
EC-Council Certified Cybersecurity Technician
The EC-Council Certified Cybersecurity Technician (CCT) is an entry-level certification that validates hands-on technical skills across network defense, ethical hacking, digital forensics, and security operations. Designed for aspiring cybersecurity technicians and IT professionals transitioning into cyber roles, it features 85 hands-on labs and a performance-based, CTF-style exam delivered in a live cyber range. Earning the CCT proves you have the practical, job-ready skills to contribute to a cybersecurity team from day one.
1060 practice questions · Updated 2025-01-01
CCT Curriculum
Every domain, objective, and concept the CCT exam measures.
- Threat Landscape
- Vulnerability Fundamentals
- Attack Vectors and Surfaces
- Threat Actors and Motivations
- Vulnerability Assessment
- Risk and Impact Analysis
- Mitigation Strategies
- Attack Vectors
- Attack Types
- Attack Lifecycle
- Threat Actors
- Attack Motivations
- Impact of Attacks
- Network Fundamentals
- Network Devices
- Network Protocols
- Network Addressing
- Network Security Threats
- Network Security Controls
- Secure Network Design
- Identification
- Authentication
- Authorization
- Authentication Factors
- Multi-Factor Authentication (MFA)
- Authentication Methods
- Access Control Models
- Identity and Access Management (IAM)
- Administrative Controls Overview
- Security Policies
- Security Standards and Baselines
- Security Procedures
- Security Guidelines
- Risk Management
- Security Awareness Training
- Separation of Duties
- Least Privilege Principle
- Change Management
- Incident Response Planning
- Business Continuity and Disaster Recovery
- Compliance and Auditing
- Physical Security Controls Overview
- Access Control Mechanisms
- Surveillance Systems
- Environmental Controls
- Perimeter Security
- Physical Security Policies
- Technical Controls Overview
- Access Control Mechanisms
- Firewalls
- Intrusion Detection and Prevention Systems
- Virtual Private Networks
- Network Segmentation
- Network Access Control
- Proxy Servers
- Honeypots and Honeynets
- Security Information and Event Management
- Endpoint Security Controls
- Wireless Security Controls
- Data Loss Prevention
- Unified Threat Management
- Network Security Assessment Overview
- Assessment Types
- Assessment Methodology
- Reconnaissance Techniques
- Scanning Tools
- Enumeration Techniques
- Vulnerability Scanning Tools
- Exploitation Frameworks
- Password Attacks
- Wireless Assessment Tools
- Web Application Assessment Tools
- Reporting and Remediation
- Application Security Fundamentals
- Common Application Threats
- Secure Coding Practices
- Authentication and Authorization
- Data Protection and Encryption
- Application Security Testing
- Web Application Firewalls (WAF)
- API Security
- Secure Deployment and Configuration
- Incident Response for Applications
- Virtualization Fundamentals
- Types of Virtualization
- Cloud Computing Models
- Cloud Deployment Models
- Cloud Security Considerations
- Virtualization Security
- Cloud Architecture Components
- Cloud Service Providers and Offerings
- Wireless Network Fundamentals
- Wireless Security Protocols
- Wireless Authentication Methods
- Wireless Encryption Mechanisms
- Wireless Threats and Attacks
- Wireless Security Best Practices
- Wireless Network Monitoring and Auditing
- Mobile Device Security Fundamentals
- Mobile Device Management (MDM)
- Mobile Application Security
- Mobile Device Encryption and Data Protection
- Mobile Device Authentication and Access Control
- Mobile Device Network Security
- Mobile Device Compliance and Policy Enforcement
- Mobile Device Incident Response and Forensics
- IoT Architecture
- OT Architecture
- IoT Communication Protocols
- OT Protocols
- IoT Attack Surface
- OT Attack Surface
- IoT Security Challenges
- OT Security Challenges
- IoT Security Best Practices
- OT Security Best Practices
- IoT and OT Risk Management
- IoT and OT Compliance
- Cryptography Fundamentals
- Symmetric Encryption
- Asymmetric Encryption
- Hash Functions
- Digital Signatures
- Key Management
- Public Key Infrastructure (PKI)
- Cryptographic Attacks
- Data Security Fundamentals
- Data Classification
- Data States
- Data Encryption
- Data Masking
- Data Erasure
- Data Backup and Recovery
- Data Retention Policies
- Data Loss Prevention (DLP)
- Data Privacy and Compliance
- Troubleshooting Methodology
- Common Network Issues
- Troubleshooting Tools
- Physical Layer Troubleshooting
- Data Link Layer Troubleshooting
- Network Layer Troubleshooting
- Transport Layer Troubleshooting
- Application Layer Troubleshooting
- Wireless Network Troubleshooting
- Documentation and Reporting
- Traffic Monitoring Fundamentals
- Traffic Capture Techniques
- Packet Analysis Basics
- Flow Data Analysis
- Monitoring Tools
- Traffic Metrics and KPIs
- Anomaly Detection
- Troubleshooting with Traffic Data
- Log Sources and Types
- Log Collection and Aggregation
- Log Normalization and Parsing
- Log Retention and Storage
- Log Analysis Techniques
- Correlation of Log Events
- Log Monitoring Tools
- Alerting and Reporting
- Troubleshooting with Logs
- Security and Privacy Considerations
- Incident Response Fundamentals
- Incident Response Phases
- Incident Response Team Roles
- Incident Classification and Prioritization
- Incident Response Procedures
- Evidence Handling in Incident Response
- Incident Documentation and Reporting
- Post-Incident Activities
- Forensic Fundamentals
- Forensic Investigation Process
- Evidence Collection and Preservation
- Chain of Custody
- Forensic Imaging and Duplication
- Data Acquisition Methods
- Forensic Analysis Techniques
- File System Forensics
- Memory Forensics
- Network Forensics
- Mobile Device Forensics
- Anti-Forensics and Countermeasures
- Forensic Reporting and Testimony
- Business Continuity Planning (BCP) Fundamentals
- Disaster Recovery Planning (DRP) Fundamentals
- Business Impact Analysis (BIA)
- Risk Assessment in BCP/DRP
- Recovery Time Objective (RTO)
- Recovery Point Objective (RPO)
- BCP/DRP Strategies
- BCP/DRP Plan Development
- BCP/DRP Testing and Maintenance
- Incident Response and Communication
- Risk Management Fundamentals
- Risk Identification
- Risk Assessment Methodologies
- Risk Analysis Techniques
- Risk Response Strategies
- Risk Monitoring and Review
- Risk Management Frameworks
- Risk Documentation and Reporting
Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for CCT, so none is invented.