Skip to content
Oluma Cyber Security Awareness
OLUMA CERTIFICATION ZONE

Your path tocybersecurity certification.

Explore cybersecurity certifications by career path, technology, specialization, provider, and professional level. Expand any card to see its objectives, then head straight to the official exam page to prepare.

91Certification tracks
15Career categories
5Skill levels
Filter by level
01

Cybersecurity Fundamentals

Build the foundational knowledge required to enter cybersecurity and understand core IT and security concepts.

Oluma

IT Fundamentals

Beginner Oluma Track
Overview

Introduces fundamental IT concepts, computing, networking, operating systems, security terminology, and the technology foundations needed before specializing in cybersecurity.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Fundamental IT concepts
  • Computing
  • Networking
  • Operating systems
  • Security terminology
  • The technology foundations needed before specializing in cybersecurity
Open the IT Fundamentals track →
CompTIA

CompTIA Network+

Associate Official Cert
Overview

Covers networking concepts, infrastructure, operations, troubleshooting, security, wireless technologies, cloud networking, and network architecture.

Official Exam Page
Exam objectives

Core objective areas for CompTIA Network+:

  • Networking concepts
  • Infrastructure
  • Operations
  • Troubleshooting
  • Security
  • Wireless technologies
  • Cloud networking
  • Network architecture

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
CompTIA

CompTIA Security+

Associate Official Cert
Overview

Covers core security principles, threats, vulnerabilities, identity, access management, cryptography, security operations, risk, and incident response.

Official Exam Page
Exam objectives

Core objective areas for CompTIA Security+:

  • Core security principles
  • Threats
  • Vulnerabilities
  • Identity
  • Access management
  • Cryptography
  • Security operations
  • Risk
  • Incident response

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
CompTIA

CompTIA CySA+

Professional Official Cert
Overview

Focuses on security analytics, threat detection, vulnerability management, incident response, security monitoring, and behavioral analysis.

Official Exam Page
Exam objectives

Core objective areas for CompTIA CySA+:

  • Security analytics
  • Threat detection
  • Vulnerability management
  • Incident response
  • Security monitoring
  • Behavioral analysis

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
CompTIA

CompTIA PenTest+

Professional Official Cert
Overview

Covers penetration testing planning, reconnaissance, vulnerability discovery, exploitation, reporting, and remediation.

Official Exam Page
Exam objectives

Core objective areas for CompTIA PenTest+:

  • Penetration testing planning
  • Reconnaissance
  • Vulnerability discovery
  • Exploitation
  • Reporting
  • Remediation

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
ISC2

Certified in Cybersecurity (CC)

Beginner Official Cert
Overview

Introduces security principles, business continuity, disaster recovery, incident response, access controls, network security, and security operations.

Official Exam Page
Exam objectives

Core objective areas for Certified in Cybersecurity (CC):

  • Security principles
  • Business continuity
  • Disaster recovery
  • Incident response
  • Access controls
  • Network security
  • Security operations

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
ISC2

CISSP

Expert Official Cert
Overview

Advanced cybersecurity credential covering security and risk management, asset security, architecture, communications, IAM, assessment, operations, and software security.

Official Exam Page
Exam objectives

Core objective areas for CISSP:

  • Advanced cybersecurity credential covering security and risk management
  • Asset security
  • Architecture
  • Communications
  • IAM
  • Assessment
  • Operations
  • Software security

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
ISC2

SSCP

Professional Official Cert
Overview

Focuses on operational security, access controls, risk identification, incident response, network security, cryptography, and systems security.

Official Exam Page
Exam objectives

Core objective areas for SSCP:

  • Operational security
  • Access controls
  • Risk identification
  • Incident response
  • Network security
  • Cryptography
  • Systems security

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
02

Governance, Risk & Compliance

Develop the ability to identify risk, manage controls, support compliance, and align security with business objectives.

Oluma

IT Risk Fundamentals

Beginner Oluma Track
Overview

Introduces IT risk concepts, risk identification, assessment, treatment, monitoring, risk ownership, and the relationship between business and technology risk.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • IT risk concepts
  • Risk identification
  • Assessment
  • Treatment
  • Monitoring
  • Risk ownership
  • The relationship between business and technology risk
Open the IT Risk Fundamentals track →
Oluma

Certified in GRC

Professional Oluma Track
Overview

Provides practical grounding in governance, risk management, compliance programs, controls, policies, frameworks, and security assurance.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Governance
  • Risk management
  • Compliance programs
  • Controls
  • Policies
  • Frameworks
  • Security assurance
Open the Certified in GRC track →
Oluma

