Bootcamps
Coming soon · the subjects below are what they will draw on
Subjects
What it is
Identity and access management, network boundaries, secrets, and posture management on a cloud provider.
Where it sits
School of Cybersecurity · Upper level
Crunch Cloud Security — Cloud & Container Security
You get
The shared-responsibility model, locking down identity, network segmentation, data protection, finding misconfigurations at scale, supply-chain security, serverless and pipeline coverage, detection and response, and hardening a whole estate.
What it is
Symmetric and public-key primitives, hashing, protocols, and the proofs behind their guarantees.
Where it sits
School of Cybersecurity · Upper level
You get
Enough cryptography to use it correctly and not break it — primitives, key handling, TLS in practice, and the mistakes that undo all of it.
Still to add
The mathematics: number theory, security proofs, and constructing primitives rather than using them.
What it is
Disk and memory acquisition, artifact analysis, timelines, and chain of custody.
Where it sits
School of Cybersecurity · Upper level
Crunch Forensics — Digital Forensics & Incident Response
You get
Running an investigation the right way: disk forensics, recovering deleted data, memory forensics, network forensics, building a super-timeline, triaging malware safely, and extending into mobile and cloud.
What it is
Authorized attack simulation: reconnaissance, exploitation, privilege escalation, and reporting.
Where it sits
School of Cybersecurity · Upper level
Crunch Red — Offensive Security & Penetration Testing
You get
Working legally and in scope with a rules-of-engagement document, passive reconnaissance, scanning and enumeration, triaged CVSS-scored findings, web exploitation, network and service attacks, responsible credential cracking, privilege escalation on Linux and Windows, and Active Directory attacks mapped to their detections.
What it is
Threat models, authentication, access control, common vulnerability classes, and defensive basics.
Where it sits
School of Cybersecurity · Core
You get
The Linux security model read and audited, traffic captured and analysed, vulnerabilities set up and exploited in your own lab, Python tooling written, enough cryptography not to misuse it, an incident-response drill, and CTF practice.
What it is
Static and dynamic analysis of hostile binaries in a contained lab, and writing detection from findings.
Where it sits
School of Cybersecurity · Upper level
Crunch Malware — Malware Analysis & Reverse Engineering
You get
Standing up an isolated no-network lab, handling samples safely, reading a binary cold, fast static analysis, detonation and behavioural observation, and findings recorded as data rather than notes.
What it is
Protocol attacks, firewalls, TLS, intrusion detection, and segmenting a network that assumes breach.
Where it sits
School of Cybersecurity · Upper level
Crunch Blue — Blue Team & SOC Operations
You get
The defensive side in depth: telemetry pipelines, running a SIEM, engineering detections, mapping to MITRE ATT&CK, reading network telemetry, threat hunting and incident response.
Still to add
Protocol-level attack theory and firewall/segmentation design as a subject.
Crunch Red — Offensive Security & Penetration Testing
You get
The attacking side: exploiting vulnerable network services, abusing misconfigurations, and capturing traffic in an isolated lab.
What it is
Vulnerability classes in real code, threat modelling, secure design review, and security testing in CI.
Where it sits
School of Cybersecurity · Upper level
Crunch AppSec — Application Security & Secure Coding
You get
Threat modelling, the OWASP Top 10 cold, getting authentication right, defeating injection, enforcing access control, handling secrets and cryptography safely, automated scanning in the pipeline, and securing the supply chain and the SDLC.
What it is
Log analysis, SIEM, detection engineering, triage, and running an incident to containment.
Where it sits
School of Cybersecurity · Upper level
Crunch Blue — Blue Team & SOC Operations
You get
Owning a telemetry pipeline, running a SIEM, engineering detections and mapping them to MITRE ATT&CK, reading endpoint and network telemetry, hunting threats, triage and response, and automating the SOC.