Skip to content
Cybersecurity

Network Security and Intro to Threat Hunting with Wireshark

This hands-on course provides a practical introduction to network security analysis and entry-level threat hunting using Wireshark. Participants will explore how network traffic can be used to identify suspicious activity, investigate security incidents, and understand attacker behavior within enterprise environments.


The training covers protocol inspection and encrypted traffic analysis. Participants will work with realistic traffic captures to examine TLS communications, decrypt TLS network sessions, and identify indicators of compromise within complex network activity.


The course also introduces common attack and reconnaissance techniques observable at the network layer, including network scans, command-and-control (C2) communication, suspicious outbound connections, malware-related traffic patterns, and lateral movement activity. Realistic investigation scenarios are used throughout the course to demonstrate how defenders can detect and analyze malicious behavior using network telemetry.


Special emphasis is placed on practical Wireshark usage, efficient traffic filtering, protocol analysis, and investigative workflows commonly used in defensive cybersecurity operations.

Content
  • Introduction to Network Security and Threat Hunting
  • Packet Filtering and Protocol Analysis
  • HTTPS and TLS traffic inspection and decryption
  • Detecting Network Scans and Suspicious Activity
  • Identifying Malware and Command-and-Control (C2) Traffic
  • Indicators of Compromise (IOCs) and Threat Detection
  • Investigating Suspicious Connections and Network Behavior
  • Practical Threat Hunting and Traffic Analysis Exercises


Learning Outcomes

After completing this course, participants will be able to:

• Use Wireshark to capture, filter, and analyze network traffic

• Identify suspicious network behavior and indicators of compromise (IOCs)

• Detect network scans, malware-related traffic, and command-and-control (C2) activity

• Analyze HTTPS, and TLS communication patterns

• Apply basic threat hunting and incident investigation techniques

• Perform practical network-based security investigations in enterprise environments


Training Method

This instructor-led training combines technical theory with extensive hands-on exercises and practical traffic analysis scenarios. Participants will work directly with Wireshark to analyze packet captures, investigate suspicious network activity, and apply threat hunting techniques in realistic enterprise-style environments.

The course includes guided demonstrations, interactive discussions, and practical labs focused on network analysis, malware-related traffic, command-and-control (C2) communication, and incident investigation workflows. Emphasis is placed on developing practical analytical skills that can be directly applied in real-world IT and cybersecurity environments.

Certification
Certificate of Participation
Prerequisites

Participants should have basic knowledge of computer networks and general IT concepts. Familiarity with TCP/IP fundamentals, IP addressing, and common network services is recommended. Previous cybersecurity experience is not required, but basic technical troubleshooting skills and confidence working with IT systems will be beneficial.


Planning and location
Session 1
24/09/2026 - Thursday
16:00 - 19:00
Session 2
01/10/2026 - Thursday
16:00 - 19:00
Session 3
08/10/2026 - Thursday
16:00 - 19:00
Session 4
15/10/2026 - Thursday
16:00 - 19:00
Available Edition(s):

https://www.dlh.lu/web/image/product.template/2730/image_1920?unique=263e46b

This combination does not exist.

48.00 € 48.0 EUR 48.00 €

48.00 €

Not Available For Sale

Your trainer(s) for this course
Atlantis Cybersecurity Services, Stefan Hommes
Stefan Hommes
See trainer's courses.