NIST Fundamentals

Beginner Oluma Track
Overview

Introduces the NIST cybersecurity framework, risk management concepts, cybersecurity functions, controls, and practical framework application.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • The NIST cybersecurity framework
  • Risk management concepts
  • Cybersecurity functions
  • Controls
  • Practical framework application
Open the NIST Fundamentals track →
Oluma

ISO 27001 Fundamentals

Beginner Oluma Track
Overview

Introduces ISO/IEC 27001, information security management systems, risk assessment, controls, governance, and continual improvement.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • ISO/IEC 27001
  • Information security management systems
  • Risk assessment
  • Controls
  • Governance
  • Continual improvement
Open the ISO 27001 Fundamentals track →
PECB / ISO

ISO 27001 Lead Implementer

Advanced Official Cert
Overview

Focuses on planning, implementing, maintaining, and improving an ISO 27001 information security management system.

Official Exam Page
Exam objectives

Core objective areas for ISO 27001 Lead Implementer:

  • Planning
  • Implementing
  • Maintaining
  • Improving an ISO 27001 information security management system

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
PECB / ISO

ISO 27001 Lead Auditor

Advanced Official Cert
Overview

Develops skills for planning, conducting, reporting, and following up on information security management system audits.

Official Exam Page
Exam objectives

Core objective areas for ISO 27001 Lead Auditor:

  • Planning
  • Conducting
  • Reporting
  • Following up on information security management system audits

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
ISC2

ISC2 CGRC

Professional Official Cert
Overview

Covers governance, risk, compliance, security controls, assessment, authorization, and risk management practices.

Official Exam Page
Exam objectives

Core objective areas for ISC2 CGRC:

  • Governance
  • Risk
  • Compliance
  • Security controls
  • Assessment
  • Authorization
  • Risk management practices

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
ISACA

CRISC

Professional Official Cert
Overview

Focuses on IT risk identification, assessment, response, mitigation, risk monitoring, and information systems controls.

Official Exam Page
Exam objectives

Core objective areas for CRISC:

  • IT risk identification
  • Assessment
  • Response
  • Mitigation
  • Risk monitoring
  • Information systems controls

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
ISACA

CISM

Professional Official Cert
Overview

Covers information security governance, risk management, security program development, and incident management.

Official Exam Page
Exam objectives

Core objective areas for CISM:

  • Information security governance
  • Risk management
  • Security program development
  • Incident management

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
ISACA

CGEIT

Advanced Official Cert
Overview

Focuses on governance of enterprise IT, strategic alignment, benefits realization, risk optimization, and resource optimization.

Official Exam Page
Exam objectives

Core objective areas for CGEIT:

  • Governance of enterprise IT
  • Strategic alignment
  • Benefits realization
  • Risk optimization
  • Resource optimization

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
03

IT Audit & Assurance

Build expertise in IT controls, assurance, audit planning, evidence, testing, and third-party oversight.

ISACA

CISA

Professional Official Cert
Overview

Covers information systems auditing, governance, development, operations, protection of information assets, and audit process management.

Official Exam Page
Exam objectives

Core objective areas for CISA:

  • Information systems auditing
  • Governance
  • Development
  • Operations
  • Protection of information assets
  • Audit process management

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Oluma

IT Audit Fundamentals

Beginner Oluma Track
Overview

Introduces audit planning, evidence collection, control testing, findings, audit reports, and fundamental IT assurance concepts.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Audit planning
  • Evidence collection
  • Control testing
  • Findings
  • Audit reports
  • Fundamental IT assurance concepts
Open the IT Audit Fundamentals track →
Oluma

IT Controls Fundamentals

Beginner Oluma Track
Overview

Explores IT general controls, application controls, access controls, change management, operations controls, and control testing.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • IT general controls
  • Application controls
  • Access controls
  • Change management
  • Operations controls
  • Control testing
Open the IT Controls Fundamentals track →
Oluma

SOC 2 Fundamentals

Beginner Oluma Track
Overview

Introduces SOC 2, Trust Services Criteria, controls, evidence, readiness, audits, and service organization assurance.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • SOC 2
  • Trust Services Criteria
  • Controls
  • Evidence
  • Readiness
  • Audits
  • Service organization assurance
Open the SOC 2 Fundamentals track →
Oluma

Third-Party Risk Management

Professional Oluma Track
Overview

Covers vendor risk identification, due diligence, assessments, contractual controls, monitoring, remediation, and third-party lifecycle management.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Vendor risk identification
  • Due diligence
  • Assessments
  • Contractual controls
  • Monitoring
  • Remediation
  • Third-party lifecycle management
Open the Third-Party Risk Management track →
04

Cloud Security

Develop cloud architecture, administration, security, identity, compliance, and cloud engineering capabilities.

