Cyber Security + Ethical Hacking
From networking and vulnerability testing to SOC investigation, incident response and cloud security — taught live on weekends by people who do it on call.

- TEACHING
- 12 months
- PLACEMENT SUPPORT
- 3 months
- FORMAT
- Live · Saturday & Sunday
- CLASS SIZE
- 24, never more
- NEXT INTAKE
- 31 Oct 2026
- FEE
- £3,699
Is this the right course for you?
This is for you if…
- You are changing career and want a portfolio, not a single project.
- You can commit two live sessions a week for twenty-four weeks.
- You want a named mentor you meet one-to-one every week.
This is not for you if…
- You already do this job — it will cover ground you have.
- You need a regulated qualification for visa or professional registration. This is not one.
- You cannot attend live sessions. The recordings are a backup, not the format.
Twenty-four weeks, module by module
No competitor in this market publishes module-level detail. We do, because it is the thing you are actually buying.
- Weeks 1–4Networking and operating systemsRisk and the CIA triad, TCP/IP and Wireshark, Linux, then Windows, Active Directory and MFA.WIRESHARK · LINUX
- Weeks 5–8Security controls and vulnerability managementFirewalls and EDR, authorised Nmap scans, CVE and CVSS, the OWASP Top 10 and a phishing investigation.NMAP · OWASP
- Weeks 9–12SOC operations and SIEM investigationSIEM search and correlation, detection rules mapped to MITRE ATT&CK, threat intelligence and timelines.SIEM · MITRE ATT&CK
- Weeks 13–16Incident response and forensicsA NIST tabletop exercise, evidence and chain of custody, malware triage and Python for log analysis.NIST · PYTHON
- Weeks 17–20Cloud security, GRC and AICloud permissions and audit logs, NIST CSF and ISO 27001 risk registers, and checking AI-generated analysis.CLOUD · ISO 27001
- Weeks 21–24Capstone and career preparationA guided SOC investigation from triage to executive summary, a timed analyst exercise and interview practice.ALL
You finish with work you can show, and people you can name.


Sam Iqbal
Security Operations Lead, Halden Systems
Teaches weeks 1–16

Rachel Okonjo
Principal Penetration Tester, Northgate
Vulnerability testing, capstone and mock interviews


Next intakes for Cyber Security + Ethical Hacking
- 31 Oct 202624 of 24 places leftEnrol Now
Pay in full
£3,699
Instalments
10 monthly payments of £369.90, no interest
Employer sponsorship
We invoice your employer directly
Refund
Full refund to end of week two
Asked before every Cyber Security + Ethical Hacking cohort
Do I need an IT background to start?
No. Weeks one to four assume you have never used a terminal and take you through networking, Linux and Windows from the beginning. What you do need is three to four practice hours a week between sessions, most of them hands-on in the lab.
How are the sessions arranged?
On weekends: two hours of concepts and demonstrations on Saturday, two hours of guided practical work on Sunday. That is 48 classes and 96 live hours over the 24 weeks.
Is this a certification course — will I come out with Security+ or CISSP?
No, and we will not pretend otherwise. This is a taught programme with its own certificate, endorsed by The CPD Certification Service. It covers most of the ground Security+ tests and leaves you well placed to sit it, but the exam and its fee are yours to book.
Where is the ethical hacking done?
In our own isolated lab, against targets we run: authorised scanning with Nmap in week six and a deliberately vulnerable web application in week seven. Nothing on the course is ever practised against a system you do not own.
Can I choose the industry for my capstone?
Yes. Your capstone is shaped around the industry you want to work in — technology, finance, banking, healthcare, hospitality and travel, consulting, retail, or supply chain and operations — with real-world-style data and a portfolio-ready result.
What if I miss a session?
The recording is up the same day and your mentor covers it in your next 1:1. Attendance matters for the certificate — you need 80% across the programme — but a handful of missed sessions will not put that at risk.
Which jobs does this actually lead to?
SOC analyst first, for most people — it is where the volume of UK entry-level hiring is. Security analyst and incident response roles are realistic with the right capstone. Placement support runs for three months after teaching ends.
Already hold an Ashwood certificate?
Employers and graduates can check any certificate number in seconds.