
Cyber Defense Certifications
Cyber defenders play an essential role in securing the enterprise. Defending against attacks is only possible with the right skill set - and confidence in your abilities and those of your team. GIAC's Cyber Defense certifications span the entire defense spectrum and are focused in two areas: cyber defense essentials and blue teaming. Whether your needs are beginner-level, advanced, or for a specialized area of defense, GIAC has the credentials you need to keep your organization safe from the latest threats.


Blue Team Operations Certifications
Prove your ability to detect, respond to, and recover from an attack.
- Slide 1 of 9
Cyber DefenseGIAC Open Source Intelligence Certification (GOSI)
Signal your capability to provide actionable intelligence, efficiently collecting, processing, and analyzing vital information in a constantly changing field.
Affiliated Training: SEC497: Practical Open-Source Intelligence (OSINT)- AI-Focused
Cyber Defense
- AI-Focused
GIAC Open Source Intelligence Certification (GOSI)
Affiliated Training: SEC497: Practical Open-Source Intelligence (OSINT)View certificationSignal your capability to provide actionable intelligence, efficiently collecting, processing, and analyzing vital information in a constantly changing field.
- Slide 2 of 9
Cyber DefenseGIAC Certified Intrusion Analyst (GCIA)
Demonstrate ability to detect and analyze threats via network and host activity.
CyberLiveTM: Hands-on TestingAffiliated Training: SEC503: Network Monitoring and Threat Detection In-Depth- AI-Focused
Cyber Defense
- AI-Focused
GIAC Certified Intrusion Analyst (GCIA)
CyberLiveTM: Hands-on TestingAffiliated Training: SEC503: Network Monitoring and Threat Detection In-DepthView certificationDemonstrate ability to detect and analyze threats via network and host activity.
- Slide 3 of 9
Cyber DefenseGIAC Machine Learning Engineer (GMLE)
Prove deep fluency in the realities of Machine Learning (ML) in the security landscape, demonstrating the expertise to apply ML skills and principles to strengthen your SOC.
CyberLiveTM: Hands-on TestingAffiliated Training: SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals- AI-Focused
Cyber Defense
- AI-Focused
GIAC Machine Learning Engineer (GMLE)
CyberLiveTM: Hands-on TestingAffiliated Training: SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity ProfessionalsView certificationProve deep fluency in the realities of Machine Learning (ML) in the security landscape, demonstrating the expertise to apply ML skills and principles to strengthen your SOC.
- Slide 4 of 9
Cyber DefenseGIAC Continuous Monitoring Certification (GMON)
Demonstrate that you are a continuous defender, able to build, monitor, and adapt defenses for real-time visibility.
CyberLiveTM: Hands-on TestingAffiliated Training: SEC511: Cybersecurity Engineering: Advanced Threat Detection and Monitoring- AI-Focused
Cyber Defense
- AI-Focused
GIAC Continuous Monitoring Certification (GMON)
CyberLiveTM: Hands-on TestingAffiliated Training: SEC511: Cybersecurity Engineering: Advanced Threat Detection and MonitoringView certificationDemonstrate that you are a continuous defender, able to build, monitor, and adapt defenses for real-time visibility.
- Slide 5 of 9
Cyber DefenseGIAC Defensible Security Architect Certification (GDSA)
Deliver assurance in your organization’s security posture with defensive versatility and an arsenal of skills for continuous and tactical improvement.
Affiliated Training: SEC530: Defensible Security Architecture and Engineering: Implementing Zero Trust for the Hybrid EnterpriseCyber Defense
GIAC Defensible Security Architect Certification (GDSA)
Affiliated Training: SEC530: Defensible Security Architecture and Engineering: Implementing Zero Trust for the Hybrid EnterpriseView certificationDeliver assurance in your organization’s security posture with defensive versatility and an arsenal of skills for continuous and tactical improvement.
- Slide 6 of 9
Cyber DefenseGIAC Certified Detection Analyst (GCDA)
Demonstrate understanding and application of Security Information and Event Management (SIEM) principles and tools.