Oluma

Cloud Fundamentals

Beginner Oluma Track
Overview

Introduces cloud computing models, infrastructure, services, identity, security, shared responsibility, and major cloud platforms.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Cloud computing models
  • Infrastructure
  • Services
  • Identity
  • Security
  • Shared responsibility
  • Major cloud platforms
Open the Cloud Fundamentals track →
Microsoft

Azure Fundamentals (AZ-900)

Beginner Official Cert
Overview

Covers fundamental cloud concepts, Azure services, architecture, management, security, governance, and pricing.

Official Exam Page
Exam objectives

Core objective areas for Azure Fundamentals (AZ-900):

  • Fundamental cloud concepts
  • Azure services
  • Architecture
  • Management
  • Security
  • Governance
  • Pricing

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Microsoft

Azure Administrator (AZ-104)

Associate Official Cert
Overview

Focuses on Azure identity, storage, compute, networking, monitoring, governance, and administration.

Official Exam Page
Exam objectives

Core objective areas for Azure Administrator (AZ-104):

  • Azure identity
  • Storage
  • Compute
  • Networking
  • Monitoring
  • Governance
  • Administration

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Microsoft

Azure Security Engineer (AZ-500)

Associate Official Cert
Overview

Covers Azure security controls, identity, platform protection, data security, security operations, and infrastructure security.

Official Exam Page
Exam objectives

Core objective areas for Azure Security Engineer (AZ-500):

  • Azure security controls
  • Identity
  • Platform protection
  • Data security
  • Security operations
  • Infrastructure security

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Microsoft

Microsoft Cybersecurity Architect (SC-100)

Advanced Official Cert
Overview

Focuses on designing cybersecurity strategies, Zero Trust, security operations, infrastructure security, data security, and identity architecture.

Official Exam Page
Exam objectives

Core objective areas for Microsoft Cybersecurity Architect (SC-100):

  • Designing cybersecurity strategies
  • Zero Trust
  • Security operations
  • Infrastructure security
  • Data security
  • Identity architecture

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
AWS

AWS Cloud Practitioner

Beginner Official Cert
Overview

Introduces AWS cloud concepts, core services, security, architecture, pricing, billing, and cloud economics.

Official Exam Page
Exam objectives

Core objective areas for AWS Cloud Practitioner:

  • AWS cloud concepts
  • Core services
  • Security
  • Architecture
  • Pricing
  • Billing
  • Cloud economics

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
AWS

AWS Security Specialty

Professional Official Cert
Overview

Focuses on AWS security controls, identity, data protection, infrastructure security, logging, monitoring, and incident response.

Official Exam Page
Exam objectives

Core objective areas for AWS Security Specialty:

  • AWS security controls
  • Identity
  • Data protection
  • Infrastructure security
  • Logging
  • Monitoring
  • Incident response

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
AWS

AWS Solutions Architect – Associate

Associate Official Cert
Overview

Covers designing secure, resilient, high-performing, and cost-optimized AWS architectures.

Official Exam Page
Exam objectives

Core objective areas for AWS Solutions Architect – Associate:

  • Designing secure
  • Resilient
  • High-performing
  • Cost-optimized AWS architectures

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
ISC2

CCSP

Professional Official Cert
Overview

Covers cloud concepts, architecture, data security, platform security, application security, operations, and legal and compliance requirements.

Official Exam Page
Exam objectives

Core objective areas for CCSP:

  • Cloud concepts
  • Architecture
  • Data security
  • Platform security
  • Application security
  • Operations
  • Legal and compliance requirements

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Google Cloud

Google Professional Cloud Security Engineer

Professional Official Cert
Overview

Focuses on securing Google Cloud environments, identity, data protection, network security, monitoring, compliance, and incident response.

Official Exam Page
Exam objectives

Core objective areas for Google Professional Cloud Security Engineer:

  • Securing Google Cloud environments
  • Identity
  • Data protection
  • Network security
  • Monitoring
  • Compliance
  • Incident response

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
05

Microsoft Security

Build specialized skills across Microsoft security, identity, security operations, compliance, and Azure security.

Microsoft

Microsoft Security Fundamentals (SC-900)

Beginner Official Cert
Overview

Introduces Microsoft security, compliance, identity concepts, Zero Trust, Microsoft Entra, Defender, and Purview.

Official Exam Page
Exam objectives

Core objective areas for Microsoft Security Fundamentals (SC-900):

  • Microsoft security
  • Compliance
  • Identity concepts
  • Zero Trust
  • Microsoft Entra
  • Defender
  • Purview

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Microsoft

Security Operations Analyst (SC-200)

Associate Official Cert
Overview

Covers threat investigation, Microsoft Sentinel, Defender, incident response, threat hunting, detection, and security operations.

