Active Curriculum

Cybersecurity & Digital
Safety

Protect workplaces from cyber threats, data breaches and fraud.

Learner
Syllabus Overview

Structured learning journey.

1
38 Mins

Cybersecurity Fundamentals

This module introduces the foundational concepts of cybersecurity and digital safety. Learners will explore the CIA Triad—Confidentiality, Integrity, and Availability—which serves as the core model for protecting information systems. The module also covers common cyber threats and attack methods, globally recognized cybersecurity frameworks such as NIST and ISO 27001, and various career pathways within the cybersecurity industry. By the end of this module, learners will understand the basic principles that guide modern cybersecurity practices and the growing opportunities available in the field.

Key Terminology

1Cybersecurity: The practice of protecting systems, networks, devices, and data from cyber threats.
2Information Security: The protection of information from unauthorized access, use, disclosure, modification, or destruction.
3CIA Triad: A foundational cybersecurity model consisting of Confidentiality, Integrity, and Availability.
4Confidentiality: Ensuring information is accessible only to authorized individuals.
2
40 Mins

Password Security & Authentication

This module focuses on the critical role of password security and authentication in protecting digital accounts and systems. Learners will explore how to create strong passwords, safely manage credentials using password managers, strengthen account security through multi-factor authentication (MFA), and understand how biometric authentication technologies work. By the end of this module, learners will be able to apply modern authentication best practices to reduce the risk of unauthorized access and cyberattacks.

Key Terminology

1Authentication: The process of verifying the identity of a user, device, or system.
2Password: A secret string of characters used to verify a user's identity.
3Passphrase: A longer sequence of words used as a password that is generally easier to remember and harder to crack.
4Strong Password: A password that is long, unique, and difficult to guess.
3
41 Mins

Identity & Access Management

This module introduces Identity and Access Management (IAM), a critical cybersecurity discipline focused on ensuring that the right individuals have access to the right resources at the right time. Learners will explore authentication and authorization, Single Sign-On (SSO), Privileged Access Management (PAM), and strategies for preventing identity theft. By the end of this module, learners will understand how organizations manage digital identities, control access to systems, and protect sensitive information from unauthorized use.

Key Terminology

1Identity and Access Management (IAM): The framework used to manage digital identities and control access to resources.
2Identity: A digital representation of a user, device, or system.
3Authentication: The process of verifying the identity of a user, device, or system.
4Authorization: The process of determining what actions or resources an authenticated user is permitted to access.
4
38 Mins

Phishing & Social Engineering

This module introduces phishing and social engineering, two of the most common methods cybercriminals use to manipulate people into revealing sensitive information or performing actions that compromise security. Learners will explore phishing emails, fake websites, spear phishing, whaling, vishing, smishing, and various social engineering tactics. By the end of the module, learners will be able to recognize common attack techniques and respond appropriately to reduce cybersecurity risks.

Key Terminology

1Phishing: A fraudulent attempt to obtain sensitive information through deceptive communications.
2Social Engineering: The manipulation of people into performing actions or revealing confidential information.
3Phishing Email: A deceptive email designed to trick recipients into taking harmful actions.
4Malicious Link: A link that directs users to harmful or fraudulent websites.
5
41 Mins

Malware & Ransomware Protection

This module introduces malware and ransomware threats, two of the most significant cybersecurity risks facing individuals and organizations today. Learners will explore common types of malware, understand how ransomware attacks occur, learn prevention and response strategies, and examine the role of antivirus and anti-malware tools. The module also covers safe browsing practices that help reduce exposure to cyber threats. By the end of this module, learners will be able to identify malware risks and apply practical security measures to protect systems and data.

Key Terminology

1Malware: Malicious software designed to damage, disrupt, or gain unauthorized access to systems.
2Virus: Malware that attaches itself to files or programs and spreads when executed.
3Worm: Malware that self-replicates and spreads across networks without user interaction.
4Trojan Horse: Malware disguised as legitimate software to trick users into installing it.
6
41 Mins

Network Security Basics

This module introduces the foundational concepts of network security and how data moves across modern networks. Learners will explore core networking technologies such as TCP/IP and DNS, understand the role of firewalls and intrusion detection systems, learn how Virtual Private Networks (VPNs) protect communications, and discover best practices for securing Wi-Fi networks. By the end of the module, learners will understand how network security controls help protect data, devices, and systems from cyber threats.

Key Terminology

1Network: A collection of connected devices that communicate and share resources.
2TCP/IP: The suite of communication protocols used to connect devices across networks and the internet.
3IP Address: A unique numerical identifier assigned to a device on a network.
4IPv4: The most widely used version of Internet Protocol using 32-bit addresses.
7
41 Mins

Privacy Laws & PIPEDA

This module introduces Canadian privacy laws and the principles that govern the collection, use, disclosure, and protection of personal information. Learners will explore the Personal Information Protection and Electronic Documents Act (PIPEDA), understand consent requirements, learn how organizations must handle personal information, and examine data breach notification obligations. By the end of the module, learners will understand key privacy responsibilities and how compliance supports trust, security, and legal requirements.

Key Terminology

1Privacy: The right of individuals to control how their personal information is collected, used, and shared.
2PIPEDA: The Personal Information Protection and Electronic Documents Act, Canada's federal private-sector privacy law.
3Personal Information: Information about an identifiable individual.
4Consent: Permission provided by an individual for the collection, use, or disclosure of personal information.
8
39 Mins

Data Protection & Encryption

This module introduces the core concepts of data protection and encryption. Learners will explore how encryption safeguards information, compare symmetric and asymmetric encryption methods, learn how organizations protect files and communications, examine secure file sharing and storage practices, and understand the importance of data backup and recovery. By the end of this module, learners will understand how encryption and backup strategies help maintain confidentiality, integrity, and availability of information.