Affiliated Training: SEC555: Detection Engineering and SIEM AnalyticsCyber Defense
GIAC Certified Detection Analyst (GCDA)
Affiliated Training: SEC555: Detection Engineering and SIEM AnalyticsView certificationDemonstrate understanding and application of Security Information and Event Management (SIEM) principles and tools.
- Slide 7 of 9
Cyber DefenseGIAC Security Operations Certified (GSOC)
Differentiate your skill as a blue team leader, ready to design, automate, and improve SOC operations under real-world pressure.
Affiliated Training: SEC450: SOC Analyst Training – Applied Skills for Cyber Defense Operations- AI-Focused
Cyber Defense
- AI-Focused
GIAC Security Operations Certified (GSOC)
Affiliated Training: SEC450: SOC Analyst Training – Applied Skills for Cyber Defense OperationsView certificationDifferentiate your skill as a blue team leader, ready to design, automate, and improve SOC operations under real-world pressure.
- Slide 8 of 9
Cyber DefenseGIAC Experienced Intrusion Analyst (GX-IA)
Demonstrate advanced detection and analysis experience, armed with the skills to unravel complex attack patterns and reduce mean time to detect.
CyberLiveTM: Hands-on TestingAffiliated Training: SEC503: Network Monitoring and Threat Detection In-DepthCyber Defense
GIAC Experienced Intrusion Analyst (GX-IA)
CyberLiveTM: Hands-on TestingAffiliated Training: SEC503: Network Monitoring and Threat Detection In-DepthView certificationDemonstrate advanced detection and analysis experience, armed with the skills to unravel complex attack patterns and reduce mean time to detect.
- Slide 9 of 9
Cyber DefenseGIAC Strategic OSINT Analyst (GSOA)
Demonstrate command of advanced skills and strategies for conducting open-source intelligence investigations.
CyberLiveTM: Hands-on TestingAffiliated Training: SEC587: Advanced Open-Source Intelligence (OSINT) Gathering and Analysis- AI-Focused
- New
Cyber Defense
- AI-Focused
- New
GIAC Strategic OSINT Analyst (GSOA)
CyberLiveTM: Hands-on TestingAffiliated Training: SEC587: Advanced Open-Source Intelligence (OSINT) Gathering and AnalysisView certificationDemonstrate command of advanced skills and strategies for conducting open-source intelligence investigations.
Cyber Defense Essentials Certifications
Prove your mastery of essential skills needed to defend the enterprise.
- Slide 1 of 7
Cybersecurity and IT Essentials, Cyber DefenseGIAC Information Security Fundamentals (GISF)
Establish capability in the essential security skills and knowledge in demand at every organization.
Affiliated Training: SEC301: Introduction to Cyber SecurityCybersecurity and IT Essentials, Cyber Defense
- New
GIAC Information Security Fundamentals (GISF)
Affiliated Training: SEC301: Introduction to Cyber SecurityView certificationEstablish capability in the essential security skills and knowledge in demand at every organization.
- Slide 2 of 7
Cyber Defense, Cybersecurity and IT EssentialsGIAC Security Essentials (GSEC)
Demonstrate fluency in crucial security paradigms and technologies and the hands-on proficiency to put them into practice.
CyberLiveTM: Hands-on TestingAffiliated Training: SEC401: Security Essentials - Network, Endpoint, and CloudCyber Defense, Cybersecurity and IT Essentials
GIAC Security Essentials (GSEC)
CyberLiveTM: Hands-on TestingAffiliated Training: SEC401: Security Essentials - Network, Endpoint, and CloudView certificationDemonstrate fluency in crucial security paradigms and technologies and the hands-on proficiency to put them into practice.
- Slide 3 of 7
Cybersecurity and IT Essentials, Cyber DefenseGIAC Certified Enterprise Defender (GCED)
Signal your readiness as an advanced defender, armed with a comprehensive range of technical expertise and the practical skills to implement advanced protection.
Affiliated Training: SEC501: Advanced Security Essentials - Enterprise DefenderCybersecurity and IT Essentials, Cyber Defense
GIAC Certified Enterprise Defender (GCED)
Affiliated Training: SEC501: Advanced Security Essentials - Enterprise DefenderView certificationSignal your readiness as an advanced defender, armed with a comprehensive range of technical expertise and the practical skills to implement advanced protection.
