Cybersecurity Foundations Certification
Think like a defender — the principles, threats, and controls every security career builds on
Key facts
- Level: Foundation
- Field: Cybersecurity & Information Security
- Estimated study time: about 12 hours
- Credential price: $39
- Exam: 30 questions · 80 minutes · pass mark 70%
About the Cybersecurity Foundations certification
A foundation-level certification that turns the vocabulary of cybersecurity into a clear, working mental model you can defend with. You will learn the CIA triad — confidentiality, integrity, and availability — and how every control maps back to it; the precise difference between a threat, a vulnerability, and risk, and why risk is the product of likelihood and impact; the common families of attack at a conceptual level (malware, phishing and social engineering, ransomware, denial of service, and man-in-the-middle) so you can recognise and prevent them; the difference between authentication and authorization, and why multi-factor authentication and the principle of least privilege are so powerful; the essentials of encryption — symmetric versus asymmetric, hashing, and how TLS protects data in transit; network basics including firewalls, VPNs, and ports; everyday security hygiene and the discipline of patching; data classification; the layered strategy of defense in depth; an introduction to the NIST Cybersecurity Framework; and basic incident awareness — how to recognise and respond when something goes wrong. The certification is vendor-neutral and entirely defensive: it teaches how attacks work only so that you can stop them. It is the natural first step before associate-level security certifications.
What you will learn
The official Cybersecurity Foundations study course covers:
- Core Principles: the CIA Triad, Threats, and Risk — The three goals every control protects, and the precise difference between a threat, a vulnerability, and risk.
- Common Attacks and How to Recognise Them — Malware, phishing and social engineering, ransomware, denial of service, and man-in-the-middle — at a conceptual, defensive level.
- Identity, Access, and Encryption — Authentication versus authorization, passwords and MFA, least privilege, and the essentials of encryption, hashing, and TLS.
- Networks, Hygiene, Defense in Depth, and Incidents — Firewalls, VPNs, and ports; patching and data classification; the layered defense-in-depth strategy; an intro to NIST CSF and basic incident awarenes…
Frequently asked questions
- Is the Cybersecurity Foundations certificate verifiable?
- Yes. Every issued Hootix Academy certificate carries a unique credential code that anyone can verify online.
- How is the Cybersecurity Foundations exam structured?
- It is a 80-minute proctored multiple-choice exam of 30 questions; you need 70% to pass.
- Do I need to buy the course to take the exam?
- You can purchase the certification exam on its own, or bundle it with the full study course at a reduced price.
- How long does the Cybersecurity Foundations course take?
- About 12 hours of self-paced study.