Key Terminology

1Encryption: The process of converting readable data into an unreadable format to protect it from unauthorized access.
2Plaintext: Original readable data before encryption.
3Ciphertext: Encrypted data that cannot be read without decryption.
4Decryption: The process of converting encrypted data back into readable form.
9
39 Mins

Mobile Device Security

This module introduces the cybersecurity risks and protections associated with smartphones, tablets, and other mobile devices. Learners will explore smartphone security settings, app permissions and privacy controls, common mobile malware threats, and Bring Your Own Device (BYOD) policies used in organizations. By the end of the module, learners will understand how to secure mobile devices, protect sensitive information, and reduce the risks associated with mobile computing.

Key Terminology

1Mobile Device: A portable computing device such as a smartphone or tablet.
2Mobile Security: The protection of mobile devices, applications, and data from threats.
3Screen Lock: A security feature that restricts device access through authentication.
4PIN: A Personal Identification Number used to unlock a device.
10
41 Mins

Module 10: Cloud Security

This module introduces the security concepts associated with cloud computing environments. Learners will explore the three primary cloud service models—Software as a Service (SaaS), Platform as a Service (PaaS), and Infrastructure as a Service (IaaS)—while examining shared responsibility models, cloud account security, data protection practices, and compliance requirements. By the end of this module, learners will understand how cloud environments are secured and how organizations can protect cloud-based systems and information.

Key Terminology

1Cloud Computing: The delivery of computing services over the internet.
2Cloud Service Provider (CSP): A company that delivers cloud computing services.
3Software as a Service (SaaS): A cloud model where users access software applications hosted by a provider.
4Platform as a Service (PaaS): A cloud model providing platforms for application development and deployment.
11
41 Mins

AI in Cybersecurity

This module explores how Artificial Intelligence (AI) is transforming cybersecurity operations. Learners will examine AI-powered threat detection, behavioral analytics, anomaly detection, and AI-enhanced Security Operations Centers (SOCs). The module also addresses emerging threats such as adversarial AI and deepfakes, helping learners understand both the benefits and risks of AI in cybersecurity. By the end of this module, learners will understand how AI supports cyber defence while recognizing the challenges associated with AI-driven threats.

Key Terminology

1Artificial Intelligence (AI): Computer systems designed to perform tasks that typically require human intelligence.
2Machine Learning (ML): A subset of AI that enables systems to learn from data and improve performance over time.
3Threat Detection: The process of identifying potential security threats and malicious activity.
4Behavioral Analytics: The analysis of user and system behavior to identify unusual activity.
12
39 Mins

Incident Response

This module introduces the structured process organizations use to respond to cybersecurity incidents. Learners will explore the incident response lifecycle, methods for identifying and containing security incidents, evidence preservation and digital forensics fundamentals, and post-incident analysis activities. By the end of this module, learners will understand how organizations prepare for, respond to, investigate, and learn from cybersecurity incidents.

Key Terminology

1Incident Response (IR): The organized process of managing and responding to cybersecurity incidents.
2Cybersecurity Incident: An event that threatens the confidentiality, integrity, or availability of information or systems.
3Incident Response Plan (IRP): A documented set of procedures for responding to security incidents.
4Preparation: The phase of incident response focused on planning, training, and readiness.
13
41 Mins

Security Awareness Training

This module explores the role of security awareness training in reducing cybersecurity risks and building a strong security culture within organizations. Learners will examine how security awareness programs are developed and delivered, how simulated phishing campaigns improve employee readiness, and how organizations measure training effectiveness. By the end of this module, learners will understand how human behavior influences cybersecurity and how education can strengthen organizational defenses.

Key Terminology

1Security Awareness Training: Education designed to help individuals recognize and respond to cybersecurity threats.
2Security Culture: Shared attitudes, behaviors, and values that support cybersecurity within an organization.
3Human Risk: Security risks arising from employee actions, errors, or decisions.
4Phishing Awareness: Knowledge and skills used to identify phishing attempts.
14
40 Mins

Compliance & Auditing

This module introduces the principles of cybersecurity compliance, auditing, risk management, and security governance. Learners will explore common security compliance frameworks, audit preparation processes, risk assessment methodologies, and the development of security policies and procedures. By the end of this module, learners will understand how organizations demonstrate compliance, manage risk, and maintain effective cybersecurity governance programs.

Key Terminology

1Compliance: Adherence to laws, regulations, standards, and organizational requirements.
2Audit: A formal review used to evaluate compliance, controls, and processes.
3Security Framework: A structured set of guidelines used to manage cybersecurity programs.
4NIST Cybersecurity Framework (CSF): A cybersecurity framework organized around Identify, Protect, Detect, Respond, and Recover functions.
15
42 Mins

Cybersecurity Certifications & Career

This module explores career development opportunities in cybersecurity, including industry-recognized certifications, portfolio building, job search strategies, and ongoing professional development. Learners will examine certifications such as CompTIA Security+, Certified Ethical Hacker (CEH), and Certified Information Systems Security Professional (CISSP), while developing practical strategies for entering and advancing within the cybersecurity field.

Key Terminology

1Cybersecurity Career Path: A professional development route within the cybersecurity industry.
2CompTIA Security+: An entry-level cybersecurity certification covering foundational security concepts.
3Certified Ethical Hacker (CEH): A certification focused on ethical hacking and penetration testing techniques.
4Certified Information Systems Security Professional (CISSP): An advanced cybersecurity certification focused on security management and leadership.

Professional Certification

Complete 15 modules to unlock your verified certificate.