Distance learning
Free
Formattemp
In progress
"Nuove Frontiere Lavoro," in collaboration with the training organization "Idee Insieme," is publishing an online course in "Cyber Security Technician"—funded by the Forma.Temp fund.
The training program focuses on the role of the IT security technician who works within public and private ICT organizations , ensuring the security of computer systems and networks.
Conducts systematic monitoring of environments to identify and record threats, weaknesses, and non-compliance; analyzes the organization's critical assets to identify vulnerabilities to intrusions or attacks; implements security breach management measures according to defined protocols and implements crisis recovery plans. Contributes to the implementation and continuous improvement of information security policies through audits , the preparation and use of a risk inventory , benchmarking analysis , and resilience testing, including simulations. Organizes and conducts security tests on ICT systems in compliance with reference procedures and standards, evaluates the results, and prepares the required technical documentation.
The course aims to provide skills related to information system security, from monitoring and incident management to implementing and improving security policies and performing technical system tests. The indicated competency units refer to the expected outcomes related to the ADA (14.01.22 - Information Security Management; 14.01.11 - IT System Testing), the process sequences (Managing the ICT Company - Manage; Development, Integration, Testing, and Deployment of the ICT Solution - Build), the process (Development and Management of Digital Products and Services), and the SEP (14 - Digital Services) of the Atlante del Lavoro.
OBJECTIVES: The project's goal is to develop a professional capable of addressing current market demands in the field of cybersecurity. The indicated competency units refer to the expected outcomes related to the ADA (14.01.22 - Information Security Management; 14.01.11 - IT Systems Testing), the process sequences (ICT Company Management - Manage; ICT Solution Development, Integration, Testing, and Deployment - Build), the process (Development and Management of Digital Products and Services), and the SEP (14 - Digital Services) of the Atlas of Work.
At the end of the course the participant will be able to:
1 - Apply control and management protocols for critical issues related to the security of the information system, implementing recovery plans in the event of a crisis
2 - Implement information security policies and strive for their improvement over time, including by carrying out comparative analyses and carrying out audits, tests and simulations
3 - Carry out ICT system tests in compliance with the procedures and reference standards, having previously organised them, evaluating the results and preparing the required documentation
FUNDING BODY: Forma.Temp
PROMOTING BODY: New Frontiers Work spa
IMPLEMENTING BODY: Idee Insieme soc.coop.soc.
COST: the course is free (funded by Forma.Temp ) ;
DURATION: 180 hours from 7 SEPTEMBER to 6 NOVEMBER 2026 – 45 days of VIRTUAL CLASSROOM (online) of 4 hours each;
CERTIFICATE: attendance of at least 70% of the total project hours and/or achievement of the defined objectives. Additionally, for recipients without training credits, attendance of at least 90% of the "General Health and Safety" module and at least 70% of the "Rights and Responsibilities of Temporary Workers" module;
VIRTUAL CLASSROOM LESSONS: Monday to Friday from 09.00 am to 13.00 pm;
PARTICIPATION REQUIREMENTS: The course is aimed at temporary work candidates (both unemployed and out of work) registered and selected by the Employment Agency;
- for foreigners, knowledge of the Italian language and grammar, even if NOT certified;
- you need a desktop PC , laptop or tablet with a stable wired connection, webcam and microphone;
SELECTION METHOD: Access to the course will take place through several preliminary steps:
- Correct submission of the required documentation;
- Analysis of the CV submitted;
- Check the connection devices to be carried out in videoconference;
SELECTIONS: Those who have joined will be contacted by email to confirm (by 18.00 pm on 03/09/2026) the verification of the videoconference connection devices scheduled for 10.30 am onwards on 04/09/2026 in a group;
REGISTRATION: Those selected will be contacted by email and phone (by 04:09 PM on June 18.00, 2026) to attend the first day of the course on June 07, 2026, at 09:09.00 AM on the online platform after sending the entry link.
Course modules
1.1
Apply control and criticality management protocols
LEARNING OBJECTIVE: Apply control and management protocols for information system security issues, implementing crisis recovery plans.