Official Exam Page
Exam objectives

Core objective areas for Security Operations Analyst (SC-200):

  • Threat investigation
  • Microsoft Sentinel
  • Defender
  • Incident response
  • Threat hunting
  • Detection
  • Security operations

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Microsoft

Identity & Access Administrator (SC-300)

Associate Official Cert
Overview

Focuses on Microsoft Entra identity, authentication, authorization, identity governance, access management, and privileged identity.

Official Exam Page
Exam objectives

Core objective areas for Identity & Access Administrator (SC-300):

  • Microsoft Entra identity
  • Authentication
  • Authorization
  • Identity governance
  • Access management
  • Privileged identity

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Microsoft

Information Security Administrator (SC-401)

Associate Official Cert
Overview

Covers information protection, data loss prevention, retention, insider risk, compliance, and Microsoft Purview capabilities.

Official Exam Page
Exam objectives

Core objective areas for Information Security Administrator (SC-401):

  • Information protection
  • Data loss prevention
  • Retention
  • Insider risk
  • Compliance
  • Microsoft Purview capabilities

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
06

SOC & Blue Team

Develop defensive security capabilities including monitoring, detection, threat hunting, SIEM, and security operations.

Oluma

Security Operations Fundamentals

Beginner Oluma Track
Overview

Introduces SOC operations, security monitoring, alerts, triage, escalation, analyst workflows, and defensive security practices.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • SOC operations
  • Security monitoring
  • Alerts
  • Triage
  • Escalation
  • Analyst workflows
  • Defensive security practices
Open the Security Operations Fundamentals track →
Oluma

Incident Response Fundamentals

Beginner Oluma Track
Overview

Covers incident response lifecycle, preparation, detection, analysis, containment, eradication, recovery, and lessons learned.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Incident response lifecycle
  • Preparation
  • Detection
  • Analysis
  • Containment
  • Eradication
  • Recovery
  • Lessons learned
Open the Incident Response Fundamentals track →
Oluma

Threat Hunting Fundamentals

Professional Oluma Track
Overview

Introduces proactive threat hunting, hypotheses, indicators, telemetry, behavioral analysis, and investigation techniques.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Proactive threat hunting
  • Hypotheses
  • Indicators
  • Telemetry
  • Behavioral analysis
  • Investigation techniques
Open the Threat Hunting Fundamentals track →
Oluma

Security Monitoring Fundamentals

Beginner Oluma Track
Overview

Covers monitoring concepts, logs, events, alerts, telemetry, dashboards, detection signals, and security monitoring workflows.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Monitoring concepts
  • Logs
  • Events
  • Alerts
  • Telemetry
  • Dashboards
  • Detection signals
  • Security monitoring workflows
Open the Security Monitoring Fundamentals track →
Oluma

SIEM Fundamentals

Beginner Oluma Track
Overview

Introduces SIEM architecture, log collection, normalization, correlation, alerting, dashboards, investigations, and detection use cases.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • SIEM architecture
  • Log collection
  • Normalization
  • Correlation
  • Alerting
  • Dashboards
  • Investigations
  • Detection use cases
Open the SIEM Fundamentals track →
Oluma

Detection Engineering

Advanced Oluma Track
Overview

Focuses on building, testing, tuning, and maintaining detections using security telemetry, threat intelligence, and adversary behavior.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Building
  • Testing
  • Tuning
  • Maintaining detections using security telemetry
  • Threat intelligence
  • Adversary behavior
Open the Detection Engineering track →
GIAC / SANS

GIAC GCIH

Professional Official Cert
Overview

Focuses on incident handling, attacker techniques, network attacks, malware, response, and defensive countermeasures.

Official Exam Page
Exam objectives

Core objective areas for GIAC GCIH:

  • Incident handling
  • Attacker techniques
  • Network attacks
  • Malware
  • Response
  • Defensive countermeasures

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GSEC

Professional Official Cert
Overview

Covers practical information security concepts including network security, access controls, incident response, cryptography, and defensive techniques.

Official Exam Page
Exam objectives

Core objective areas for GIAC GSEC:

  • Practical information security concepts including network security
  • Access controls
  • Incident response
  • Cryptography
  • Defensive techniques

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GCIA

Advanced Official Cert
Overview

Focuses on network traffic analysis, intrusion detection, network protocols, packet analysis, and network-based threats.

Official Exam Page
Exam objectives

Core objective areas for GIAC GCIA:

  • Network traffic analysis
  • Intrusion detection
  • Network protocols
  • Packet analysis
  • Network-based threats

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
07

Incident Response & Digital Forensics

Develop investigation, evidence handling, incident response, forensic analysis, and technical investigation capabilities.