- Slide 4 of 7
Digital Forensics and Incident Response, Cyber Defense, Offensive OperationsGIAC Certified Incident Handler (GCIH)
Signal readiness to manage real threats from detection to remediation, demonstrating effective incident handling skills and applying insight into attackers’ techniques.
CyberLiveTM: Hands-on TestingAffiliated Training: SEC504: Hacker Tools, Techniques, and Incident HandlingDigital Forensics and Incident Response, Cyber Defense, Offensive Operations
GIAC Certified Incident Handler (GCIH)
CyberLiveTM: Hands-on TestingAffiliated Training: SEC504: Hacker Tools, Techniques, and Incident HandlingView certificationSignal readiness to manage real threats from detection to remediation, demonstrating effective incident handling skills and applying insight into attackers’ techniques.
- Slide 5 of 7
Cyber Defense, Cybersecurity LeadershipGIAC Information Security Professional Certification (GISP)
Offer a pragmatic alternative to CISSP, signaling broad security domain fluency validated by a respected provider.
Affiliated Training: LDR414: SANS Training Program for CISSP® CertificationCyber Defense, Cybersecurity Leadership
GIAC Information Security Professional Certification (GISP)
Affiliated Training: LDR414: SANS Training Program for CISSP® CertificationView certificationOffer a pragmatic alternative to CISSP, signaling broad security domain fluency validated by a respected provider.
- Slide 6 of 7
Cyber DefenseGIAC Experienced Cybersecurity Specialist (GX-CS)
Deliver indispensable data acquisition and analysis when it matters most, showing you are ready to investigate and triage on the technical battlefield.
CyberLiveTM: Hands-on TestingAffiliated Training: SEC401: Security Essentials - Network, Endpoint, and CloudCyber Defense
GIAC Experienced Cybersecurity Specialist (GX-CS)
CyberLiveTM: Hands-on TestingAffiliated Training: SEC401: Security Essentials - Network, Endpoint, and CloudView certificationDeliver indispensable data acquisition and analysis when it matters most, showing you are ready to investigate and triage on the technical battlefield.
- Slide 7 of 7
Cyber DefenseGIAC Python Coder (GPYC)
Demonstrate command of the Python programming language, understanding and applying essential concepts and features.
Affiliated Training: SEC573: AI-Powered Security Automation: Building Tools with Python, LLMs, and MCP- AI-Focused
Cyber Defense
- AI-Focused
GIAC Python Coder (GPYC)
Affiliated Training: SEC573: AI-Powered Security Automation: Building Tools with Python, LLMs, and MCPView certificationDemonstrate command of the Python programming language, understanding and applying essential concepts and features.
Purple Team Certifications
Improve the "red-blue" feedback loop by certifying in cross-focus areas.
- Slide 1 of 2
Cyber Defense, Offensive OperationsGIAC Foundational Cybersecurity Technologies (GFACT)
Establish proficiency in core cybersecurity knowledge and practical skills, signaling readiness to contribute on day one in a new career.
Affiliated Training: SEC275: Foundations: Computers, Technology, & SecurityCyber Defense, Offensive Operations
GIAC Foundational Cybersecurity Technologies (GFACT)
Affiliated Training: SEC275: Foundations: Computers, Technology, & SecurityView certificationEstablish proficiency in core cybersecurity knowledge and practical skills, signaling readiness to contribute on day one in a new career.
- Slide 2 of 2
Offensive Operations, Cyber DefenseGIAC Defending Advanced Threats (GDAT)
Convey proficiency across the full picture of offensive and defensive security with the ability to prevent, detect, and respond to traditional and APT-style attacks.
Affiliated Training: SEC599: Defeating Advanced Adversaries - Purple Team Tactics & Kill Chain DefensesOffensive Operations, Cyber Defense
GIAC Defending Advanced Threats (GDAT)
Affiliated Training: SEC599: Defeating Advanced Adversaries - Purple Team Tactics & Kill Chain DefensesView certificationConvey proficiency across the full picture of offensive and defensive security with the ability to prevent, detect, and respond to traditional and APT-style attacks.
