Stage 1 of 6
Networking Foundations
Understand how devices communicate, how networks are built, operated, secured, and troubleshot.

RSAY’s first professional bootcamp
Over four months, build foundations in networking, operating systems, and cybersecurity, then move through Red Team, Blue Team, and GRC in one journey preparing you to pursue seven professional certifications.
Training route · 6 stages
The journey starts with technical infrastructure, then advances through defense, offense, and governance. Open any course for its official-aligned content and exam details.
Stage 1 of 6
Understand how devices communicate, how networks are built, operated, secured, and troubleshot.
Stage 2 of 6
Administer Linux systems, users, services, storage, permissions, automation, and host security.
Stage 3 of 6
Build a connected understanding of threats, controls, secure architecture, operations, risk, and governance.
Stage 4 of 6
Learn authorized reconnaissance, vulnerability analysis, ethical attack techniques, validation, and reporting.
Stage 5 of 6
Investigate alerts and evidence, use SIEM and threat intelligence, manage vulnerabilities, and respond to incidents.
Stage 6 of 6
Connect technical security to governance, risk, compliance, assurance, assessment, and audit reporting.
Training roadmap · 16 weeks
The roadmap shows every module connected to the seven certifications, with a clear learning purpose for each one.
Understand how devices communicate, how networks are built, operated, secured, and troubleshot.
CompTIA · N10-009
Protocols, services, addressing, topologies, cloud, and modern connectivity.
Routing, switching, wireless, physical infrastructure, virtualization, and cloud connectivity.
Documentation, monitoring, change management, disaster recovery, and administration.
Security concepts, attacks, access controls, segmentation, and hardening.
Methodology, cabling, connectivity, services, performance, and troubleshooting tools.
Administer Linux systems, users, services, storage, permissions, automation, and host security.
CompTIA · XK0-006
Boot, devices, storage, packages, processes, networking, and performance.
Services, users, groups, permissions, scheduling, localization, and remote access.
Authentication, authorization, firewalls, certificates, logging, and hardening.
Shell, version control, configuration management, containers, and automation.
Storage, networking, resources, security, services, and application diagnosis.
Build a connected understanding of threats, controls, secure architecture, operations, risk, and governance.
CompTIA · SY0-701
Controls, cryptography, authentication, resilience, and zero trust.
Threat actors, attack surfaces, vulnerabilities, indicators, and remediation.
Cloud, network, endpoint, data, application, and enterprise design.
Hardening, monitoring, vulnerability management, IAM, and incident response.
Governance, policy, risk, compliance, audits, and awareness.
Learn authorized reconnaissance, vulnerability analysis, ethical attack techniques, validation, and reporting.
EC-Council · CEH v13 AI
Ethics, authorization, scope, the hacking lifecycle, attack frameworks, reporting, and AI-supported workflows.
Passive and active reconnaissance, OSINT, search engines, social platforms, DNS, email, web, and organizational intelligence.
Host discovery, port and service scanning, OS detection, scan techniques, evasion concepts, and interpreting results.
Enumerating Windows, Linux, network services, DNS, SNMP, LDAP, NFS, SMTP, SMB, and cloud resources.
Vulnerability research, scoring, scanners, configuration assessment, validation, prioritization, and remediation planning.
Authentication attacks, privilege escalation, persistence, file and data handling, evidence removal concepts, and defensive controls.
Malware families, behavior, delivery, analysis fundamentals, indicators, sandboxing, and defensive countermeasures.
Packet capture, protocol analysis, switched-network attacks, detection, encryption, secure protocols, and monitoring controls.
Human attack vectors, phishing, impersonation, physical techniques, awareness testing, policy, and prevention.
DoS and DDoS concepts, amplification, botnets, service exhaustion, detection, response, and resilience.
Session identifiers, cookies and tokens, transport and application risks, detection, and secure session design.
Security-control behavior, traffic inspection, evasion concepts, decoys, detection engineering, and defensive tuning.
Server enumeration, misconfiguration, authentication, patching, logging, common attack paths, and hardening.
Application architecture, input validation, authentication, sessions, access control, APIs, business logic, and secure testing.
Injection causes, discovery, database behavior, validation in safe labs, parameterization, and remediation.
Wireless standards, discovery, authentication, encryption, common exposure patterns, secure assessment, and hardening.