Oluma

Digital Forensics Fundamentals

Beginner Oluma Track
Overview

Introduces digital evidence, forensic acquisition, analysis, preservation, chain of custody, investigations, and forensic reporting.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Digital evidence
  • Forensic acquisition
  • Analysis
  • Preservation
  • Chain of custody
  • Investigations
  • Forensic reporting
Open the Digital Forensics Fundamentals track →
GIAC / SANS

GIAC Certified Incident Handler (GCIH)

Professional Official Cert
Overview

Develops practical skills in incident handling, attack detection, containment, eradication, recovery, and attacker techniques.

Official Exam Page
Exam objectives

Core objective areas for GIAC Certified Incident Handler (GCIH):

  • Incident handling
  • Attack detection
  • Containment
  • Eradication
  • Recovery
  • Attacker techniques

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC Certified Forensic Examiner (GCFE)

Advanced Official Cert
Overview

Focuses on computer forensic analysis, Windows artifacts, evidence collection, investigations, browser artifacts, and forensic reporting.

Official Exam Page
Exam objectives

Core objective areas for GIAC Certified Forensic Examiner (GCFE):

  • Computer forensic analysis
  • Windows artifacts
  • Evidence collection
  • Investigations
  • Browser artifacts
  • Forensic reporting

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC Certified Forensic Analyst (GCFA)

Advanced Official Cert
Overview

Advanced forensic investigation covering memory analysis, incident response, timeline analysis, malware artifacts, and threat hunting.

Official Exam Page
Exam objectives

Core objective areas for GIAC Certified Forensic Analyst (GCFA):

  • Advanced forensic investigation covering memory analysis
  • Incident response
  • Timeline analysis
  • Malware artifacts
  • Threat hunting

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
08

Network & Network Security

Build networking and network-defense skills required for infrastructure, security operations, and security engineering.

Cisco

Cisco CCNA

Associate Official Cert
Overview

Covers networking fundamentals, IP connectivity, network access, IP services, security fundamentals, and automation.

Official Exam Page
Exam objectives

Core objective areas for Cisco CCNA:

  • Networking fundamentals
  • IP connectivity
  • Network access
  • IP services
  • Security fundamentals
  • Automation

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Cisco

Cisco CCNA Cybersecurity

Associate Official Cert
Overview

Develops cybersecurity concepts related to network protection, security operations, threat detection, and defensive technologies.

Official Exam Page
Exam objectives

Core objective areas for Cisco CCNA Cybersecurity:

  • Cybersecurity concepts related to network protection
  • Security operations
  • Threat detection
  • Defensive technologies

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GCIA

Advanced Official Cert
Overview

Covers network traffic analysis, intrusion detection, packet analysis, network protocols, and identifying malicious network activity.

Official Exam Page
Exam objectives

Core objective areas for GIAC GCIA:

  • Network traffic analysis
  • Intrusion detection
  • Packet analysis
  • Network protocols
  • Identifying malicious network activity

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Oluma

Network Security Fundamentals

Beginner Oluma Track
Overview

Introduces network threats, segmentation, firewalls, secure protocols, network monitoring, IDS/IPS, and defensive architecture.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Network threats
  • Segmentation
  • Firewalls
  • Secure protocols
  • Network monitoring
  • IDS/IPS
  • Defensive architecture
Open the Network Security Fundamentals track →
09

Penetration Testing & Ethical Hacking

Develop offensive security skills covering reconnaissance, vulnerability discovery, exploitation, testing, and reporting.

CompTIA

CompTIA PenTest+

Professional Official Cert
Overview

Covers penetration testing planning, reconnaissance, vulnerability assessment, exploitation, reporting, and remediation.

Official Exam Page
Exam objectives

Core objective areas for CompTIA PenTest+:

  • Penetration testing planning
  • Reconnaissance
  • Vulnerability assessment
  • Exploitation
  • Reporting
  • Remediation

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
EC-Council

Certified Ethical Hacker (CEH)

Professional Official Cert
Overview

Covers ethical hacking methodology, reconnaissance, scanning, vulnerability analysis, system hacking, web attacks, wireless security, and countermeasures.

Official Exam Page
Exam objectives

Core objective areas for Certified Ethical Hacker (CEH):

  • Ethical hacking methodology
  • Reconnaissance
  • Scanning
  • Vulnerability analysis
  • System hacking
  • Web attacks
  • Wireless security
  • Countermeasures

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
EC-Council

CEH Practical

Advanced Official Cert
Overview

Hands-on ethical hacking assessment involving network scanning, vulnerability discovery, exploitation, web application testing, and reporting.

