCTV; few have CCTV that catches anything before-the-fact. The difference is in coverage planning, retention discipline, and integration with the SOC. This module covers what works. CCTV coverage — where to place cameras The principle: cover every transition between zones and every high-value asset. Practitioner placement list: […]
Data Centre Physical Security — Tier Standards, Cages, NCIIPC
Why this module exists. Whether you operate your own data centre or rent rack space, understanding data-centre security standards is the prerequisite to evaluating whether a facility actually protects your equipment. This module is the framework. The Uptime Institute Tier classification Tier Uptime guarantee Redundancy Tier I 99.671% (28.8h downtime/yr) No redundancy Tier II 99.741% […]
Access Control Systems — Cards, Biometrics, PINs
Why this module exists. The badge that lets your employee into the building is often the only thing between an attacker and a network port in the lobby. The technology choice and operational discipline of access control determines whether the building is a perimeter or a suggestion. The card-technology generations Technology Cloneability Recommendation Magstripe Trivial […]
Practitioners who've
shipped the controls.
Every module is written by someone who has built the defence or run the engagement. No repackaged tutorials, no generic theory.
Why learn here
Practitioner-written.
Each lesson is authored by someone who has shipped the control or run the engagement in production.
Quiz after every module.
20+ questions with explanations. 70%+ to mark complete. Unlimited retries.
Progress tracked.
Completions, scores and streaks saved automatically. Resume exactly where you left off.
India-priced.
Start free. ₹499/mo for intermediate. ₹4,999/yr for advanced. No hidden fees, ever.