Thuta Learning
Security Engineer လမ်းကြောင်း cover illustration
intermediate

Security Engineer လမ်းကြောင်း

Linux command line, day-to-day digital hygiene, server/network hardening, web application vulnerability, incident response ကို capstone security audit report တစ်ခုအပေါ် တည်ဆောက်မည့် လမ်းကြောင်း။

Who this is for
System/application ကို attacker ရှုထောင့်ကနေ ကြည့်တတ်ပြီး ကာကွယ်နည်းသင်ယူလိုသူ, security engineer/SOC analyst entry-level role ကို ရည်မှန်းသူ
Duration
About 26 hours
Modules
5 modules · 2 tutorials

Prerequisites

  • Computer အခြေခံ သုံးတတ်ခြင်း — coding/security experience လိုအပ်ချေ မရှိပါ
  • Command line ကို အနည်းငယ် ရင်းနှီးရင် ပိုအဆင်ပြေမည် (Module 1 ကနေ အခြေခံကနေ စလေ့လာနိုင်ပါသည်)

Learning outcomes

  • Linux command line ဖြင့် system ကို confidently manage/troubleshoot လုပ်နိုင်မည်
  • CIA Triad ကို base ထားပြီး day-to-day digital hygiene practice ကို ကျင့်သုံးနိုင်မည်
  • Server တစ်ခုကို SSH key-only auth, firewall, fail2ban ဖြင့် end-to-end harden လုပ်နိုင်မည်
  • OWASP Top 10 vulnerability (SQL Injection, XSS) ကို code review အတွင်း ဖော်ထုတ်နိုင်မည်
  • Security audit report နှင့် incident response runbook ကို ကိုယ်တိုင် ရေးသားနိုင်မည်

Curriculum

1

အဆင့် ၁ — Linux & Command Line Foundations

About 5 hours

Command line ကို ကြောက်စရာမလိုအောင် filesystem, permission, shell scripting, SSH ကို Linux tutorial ရဲ့ Basic/Intermediate chapter ကနေ လေ့လာမယ်။

Skills

Linux CLIFilesystem & PermissionsShell ScriptingSSH

Hands-on project

Linux VM/WSL ပေါ်မှာ user account ဖန်တီး, permission သတ်မှတ်, SSH key-based login setup ပြီးမြောက်အောင် လုပ်ဆောင်ပါ။

2

အဆင့် ၂ — Security Fundamentals & Digital Hygiene

About 5 hours

CIA Triad, password/2FA, phishing/social engineering, malware type များကို Cybersecurity tutorial ရဲ့ Basic/Intermediate chapter ကနေ လေ့လာမယ်။

Skills

CIA TriadPassword & 2FAPhishing AwarenessMalware Types

Hands-on project

ကိုယ်ပိုင် email/banking/social media account များအတွက် Personal Digital Security Audit ကို ပြီးမြောက်အောင် လုပ်ဆောင်ပြီး weak point ကို fix ပါ။

3

အဆင့် ၃ — Network & Server Hardening

About 6 hours

Firewall, SSH key-only authentication, fail2ban, network security concept များကို Linux/Cybersecurity tutorial ရဲ့ Advanced chapter ကနေ ပေါင်းစပ်လေ့လာမယ်။

Skills

Firewall (ufw)SSH Hardeningfail2banNetwork Security

Hands-on project

VM/cloud server (disposable/practice environment) တစ်ခုကို SSH key-only auth, firewall, fail2ban ဖြင့် end-to-end harden လုပ်ပါ။

4

အဆင့် ၄ — Web Application Security

About 5 hours

OWASP Top 10, SQL Injection, XSS, API key/secret management ကို Cybersecurity tutorial ရဲ့ Advanced chapter ကနေ လေ့လာမယ်။

Skills

OWASP Top 10SQL InjectionXSSSecrets Management

Hands-on project

Sample web app code (permission ရှိသော practice repository) ကို security review လုပ်ပြီး vulnerability list + fix recommendation ရေးပါ။

5

အဆင့် ၅ — Security Capstone: Incident Response & Reporting

About 5 hours

Vulnerability scanning overview, incident response framework ကို ပေါင်းစပ်ပြီး capstone security audit report တစ်ခု ရေးမယ်။

Skills

Vulnerability ScanningIncident ResponseSecurity Reporting

Hands-on project

Practice environment (ကိုယ်ပိုင် VM/server) အတွက် security audit report + incident response runbook တစ်ခု ပြီးမြောက်အောင် ရေးပါ — ဒါက path တစ်ခုလုံးရဲ့ capstone project ဖြစ်ပါတယ်။

Suggested schedule

  1. 1အပတ် ၁ မှ ၂ — Linux command line foundations
  2. 2အပတ် ၃ — Security fundamentals နှင့် digital hygiene
  3. 3အပတ် ၄ — Network နှင့် server hardening
  4. 4အပတ် ၅ — Web application security
  5. 5အပတ် ၆ — Capstone: incident response နှင့် reporting

Completion checklist

  • Personal Digital Security Audit ကို ပြီးမြောက်အောင် လုပ်ဆောင်ပြီး weak point fix ထားခြင်း
  • VM/cloud server တစ်ခုကို SSH key-only + firewall + fail2ban ဖြင့် harden လုပ်ပြီး confirm ထားခြင်း
  • Security audit report + incident response runbook တစ်ခု ရေးသားပြီးစီးခြင်း

Supporting articles

Official references