Official Exam Page
Exam objectives

Core objective areas for CEH Practical:

  • Hands-on ethical hacking assessment involving network scanning
  • Vulnerability discovery
  • Exploitation
  • Web application testing
  • Reporting

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
OffSec

OffSec OSCP

Advanced Official Cert
Overview

Practical penetration testing credential emphasizing reconnaissance, enumeration, exploitation, privilege escalation, and professional reporting.

Official Exam Page
Exam objectives

Core objective areas for OffSec OSCP:

  • Practical penetration testing credential emphasizing reconnaissance
  • Enumeration
  • Exploitation
  • Privilege escalation
  • Professional reporting

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GPEN

Advanced Official Cert
Overview

Covers penetration testing methodologies, reconnaissance, scanning, exploitation, password attacks, web attacks, and penetration test reporting.

Official Exam Page
Exam objectives

Core objective areas for GIAC GPEN:

  • Penetration testing methodologies
  • Reconnaissance
  • Scanning
  • Exploitation
  • Password attacks
  • Web attacks
  • Penetration test reporting

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GWEB

Advanced Official Cert
Overview

Focuses on web application security, secure development concepts, web vulnerabilities, attacks, testing methodologies, and defenses.

Official Exam Page
Exam objectives

Core objective areas for GIAC GWEB:

  • Web application security
  • Secure development concepts
  • Web vulnerabilities
  • Attacks
  • Testing methodologies
  • Defenses

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
10

Identity & Access Management

Build expertise in identity, authentication, authorization, privileged access, governance, and modern access controls.

Microsoft

Microsoft Entra ID Fundamentals

Beginner Official Cert
Overview

Introduces Microsoft Entra ID, identity concepts, authentication, authorization, users, groups, applications, and identity security.

Official Exam Page
Exam objectives

Core objective areas for Microsoft Entra ID Fundamentals:

  • Microsoft Entra ID
  • Identity concepts
  • Authentication
  • Authorization
  • Users
  • Groups
  • Applications
  • Identity security

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Oluma

Identity Governance Foundations

Beginner Oluma Track
Overview

Covers identity lifecycle management, access reviews, governance, entitlement management, policy, and access certification.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Identity lifecycle management
  • Access reviews
  • Governance
  • Entitlement management
  • Policy
  • Access certification
Open the Identity Governance Foundations track →
Microsoft

Microsoft Identity & Access Administrator (SC-300)

Associate Official Cert
Overview

Covers Microsoft Entra identity, authentication, authorization, identity governance, access management, and privileged identity.

Official Exam Page
Exam objectives

Core objective areas for Microsoft Identity & Access Administrator (SC-300):

  • Microsoft Entra identity
  • Authentication
  • Authorization
  • Identity governance
  • Access management
  • Privileged identity

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Oluma

IAM Fundamentals

Beginner Oluma Track
Overview

Introduces identity and access management, authentication, authorization, account lifecycle, least privilege, and access controls.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Identity and access management
  • Authentication
  • Authorization
  • Account lifecycle
  • Least privilege
  • Access controls
Open the IAM Fundamentals track →
Oluma

Privileged Access Management

Professional Oluma Track
Overview

Covers privileged accounts, vaulting, session management, just-in-time access, least privilege, and privileged identity security.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Privileged accounts
  • Vaulting
  • Session management
  • Just-in-time access
  • Least privilege
  • Privileged identity security
Open the Privileged Access Management track →
11

Privacy & Data Protection

Develop privacy engineering, privacy management, data protection, governance, and privacy program capabilities.

IAPP

IAPP CIPT

Professional Official Cert
Overview

Focuses on privacy technologies, privacy by design, engineering practices, data lifecycle, privacy controls, and technology governance.

Official Exam Page
Exam objectives

Core objective areas for IAPP CIPT:

  • Privacy technologies
  • Privacy by design
  • Engineering practices
  • Data lifecycle
  • Privacy controls
  • Technology governance

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
IAPP

IAPP CIPM

Professional Official Cert
Overview

Focuses on building and managing privacy programs, governance, operational lifecycle, policies, risk, and compliance.

Official Exam Page
Exam objectives

Core objective areas for IAPP CIPM:

  • Building and managing privacy programs
  • Governance
  • Operational lifecycle
  • Policies
  • Risk
  • Compliance

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
ISACA

ISACA CDPSE

Professional Official Cert
Overview

Covers privacy governance, data lifecycle, privacy architecture, data security, privacy engineering, and compliance.

Official Exam Page
Exam objectives

Core objective areas for ISACA CDPSE:

  • Privacy governance
  • Data lifecycle
  • Privacy architecture
  • Data security
  • Privacy engineering
  • Compliance

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Oluma

Privacy Fundamentals

Beginner Oluma Track
Overview

Introduces privacy principles, personal data, privacy risks, privacy rights, governance, and fundamental privacy controls.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Privacy principles
  • Personal data
  • Privacy risks
  • Privacy rights
  • Governance
  • Fundamental privacy controls
Open the Privacy Fundamentals track →
Oluma

Data Protection Fundamentals

Beginner Oluma Track
Overview

Covers data classification, protection principles, access control, encryption, retention, secure handling, and data security practices.

