CySA+ labs for analyst judgment.
Build confidence with investigation, compliance mapping, CVSS scoring, malware containment, and evidence-driven response.
CYSA+
CySA+ simulations move into analyst work: terminology, compliance mapping, CVSS scoring, malware containment, investigation logic, and evidence-driven response.
Master Terms Lab
Students build fluency with CySA+ terminology by matching analytical and operational security terms to accurate definitions while reinforcing exam logic, domain context, and investigative usage scenarios.
Skills Targeted:
- Analytical Terminology
- Security Ops Vocabulary
- Investigative Use
Cyber Compliance Gauntlet
Master the strategic layers of cybersecurity defense. Learners must sequence the Cyber Kill Chain, perform Diamond Model attribution, and solve complex compliance matrices for NIST CSF 2.0, ISO 27001, PCI DSS, and CIS controls.
Skills Targeted:
- Multi-framework security mapping
- Strategic threat attribution
- Application-layer risk (OWASP)
- Technical hardening and auditing
CVSS 3.1 Base Metrics Mastery
Analyze realistic vulnerability scenarios and map conditions to CVSS 3.1 base metrics. Students construct full CVSS vectors and calculate base scores to build confidence in risk prioritization.
Skills Targeted:
- CVSS 3.1 base metric identification
- Scenario-to-metric mapping
- CVSS vector construction
- Base score calculation
- Vulnerability risk assessment
CVSS 4.0 Base Metrics Mastery
Practice the newer CVSS 4.0 base metric model while keeping 3.1 available for legacy exam coverage. Students classify exploitability, attack requirements, user interaction, vulnerable-system impact, and subsequent-system impact before building a defensible 4.0 vector.
Skills Targeted:
- CVSS 4.0 base metric identification
- Attack Requirements and User Interaction changes
- Vulnerable vs subsequent system impact
- CVSS 4.0 vector construction
- Evidence-based vulnerability triage
Vulnerability Remediation Command
Triage scanner findings like a SOC analyst. Build remediation tickets by choosing SLA windows, fix types, accountable owners, and validation evidence, then unlock Chaos Mode for stale findings and distractors.
Skills Targeted:
- Vulnerability remediation triage
- Patch, configuration, mitigation, and acceptance logic
- Owner routing and validation evidence
- Stale finding and asset-retirement decisions
Vulnerability Scan Validation
Work from a realistic scan report and validation dashboard. Learners classify true positives and false positives, choose exact remediation actions, select final evidence, document exceptions, and tune future scans.
Skills Targeted:
- Vulnerability scan validation
- True-positive and false-positive analysis
- Remediation evidence and closure logic
- Scanner tuning and documentation discipline
Investigation Command Hunt
Close three neutral alert tickets by matching command output, correlating process and file evidence, tracing authentication and persistence clues, and selecting evidence-preserving containment.
Skills Targeted:
- Command-output recognition and triage
- PID, process, path, and destination correlation
- Authentication and persistence evidence analysis
- Incident containment and ticket closeout logic
Malware Containment (CLI)
Acting as a SOC Analyst, learners investigate a multi-vector attack involving malicious services and C2 traffic. Perform host-based forensics, hunt threats using a terminal, and remediate environments by terminating malicious processes.
Skills Targeted:
- Host-Based Intrusion Detection
- Terminal Proficiency
- Firewall Configuration
- Phishing Forensics
- Incident Containment