Training Notes: Monitoring and Administering System and Network
Security (Level III)
This document summarizes key content from the 'Monitoring and Administering System
and Network Security' training module prepared by the Ministry of Labor and Skills. The
training is designed for Level III Hardware and Network Servicing students and spans 30
hours.
Module Overview
The module equips trainees with essential knowledge, skills, and attitudes to monitor and
administer system and network security. The primary units covered include:
1. User Accounts
2. File and Resource Access
3. Authentication Requirements
4. Network Security
Key Learning Objectives
• Modify default user settings
• Explain operating system security and access features
• Describe file security categorization
• Determine authentication and security requirements
• Monitor and record security threats
• Update antivirus definitions
Unit 1: User Accounts
• Understand and modify default user settings to enhance security.
• Configure legal notices for user login sessions.
• Enforce strong password policies and assess password complexity.
• Review and update password creation and storage procedures.
• Identify and address user-related security gaps using access control policies and reviews.
Unit 2: File and Resource Access
• Explore file system permissions (Read, Write, Execute) and Access Control Models (DAC,
MAC).
• Understand NTFS and EXT4 file systems and Network File System (NFS).
• Review OS security features (firewall settings, antivirus, remote access, update
management).
• Categorize files based on confidentiality levels and define rules for sharing.
• Promote user responsibilities in device security, phishing awareness, data classification,
and reporting threats.
• Schedule antivirus scanning and maintain update settings.
Unit 3: Authentication Requirements
• Determine security needs based on risk and asset analysis.
• Identify and compare authentication methods: passwords, MFA, biometrics, tokens,
password-less, device, and risk-based authentication.
• Implement role-based and attribute-based access controls.
• Align authentication and authorization with policy enforcement, compliance, and adaptive
security models.
• Document and regularly review audit logs and access permissions.
Unit 4: Network Security
• Set up secure access to shared resources (files, printers, remote applications).
• Monitor and log security events using SIEM and EDR tools.
• Regularly update antivirus software and signature databases.
• Configure firewalls, VPNs, intrusion prevention/detection systems, and network
segmentation.
• Ensure user awareness, implement patch management, and conduct regular audits.
• Enable encryption, configure secure network protocols, and automate incident response
where possible.
Practical Exercises
Students are required to:
• Modify user profiles using Windows 10 and Active Directory.
• Configure OS services, firewall settings, and browser security.
• Create access policies for shared resources.
• Practice using SIEM, EDR tools, and configure antivirus scanning.
• Complete lab tests and operation sheets as directed by instructors.