Practice / Prep
Exam objectives

This Oluma learning track covers:

  • Data classification
  • Protection principles
  • Access control
  • Encryption
  • Retention
  • Secure handling
  • Data security practices
Open the Data Protection Fundamentals track →
12

GIAC / SANS

Explore specialized GIAC credentials covering security operations, incident response, forensics, networks, and offensive security.

GIAC / SANS

GIAC GSEC

Professional Official Cert
Overview

Practical information security covering network security, access controls, cryptography, incident response, and defensive security.

Official Exam Page
Exam objectives

Core objective areas for GIAC GSEC:

  • Practical information security covering network security
  • Access controls
  • Cryptography
  • Incident response
  • Defensive security

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GCIH

Professional Official Cert
Overview

Incident handling, attack techniques, malware, network attacks, containment, eradication, recovery, and defensive response.

Official Exam Page
Exam objectives

Core objective areas for GIAC GCIH:

  • Incident handling
  • Attack techniques
  • Malware
  • Network attacks
  • Containment
  • Eradication
  • Recovery
  • Defensive response

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GCIA

Advanced Official Cert
Overview

Network traffic analysis, packet analysis, intrusion detection, protocols, network attacks, and malicious traffic investigation.

Official Exam Page
Exam objectives

Core objective areas for GIAC GCIA:

  • Network traffic analysis
  • Packet analysis
  • Intrusion detection
  • Protocols
  • Network attacks
  • Malicious traffic investigation

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GCFE

Advanced Official Cert
Overview

Windows forensic analysis, evidence collection, browser artifacts, investigations, forensic methodology, and reporting.

Official Exam Page
Exam objectives

Core objective areas for GIAC GCFE:

  • Windows forensic analysis
  • Evidence collection
  • Browser artifacts
  • Investigations
  • Forensic methodology
  • Reporting

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GCFA

Advanced Official Cert
Overview

Advanced forensic analysis, memory investigation, timelines, incident response, threat hunting, and attacker artifact analysis.

Official Exam Page
Exam objectives

Core objective areas for GIAC GCFA:

  • Advanced forensic analysis
  • Memory investigation
  • Timelines
  • Incident response
  • Threat hunting
  • Attacker artifact analysis

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GPEN

Advanced Official Cert
Overview

Penetration testing methodology, reconnaissance, scanning, exploitation, password attacks, web attacks, and reporting.

Official Exam Page
Exam objectives

Core objective areas for GIAC GPEN:

  • Penetration testing methodology
  • Reconnaissance
  • Scanning
  • Exploitation
  • Password attacks
  • Web attacks
  • Reporting

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
GIAC / SANS

GIAC GWEB

Advanced Official Cert
Overview

Web application security, application vulnerabilities, secure development, testing techniques, and web attack defenses.

Official Exam Page
Exam objectives

Core objective areas for GIAC GWEB:

  • Web application security
  • Application vulnerabilities
  • Secure development
  • Testing techniques
  • Web attack defenses

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
13

Cisco Cybersecurity

Build networking, enterprise infrastructure, and cybersecurity skills through Cisco-focused pathways.

Cisco

Cisco CCNA

Associate Official Cert
Overview

Networking fundamentals, IP connectivity, network access, services, security fundamentals, and network automation.

Official Exam Page
Exam objectives

Core objective areas for Cisco CCNA:

  • Networking fundamentals
  • IP connectivity
  • Network access
  • Services
  • Security fundamentals
  • Network automation

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Cisco

Cisco CCNA Cybersecurity

Associate Official Cert
Overview

Focuses on cybersecurity concepts, network protection, security operations, threat detection, and defensive technologies.

Official Exam Page
Exam objectives

Core objective areas for Cisco CCNA Cybersecurity:

  • Cybersecurity concepts
  • Network protection
  • Security operations
  • Threat detection
  • Defensive technologies

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Cisco

Cisco CCNP Enterprise

Professional Official Cert
Overview

Advanced enterprise networking covering architecture, infrastructure, routing, switching, automation, and enterprise network design.

Official Exam Page
Exam objectives

Core objective areas for Cisco CCNP Enterprise:

  • Advanced enterprise networking covering architecture
  • Infrastructure
  • Routing
  • Switching
  • Automation
  • Enterprise network design

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Cisco

Cisco Security Fundamentals

Beginner Official Cert
Overview

Introduces network security, threats, secure infrastructure, access control, security technologies, and defensive concepts.

