
Bob Salmans
Cybersecurity & Governance, Risk, and Compliance (GRC)
Core security paths for SOC analysts, penetration testers, cloud security engineers, and governance teams.
Capability architecture
Start with security foundations, then map SOC, incident response, penetration testing, cloud security, forensics, and GRC training to the teams that own the work.
Certification tier
Shared security vocabulary for teams responsible for threats, risk, cryptography, and secure design.
Threats, attacks, vulnerabilities, cryptography, secure design, and information security foundations.
Certification tier
Operational paths for incident response, cloud security, GRC, CMMC, and data security.
Secure operations, incident response, digital forensics, and examiner workflows.
Cloud hardening, data security, governance, risk, compliance, and CMMC readiness.
Certification tier
Develop the red-team and penetration-testing bench that validates defenses.
Planning, scoping, scanning, tooling, Kali, and hands-on offensive-security workflows.
Cybersecurity training is most defensible when it maps to operational ownership: incidents, vulnerabilities, cloud controls, compliance evidence, and risk management.
Role-based paths
Match Cybersecurity training to the actual roles your team holds. Each path bundles the right cert tracks plus the operational depth engineers need day-to-day.
Incident response, forensics, threats, and secure operations for analysts defending production environments.
Penetration testing planning, tooling, scanning, Kali, and offensive-security fundamentals.
Cloud hardening, secure design, software engineering security, and data protection.
Governance, risk, compliance, CMMC readiness, security management, and audit-facing controls.
Platform depth
Platform-by-platform deep dives for the specificCybersecurity tools your team operates.
Incident response, forensics, secure operations, threats, and triage workflows.
Planning, tools, scanning, Kali, PEN-100/PEN-103/PEN-200, and offensive security.
Cloud infrastructure hardening, data security, secure design, and software security.
GRC, CMMC readiness, security program management, and risk controls.

Hands-on Cybersecurity practice
Human-led training is the point: engineers practice real skills with expert guidance, not just video playback.
Why CBT Nuggets
The platform features IT directors evaluating us against Pluralsight, Udemy Business, and LinkedIn Learning ask about most often.
Practitioner-led
Built and taught by engineers who have spent decades running production Cybersecurity infrastructure — not crowd-sourced contributors.

Cybersecurity & Governance, Risk, and Compliance (GRC)

Offensive Security & Security Operations

Networking & Network Security
Team outcome
Manager reporting gives IT leaders a clearer view of assigned training, completion progress, and certification coverage.
Best fit for: compliance-sensitive teams that need evidence of progress before a review, renewal, or internal governance checkpoint.
Common questions IT directors ask when evaluating Cybersecurity training for their team.