The Cybersecurity Operator Pathway is a comprehensive, self-paced learning program designed to take you from foundational concepts to operational readiness across the full cybersecurity spectrum. You’ll progress through structured courses covering defensive and offensive domains, gaining hands-on experience in real lab environments before attempting the Cyber Academy Certified Practitioner (CACP) certification.
This pathway is your foundation for a cybersecurity career. Complete it at your own pace, build practical skills through 700 hours of lab access, earn badges along the way, and when you’re ready, take the CACP to validate your capability as a practitioner.
15 courses across all cybersecurity domains. Download our complete course catalog to explore topics in depth.
700 hours of lab access valid for 12 months. Hands-on environments where you practice real scenarios.
Sharable student badges earned for completing each course. Showcase your progress as you build skills.
Free CACP attempt included. Take the certification within 12 months of enrollment.
Final credential: Cyber Academy Certified Practitioner (CACP) upon passing the exam.
By the end of this pathway, you will have completed 15 courses, earned badges demonstrating competency in each, and accumulated 700 hours of hands-on lab experience across operating systems, networking, defense, offense, and specialized security disciplines. You’ll understand how cybersecurity operates across the full spectrum.
You’ll be comfortable in lab environments, confident troubleshooting systems, and ready to attempt CACP, a hands-on certification that proves you can execute real tasks under realistic conditions. Most importantly, you’ll have the foundation to launch or advance your cybersecurity career. Whether you become a SOC analyst, incident responder, penetration tester, or security engineer, this pathway prepares you for the fundamentals you need.
Looking for Group Purchase Options? See below
Yes, and this pathway was built specifically with that in mind. The first courses cover the absolute fundamentals: command line navigation, file systems, basic scripting, and how operating systems work. No prior experience in IT or security is assumed. If you can use a computer and are willing to put in consistent effort, you have everything you need to begin. The pathway is structured so that each course builds directly on the last, so you are never asked to learn something without the foundation already in place.
The pathway consists of 15 courses covering the full cybersecurity spectrum — from Linux and Windows operations through to adversary emulation, digital forensics, and professional reporting. You receive 700 hours of lab access valid for 12 months from enrollment, alongside 200+ hands-on labs and 646 CPE credits. All course materials are available on-demand, so you set the pace. Most students working consistently complete the pathway within the 12-month window, though your timeline will depend on prior experience and hours committed per week.
Both — and that is one of the core distinctions of this program. Most cybersecurity training forces you to choose a lane: either offensive (penetration testing, exploitation) or defensive (SOC, incident response). The Cybersecurity Operator pathway covers the full operational spectrum. You will conduct web application attacks, mobile penetration tests, and enterprise-level offensive assessments, while also building SOC workflows, analyzing SIEM alerts, performing digital forensics, and executing threat intelligence processes. The skills compound: understanding how attacks are conducted makes you a fundamentally better defender, and vice versa.
This pathway prepares you for a wide range of cybersecurity roles — SOC Analyst, Penetration Tester, Incident Responder, Cloud Security Engineer, Threat Intelligence Analyst, and more. You finish with hands-on experience across every major domain, giving you genuine options in the job market rather than a narrow specialization.
You will train on the same tools used in real security operations. On the offensive side: Burp Suite, Metasploit, Frida, and industry-standard web and mobile testing frameworks. On the defensive side: Splunk, Wireshark, Volatility, and SIEM platforms. Cloud environments include AWS and Azure with hands-on IAM and container security labs. Adversary emulation is conducted using MITRE ATT&CK and CALDERA. In total, you will work with 50+ industry-standard platforms across the 200+ labs — so by the time you finish, the tooling is familiar, not foreign.