Official Exam Page
Exam objectives

Core objective areas for Cisco Security Fundamentals:

  • Network security
  • Threats
  • Secure infrastructure
  • Access control
  • Security technologies
  • Defensive concepts

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
14

AWS Certifications

Explore AWS cloud certifications across foundational, architecture, development, and security pathways.

AWS

AWS Certified Cloud Practitioner

Beginner Official Cert
Overview

Cloud concepts, AWS services, security, architecture, pricing, billing, support, and cloud economics.

Official Exam Page
Exam objectives

Core objective areas for AWS Certified Cloud Practitioner:

  • Cloud concepts
  • AWS services
  • Security
  • Architecture
  • Pricing
  • Billing
  • Support
  • Cloud economics

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
AWS

AWS Certified Security – Specialty

Professional Official Cert
Overview

AWS security controls, identity, data protection, infrastructure security, monitoring, logging, and incident response.

Official Exam Page
Exam objectives

Core objective areas for AWS Certified Security – Specialty:

  • AWS security controls
  • Identity
  • Data protection
  • Infrastructure security
  • Monitoring
  • Logging
  • Incident response

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
AWS

AWS Solutions Architect – Associate

Associate Official Cert
Overview

Designing secure, resilient, high-performing, and cost-efficient cloud architectures on AWS.

Official Exam Page
Exam objectives

Core objective areas for AWS Solutions Architect – Associate:

  • Designing secure
  • Resilient
  • High-performing
  • Cost-efficient cloud architectures on AWS

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
AWS

AWS Solutions Architect – Professional

Advanced Official Cert
Overview

Advanced AWS architecture, complex workloads, migration, resilience, security, optimization, and organizational design.

Official Exam Page
Exam objectives

Core objective areas for AWS Solutions Architect – Professional:

  • Advanced AWS architecture
  • Complex workloads
  • Migration
  • Resilience
  • Security
  • Optimization
  • Organizational design

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
AWS

AWS Developer – Associate

Associate Official Cert
Overview

Developing, deploying, debugging, and maintaining applications using AWS services and cloud-native technologies.

Official Exam Page
Exam objectives

Core objective areas for AWS Developer – Associate:

  • Developing
  • Deploying
  • Debugging
  • Maintaining applications using AWS services and cloud-native technologies

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
15

Google Cloud

Build Google Cloud skills across security, architecture, networking, development, and cloud engineering.

Google Cloud

Professional Cloud Security Engineer

Professional Official Cert
Overview

Cloud security architecture, identity, data protection, network security, monitoring, compliance, and security operations.

Official Exam Page
Exam objectives

Core objective areas for Professional Cloud Security Engineer:

  • Cloud security architecture
  • Identity
  • Data protection
  • Network security
  • Monitoring
  • Compliance
  • Security operations

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Google Cloud

Professional Cloud Architect

Professional Official Cert
Overview

Designing secure, scalable, reliable, and cost-effective Google Cloud architectures aligned with business requirements.

Official Exam Page
Exam objectives

Core objective areas for Professional Cloud Architect:

  • Designing secure
  • Scalable
  • Reliable
  • Cost-effective Google Cloud architectures aligned with business requirements

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Google Cloud

Associate Cloud Engineer

Associate Official Cert
Overview

Deploying, managing, monitoring, and maintaining Google Cloud environments and services.

Official Exam Page
Exam objectives

Core objective areas for Associate Cloud Engineer:

  • Deploying
  • Managing
  • Monitoring
  • Maintaining Google Cloud environments and services

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Google Cloud

Professional Cloud Network Engineer

Professional Official Cert
Overview

Google Cloud network architecture, connectivity, routing, security, hybrid networking, and network operations.

Official Exam Page
Exam objectives

Core objective areas for Professional Cloud Network Engineer:

  • Google Cloud network architecture
  • Connectivity
  • Routing
  • Security
  • Hybrid networking
  • Network operations

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →
Google Cloud

Professional Cloud Developer

Professional Official Cert
Overview

Cloud-native application development, deployment, testing, APIs, storage, observability, and application reliability.

Official Exam Page
Exam objectives

Core objective areas for Professional Cloud Developer:

  • Cloud-native application development
  • Deployment
  • Testing
  • APIs
  • Storage
  • Observability
  • Application reliability

Domains and weightings vary by exam version — confirm the current outline on the official page.

View official objectives →

Build your
certification path.

You do not need every certification. Choose credentials that match your target role, current experience, professional interests, and career direction.

Explore paths →
OLUMA CERTIFICATION ZONE
Vendor certification links point to official exam pages. Requirements and exam objectives may change — always verify current details with the certification provider.