Plans, implements, and operates network services/systems, to include hardware and virtual environments.
*Certification Declaration
Certification Declaration
Each certification is mapped to the NICE Framework, which organizes cybersecurity into seven high-level Categories, each comprised of several specialty areas, work roles, knowledge, skills, abilities, and tasks. These seven high-level Categories are aligned directly to the CCE® Program’s certification Concentration Areas. Candidates often prepare for an exam by using a variety of resources that familiarize them with the authoritative sources and the exam’s concentration area.
Third-party products and services, including course instructors have helped many candidates to close knowledge and skill gaps. The CCE® Program does not endorse any particular provider and encourages candidates to use a variety of tools and resources that will enhance their understanding of relevant principles and the exam’s concentration area.
NICE Framework Category
CCE® Concentration Area:
Operate and Maintain (OM)
NICE Specialty Area:
Network Services (NET)
NICE Work Role ID:
OM-NET-001
OPM Code | DCWF Code:
441
Network and Packet Analysis (OM207)
Network Operations Specialist (OM105-RBT)
System Exploits and Intrusion Detection (AN211)
KSA-T
Below are the Knowledge, Skills, Abilities and Tasks (KSA-T) identified as being required to perform this work role.
ID & Description
- K0001 – Knowledge of computer networking concepts and protocols, and network security methodologies.
- K0002 – Knowledge of risk management processes (e.g., methods for assessing and mitigating risk).
- K0003 – Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy.
- K0004 – Knowledge of cybersecurity and privacy principles.
- K0005 – Knowledge of cyber threats and vulnerabilities.
- K0006 – Knowledge of specific operational impacts of cybersecurity lapses.
- K0010 – Knowledge of communication methods, principles, and concepts that support the network infrastructure.
- K0011 – Knowledge of capabilities and applications of network equipment including routers, switches, bridges, servers, transmission media, and related hardware.
- K0029 – Knowledge of organization’s Local and Wide Area Network connections.
- K0038 – Knowledge of cybersecurity and privacy principles used to manage risks related to the use, processing, storage, and transmission of information or data.
- K0049 – Knowledge of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption).
- K0050 – Knowledge of local area and wide area networking principles and concepts including bandwidth management.
- K0053 – Knowledge of measures or indicators of system performance and availability.
- K0061 – Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).
- K0071 – Knowledge of remote access technology concepts.
- K0076 – Knowledge of server administration and systems engineering theories, concepts, and methods.
- K0093 – Knowledge of telecommunications concepts (e.g., Communications channel, Systems Link Budgeting, Spectral efficiency, Multiplexing).
- K0104 – Knowledge of Virtual Private Network (VPN) security.
- K0108 – Knowledge of concepts, terminology, and operations of a wide range of communications media (computer and telephone networks, satellite, fiber, wireless).
- K0111 – Knowledge of network tools (e.g., ping, traceroute, nslookup)
- K0113 – Knowledge of different types of network communication (e.g., LAN, WAN, MAN, WLAN, WWAN).
- K0135 – Knowledge of web filtering technologies.
- K0136 – Knowledge of the capabilities of different electronic communication systems and methods (e.g., e-mail, VOIP, IM, web forums, Direct Video Broadcasts).
- K0137 – Knowledge of the range of existing networks (e.g., PBX, LANs, WANs, WIFI, SCADA).
- K0138 – Knowledge of Wi-Fi.
- K0159 – Knowledge of Voice over IP (VoIP).
- K0160 – Knowledge of the common attack vectors on the network layer.
- K0179 – Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
- K0180 – Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.
- K0180 – Knowledge of service management concepts for networks and related standards (e.g., Information Technology Infrastructure Library, current version [ITIL]).
- K0200 – Knowledge of service management concepts for networks and related standards (e.g., Information Technology Infrastructure Library, current version [ITIL]).
- K0201 – Knowledge of symmetric key rotation techniques and concepts.
- K0203 – Knowledge of security models (e.g., Bell-LaPadula model, Biba integrity model, Clark-Wilson integrity model).
- K0260 – Knowledge of Personally Identifiable Information (PII) data security standards.
- K0261 – Knowledge of Payment Card Industry (PCI) data security standards.
- K0262 – Knowledge of Personal Health Information (PHI) data security standards.
- K0274 – Knowledge of transmission records (e.g., Bluetooth, Radio Frequency Identification (RFID), Infrared Networking (IR), Wireless Fidelity (Wi-Fi). paging, cellular, satellite dishes, Voice over Internet Protocol (VoIP)), and jamming techniques that enable transmission of undesirable information, or prevent installed systems from operating correctly.