Mobile architecture, app storage, permissions, communications, device management, testing, and defensive design.
Connected-device and industrial environments, protocols, trust boundaries, common weaknesses, safe testing, and segmentation.
Shared responsibility, identity, storage, compute, containers, serverless, misconfiguration, monitoring, and remediation.
Symmetric and asymmetric cryptography, hashing, PKI, certificates, encryption use cases, attacks, and implementation safeguards.
Investigate alerts and evidence, use SIEM and threat intelligence, manage vulnerabilities, and respond to incidents.
Security Blue Team · Current syllabus
Core defensive concepts, networking, common attack paths, security controls, analyst workflow, evidence, and reporting foundations.
Email headers, sender authentication, URLs, attachments, document behavior, sandboxing, indicators, verdicts, and response recommendations.
Intelligence lifecycle, indicator enrichment, source evaluation, adversary behavior, TTP mapping, pivoting, and actionable intelligence products.
Disk and file systems, Windows artifacts, browser and user activity, memory concepts, evidence handling, timelines, and forensic interpretation.
Log sources, normalization, searches, filtering, correlation, dashboards, alert triage, detection logic, investigation timelines, and case notes.
Preparation, classification, scoping, containment, eradication, recovery, evidence, communication, playbooks, and lessons learned.
CompTIA · CS0-003
System and network architecture, log and packet analysis, malicious indicators, threat intelligence, hunting, automation, SIEM, EDR, cloud tooling, and detection engineering.
Scanning requirements, tool configuration, validation, prioritization, exposure factors, compensating controls, remediation, and secure configuration assessment.
Preparation, detection, analysis, containment, eradication, recovery, evidence handling, forensics, communication, and post-incident improvement.
Vulnerability and incident reports, metrics, stakeholder communication, compliance reporting, root cause, lessons learned, and actionable recommendations.
Connect technical security to governance, risk, compliance, assurance, assessment, and audit reporting.
OCEG · Current OCEG body of knowledge
Core terms, principles, business drivers, integrated GRC benefits, organizational context, and relationships with risk, compliance, security, privacy, control, and audit.
Assurance concepts, independence, objectivity, criteria, materiality, evidence quality, confidence, assessment types, and lines of accountability.
Purpose, scope, objectives, stakeholders, capability context, risks, criteria, resources, procedures, sampling, communication, and documentation.
Gathering and evaluating evidence, interviewing, testing design and operation, analyzing strengths and weaknesses, forming conclusions, quality review, and issue management.
Report structure, audience needs, ratings, findings, recommendations, management responses, action tracking, escalation, and follow-up assurance.
Applying the OCEG GRC Assessment Framework based on assessment scope, including capability evaluation, procedures, documentation, and reporting.
How you learn
Practice networking, systems, and security analysis in safe training environments.
Work through logs, alerts, vulnerabilities, and incidents like a security team.
Regular checkpoints identify what is mastered and what needs more focus.
A connected assignment demonstrating analysis, decisions, and reporting.
Cohort controls
Before paid enrollment opens, the complete cohort guide is published with the schedule, learning effort, prerequisites, tools, roles, attendance, assessment, support, and appeals.
A baseline check identifies learner level and foundational gaps before the pathway begins.
Required attendance, calculation, absence impact, and make-up rules are published before enrollment.
Self-checks, labs, scenarios, readiness reviews, and a capstone; weights and deadlines appear in the cohort guide.
Published academic and technical channels, a one-business-day response target, and escalation for impactful incidents, complaints, and appeals.
HRDF professional certification support
Saudi Arabia’s Human Resources Development Fund supports national workforce skills. Under its professional certification program, eligible costs are reimbursed after an approved certification is earned and documentation is verified; this is not automatic funding for the bootcamp fee.
Review the official HRDF program page ↗Currently listed examplesCEH and CySA+ appear in current official HRDF materials. The list can change.
Core eligibilityThe applicant must be Saudi, and the certificate must be valid and no more than six months old when claimed.
Support limitUnder current program rules, support is limited to two certifications per person.
After verificationMembership fees are excluded, employer-paid costs cannot be claimed, and payment is made to an IBAN after verification.
The first cohort
Register your interest to receive the start date, detailed schedule, and entry requirements when enrollment opens.
Register interest ↗