Training

One place to build cyber skill.

Open Security training is a one-stop shop — a proprietary browser-based cyber range, a learner content portal, and custom course content. Every course is built and taught by operators who run real engagements and teach at conferences like Black Hat, available self-paced on demand or instructor-led in person.

One-stop shop

Range, portal, and content — together.

Most training is a loose set of classes. Ours is one integrated operating model: a place to practice, a place to learn, and content built for your team.

Cyber Range

Hands-on, in the browser

A proprietary, browser-based range that spins up a one-click, per-student vulnerable environment with Sirius preinstalled. Learners practice inside a hyper-realistic enterprise domain — styled after the infamous Ellingson Mineral Company — with no shared sandbox, no setup, and nothing to install.

  • One-click, per-student isolated environments with Sirius preinstalled and ready to scan
  • Hyper-realistic enterprise domains and cloud targets, cloud-resident and on demand
  • Lab-heavy exercises in discovery, scanning, and validation, accessible from any modern browser

Content Portal

Your learning home base — live now

Our live training application at training.opensecurity.com ties courses, workshops, videos, tools, and private sessions together — with community support and progress tracking, so individuals and teams always know what to work on next.

  • Curated "For You" and "Trending" feeds across every content type
  • Self-paced courses and workshops, plus operator-built tools in one place
  • Progress tracking across individuals and teams
Open the Content Portal

Custom Content

Built for your environment

Course material and scenarios tailored to your stack, threat model, and team — authored by the same operators who run engagements and teach at industry conferences.

  • Scenarios mapped to your architecture and real attack patterns
  • Instructor-led in-person workshops tuned to the roles and gaps on your team
  • Authored and taught by working operators who run engagements and teach at industry conferences

The Content Portal

A learning platform you can open right now.

The Open Security Content Portal is a live application — a curated library of cybersecurity training that goes well beyond a course catalog. Personalized "For You" and "Trending" feeds surface what to learn next, from enterprise vulnerability management to GIAC certification prep, alongside the operator-built tools we use every day.

  • Courses
  • Workshops
  • Videos
  • Tools
  • Private sessions
  • Community
Trending on the portaltraining.opensecurity.com
  • Enterprise Vulnerability AssessmentCourse
  • Workshop: CVSS & EPSSWorkshop
  • IANS Vulnerability ManagementPrivate session
  • Indexing with VoltaireVideo
  • Sirius ScanTool

The readiness loop

Measure readiness. Train against the gaps.

Training does not stand alone. RTable measures how your team responds under scenario pressure; the range and portal give those teams a place to practice the exact skills the exercise reveals as gaps — so readiness improves every cycle.

See how RTable measures readiness
  1. 1Measure readiness through tabletop exercises and structured participant evidence.
  2. 2Identify gaps in confidence, decision-making, tooling, or tactical skill.
  3. 3Train in a browser-based cyber range backed by custom curriculum.
  4. 4Return to live work with improved remediation and response behavior.

Featured workshop

Tactical Enterprise Vulnerability Assessment

Hands-on, lab-heavy training on vulnerability assessment and management for modern enterprises — discovery, scanning, and validation with industry-standard tools, taught in our cyber range.

Duration
One 4-hour session
Level
Intermediate
Format
Instructor-led, lab-heavy
Platform
Open Security online range
  • Network and cloud discovery labs with Sirius Scan and Nuclei
  • General-purpose and credentialed scanning with agents
  • Validation: risk scoring, confidence metrics, and enterprise VM workflows
  • Case study: a hybrid-cloud ransomware breach of an OT software vendor

Built for vulnerability assessors and managers, security analysts, IT administrators, auditors, and the engineers who support them.

Who teaches

Taught by the people who run real attacks.

Our instructors are working operators — practitioners with military cyber backgrounds who run client engagements all year and teach the craft at conferences like Black Hat. The material is not academic: every lab and scenario comes out of real tradecraft, tuned to what actually works against real environments.

  • Operators who run engagements all year — not career lecturers
  • Black Hat instructors with military cyber backgrounds
  • Labs and scenarios drawn from real tradecraft, not textbook theory

Get started

Build a team that is ready.

Talk to an operator about a training program for your team — range access, the Content Portal, and custom content tailored to the gaps that matter most. Or jump into the portal and start learning today.