- K0287 – Knowledge of an organization’s information classification program and procedures for information compromise.
- K0332 – Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services.
- K0622 – Knowledge of controls related to the use, processing, storage, and transmission of data.
ID & Description
- S0004 – Skill in analyzing network traffic capacity and performance characteristics.
- S0035 – Skill in establishing a routing schema.
- S0040 – Skill in implementing, maintaining, and improving established network security practices.
- S0041 – Skill in installing, configuring, and troubleshooting LAN and WAN components such as routers, hubs, and switches.
- S0056 – Skill in using network management tools to analyze network traffic patterns (e.g., simple network management protocol).
- S0077 – Skill in securing network communications.
- S0079 – Skill in protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters).
- S0084 – Skill in configuring and utilizing network protection components (e.g., Firewalls, VPNs, network intrusion detection systems).
- S0150 – Skill in implementing and testing network infrastructure contingency and recovery plans.
- S0162 – Skill in applying various subnet techniques (e.g., CIDR)
- S0170 – Skill in configuring and utilizing computer protection components (e.g., hardware firewalls, servers, routers, as appropriate).
ID & Description
- A0052 – Ability to operate network equipment including hubs, routers, switches, bridges, servers, transmission media, and related hardware.
- A0055 – Ability to operate common network tools (e.g., ping, traceroute, nslookup).
- A0058 – Ability to execute OS command line (e.g., ipconfig, netstat, dir, nbtstat).
- A0059 – Ability to operate the organization’s LAN/WAN pathways.
- A0062 – Ability to monitor measures or indicators of system performance and availability.
- A0063 – Ability to operate different electronic communication systems and methods (e.g., e-mail, VOIP, IM, web forums, Direct Video Broadcasts).
- A0065 – Ability to monitor traffic flows across the network.
- A0159 – Ability to interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute).
ID & Description
- T0035 – Configure and optimize network hubs, routers, and switches (e.g., higher-level protocols, tunneling).
- T0065 – Develop and implement network backup and recovery procedures.
- T0081 – Diagnose network connectivity problem.
- T0121 – Implement new system design procedures, test procedures, and quality standards.
- T0125 – Install and maintain network infrastructure device operating system software (e.g., IOS, firmware).
- T0126 – Install or replace network hubs, routers, and switches.
- T0129 – Integrate new systems into existing network architecture.
- T0153 – Monitor network capacity and performance.
- T0160 – Patch network vulnerabilities to ensure that information is safeguarded against outside parties.
- T0200 – Provide feedback on network requirements, including network architecture and infrastructure.
- T0232 – Test and maintain network infrastructure including software and hardware devices.
- Knowledge
-
ID & Description
- K0001 – Knowledge of computer networking concepts and protocols, and network security methodologies.
- K0002 – Knowledge of risk management processes (e.g., methods for assessing and mitigating risk).
- K0003 – Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy.
- K0004 – Knowledge of cybersecurity and privacy principles.
- K0005 – Knowledge of cyber threats and vulnerabilities.
- K0006 – Knowledge of specific operational impacts of cybersecurity lapses.
- K0010 – Knowledge of communication methods, principles, and concepts that support the network infrastructure.
- K0011 – Knowledge of capabilities and applications of network equipment including routers, switches, bridges, servers, transmission media, and related hardware.
- K0029 – Knowledge of organization’s Local and Wide Area Network connections.
- K0038 – Knowledge of cybersecurity and privacy principles used to manage risks related to the use, processing, storage, and transmission of information or data.
- K0049 – Knowledge of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption).
- K0050 – Knowledge of local area and wide area networking principles and concepts including bandwidth management.
- K0053 – Knowledge of measures or indicators of system performance and availability.
- K0061 – Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).
- K0071 – Knowledge of remote access technology concepts.
- K0076 – Knowledge of server administration and systems engineering theories, concepts, and methods.
- K0093 – Knowledge of telecommunications concepts (e.g., Communications channel, Systems Link Budgeting, Spectral efficiency, Multiplexing).
- K0104 – Knowledge of Virtual Private Network (VPN) security.
- K0108 – Knowledge of concepts, terminology, and operations of a wide range of communications media (computer and telephone networks, satellite, fiber, wireless).