Unit 1 - Security Assessment (Vulnerability Assessment of Complex and Distributed Infrastructures; Vulnerability Assessment; Assessment; Audit Documentation)
Topics covered:
• Virtual Machine: Introduction to VMs, installation, installing Kali Linux, setting up a virtual lab
• Introduction to Linux systems: philosophy and concepts, architecture and distributions, account management, terminal operations, network operations, bash shell and basic scripting
• Cyber Security Fundamentals: Basic Principles (Confidentiality, Integrity, Availability), Types of Cyber Attacks, Network Security
• Hacking Tools: Overview of the tools used in cybersecurity
• The “submerged” web: the iceberg metaphor, the Deep Web, the Dark Web
Unit 2 - Crisis Situation (Security Incident Management; Recovery from a VBF; Security Incident Recovery; Security Incident Analysis)
Topics Covered
• DoS and DDoS attacks
• Phishing and social engineering attacks
• Countermeasures and good security practices
Unit 3 - (Information Security Risk Assessment (Data Breach Impact Assessment in the Management of Ex-Sensitive Data; Data Breach Impact Assessment; Analysis; DPIA Assessment)
Topics Covered
• Regulations and types of data breach.
• Assessment of impacts, risks and mitigation measures.
• Impact and risk analysis.
• Management of notifications and corrective actions.
• Identifying the causes of the data breach.
• Vulnerability analysis and definition of corrective actions.
• Privacy risk assessment.
• Definition of protection measures and DPIA documentation.
Learning assessment: The module concludes with assessment tests to monitor the skills and knowledge acquired.
2.1
Implement information security policies
LEARNING OBJECTIVE: RA2: Implement information security policies and strive for their improvement over time, including by carrying out comparative analyses and carrying out audits, tests and simulations
Unit 1 - Information Security Management System (ISMS): ISMS Improvement; Risk Inventory; Recovery Plans (Information Security Risk Treatment); ISMS Management
Topics covered:
• The importance of cyber security in the business context
• Legislation: legal aspects, rules and regulations on cyber security
Unit 2 - Security Audits: Resilience Testing / Vulnerability Testing: Planning and Managing Audits of Complex and Distributed Infrastructures; Audit Planning; Evaluation of Audit Results; Audit Activities
Topics covered:
• security controls to prevent internal and external threats to the company
• Updating of interventions in cyclical plans defined in the ISMS
• Provide objective insights into the existence of vulnerabilities
• Perform application and infrastructure vulnerability assessments, penetration tests and remediation updates
Learning assessment: The module concludes with assessment tests to monitor the skills and knowledge acquired.
3.1
Conduct ICT system testing
LEARNING OBJECTIVE: RA3 - ADA.14.01.11 - IT systems testing - Perform ICT system tests in compliance with the procedures and reference standards, having previously provided for their organization, evaluating the results and preparing the required documentation
Unit 1 - Test Organization (Test Preparation; Test Plan Organization)
Topics Covered
• Ethical hacking: definition and scope, differences compared to cracking
• Authorization framework and rules of engagement
• Reference standards for testing (OWASP, PTES)
• Planning a penetration test
Unit 2 - Conducting Security Tests (Complex Testing; Regression Testing; Wizard-Based Testing)
Topics Covered
• Information gathering and network scanning techniques
• Enumeration techniques
• Identification and classification of vulnerabilities
• Types of exploits and how they work
• Web application attacks
• Performing tests in a laboratory environment
Unit 3 - Test Documentation and Analysis (Sharing Results; Writing Documentation)
• Analysis and prioritization of test results
• Mitigation techniques and best hardening practices
• Drafting of the technical report and summary report
• Documentation of the testing activities performed
Learning assessment: The module concludes with assessment tests to monitor the skills and knowledge acquired.
4.1
Health and safety in the workplace
Module structured in compliance with Legislative Decree 81/08 and the State-Regions Agreements
Learning assessment: The module concludes with assessment tests to monitor the knowledge acquired.
5.1
Rights and duties of temporary workers
It addresses the principle of equal economic and regulatory treatment with respect to the employees of the user company, the rules of the contract with the Employment Agency (ApL), and the obligations of diligence, obedience, and safety at work.