- K0111 – Knowledge of network tools (e.g., ping, traceroute, nslookup)
- K0113 – Knowledge of different types of network communication (e.g., LAN, WAN, MAN, WLAN, WWAN).
- K0135 – Knowledge of web filtering technologies.
- K0136 – Knowledge of the capabilities of different electronic communication systems and methods (e.g., e-mail, VOIP, IM, web forums, Direct Video Broadcasts).
- K0137 – Knowledge of the range of existing networks (e.g., PBX, LANs, WANs, WIFI, SCADA).
- K0138 – Knowledge of Wi-Fi.
- K0159 – Knowledge of Voice over IP (VoIP).
- K0160 – Knowledge of the common attack vectors on the network layer.
- K0179 – Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
- K0180 – Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.
- K0180 – Knowledge of service management concepts for networks and related standards (e.g., Information Technology Infrastructure Library, current version [ITIL]).
- K0200 – Knowledge of service management concepts for networks and related standards (e.g., Information Technology Infrastructure Library, current version [ITIL]).
- K0201 – Knowledge of symmetric key rotation techniques and concepts.
- K0203 – Knowledge of security models (e.g., Bell-LaPadula model, Biba integrity model, Clark-Wilson integrity model).
- K0260 – Knowledge of Personally Identifiable Information (PII) data security standards.
- K0261 – Knowledge of Payment Card Industry (PCI) data security standards.
- K0262 – Knowledge of Personal Health Information (PHI) data security standards.
- K0274 – Knowledge of transmission records (e.g., Bluetooth, Radio Frequency Identification (RFID), Infrared Networking (IR), Wireless Fidelity (Wi-Fi). paging, cellular, satellite dishes, Voice over Internet Protocol (VoIP)), and jamming techniques that enable transmission of undesirable information, or prevent installed systems from operating correctly.
- K0287 – Knowledge of an organization’s information classification program and procedures for information compromise.
- K0332 – Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services.
- K0622 – Knowledge of controls related to the use, processing, storage, and transmission of data.
- Skills
-
ID & Description
- S0004 – Skill in analyzing network traffic capacity and performance characteristics.
- S0035 – Skill in establishing a routing schema.
- S0040 – Skill in implementing, maintaining, and improving established network security practices.
- S0041 – Skill in installing, configuring, and troubleshooting LAN and WAN components such as routers, hubs, and switches.
- S0056 – Skill in using network management tools to analyze network traffic patterns (e.g., simple network management protocol).
- S0077 – Skill in securing network communications.
- S0079 – Skill in protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters).
- S0084 – Skill in configuring and utilizing network protection components (e.g., Firewalls, VPNs, network intrusion detection systems).
- S0150 – Skill in implementing and testing network infrastructure contingency and recovery plans.
- S0162 – Skill in applying various subnet techniques (e.g., CIDR)
- S0170 – Skill in configuring and utilizing computer protection components (e.g., hardware firewalls, servers, routers, as appropriate).
- Abilities
-
ID & Description
- A0052 – Ability to operate network equipment including hubs, routers, switches, bridges, servers, transmission media, and related hardware.
- A0055 – Ability to operate common network tools (e.g., ping, traceroute, nslookup).
- A0058 – Ability to execute OS command line (e.g., ipconfig, netstat, dir, nbtstat).
- A0059 – Ability to operate the organization’s LAN/WAN pathways.
- A0062 – Ability to monitor measures or indicators of system performance and availability.
- A0063 – Ability to operate different electronic communication systems and methods (e.g., e-mail, VOIP, IM, web forums, Direct Video Broadcasts).
- A0065 – Ability to monitor traffic flows across the network.
- A0159 – Ability to interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute).
- Tasks
-
ID & Description
- T0035 – Configure and optimize network hubs, routers, and switches (e.g., higher-level protocols, tunneling).
- T0065 – Develop and implement network backup and recovery procedures.
- T0081 – Diagnose network connectivity problem.
- T0121 – Implement new system design procedures, test procedures, and quality standards.
- T0125 – Install and maintain network infrastructure device operating system software (e.g., IOS, firmware).
- T0126 – Install or replace network hubs, routers, and switches.
- T0129 – Integrate new systems into existing network architecture.
- T0153 – Monitor network capacity and performance.
- T0160 – Patch network vulnerabilities to ensure that information is safeguarded against outside parties.
- T0200 – Provide feedback on network requirements, including network architecture and infrastructure.
- T0232 – Test and maintain network infrastructure including software and hardware devices.