---
title: "No Cost Training • The UTSA CIAS"
description: "As a partner of the National Cybersecurity Preparedness Consortium (NCPC), which develops and delivers cybersecurity training at no cost to participants through…"
language: "en-US"
canonical_url: "https://yoczw4a14t54p3l.onstatic.studio/training/ncpc/"
source_url: "https://yoczw4a14t54p3l.onstatic.studio/training/ncpc/"
content_type: "text/markdown"
---

### NCPC






					[

									No Cost Training

					](https://yoczw4a14t54p3l.onstatic.studio/training/ncpc/)

































									As a partner of the [National Cybersecurity Preparedness Consortium (NCPC)](http://nationalcpc.org/), which develops and** **delivers cybersecurity training at** no cost** **to participants** through DHS-FEMA Continuing Training Grants, the CIAS has developed research-based cybersecurity courses aimed at helping individuals in states and communities nationwide to develop and improve their own cybersecurity programs.

This project was supported by Cooperative Agreement Numbers EMW-2022-CA-00023-S01, EMW-2023-CA-05082, and EMW-2024-CA-05177 administered by DHS/FEMA. Points of view or opinions expressed in this website or documents are those of the author and do not represent the official position or policies of DHS/FEMA.

To help prepare for and respond to cybersecurity risks at the state, local, tribe and territorial levels, the CIAS courses below have been developed around the [Community Cyber Security Maturity Model](https://yoczw4a14t54p3l.onstatic.studio/research/maturity-model/) (CCSMM) to emphasize cybersecurity as being the responsibility of the “whole community”. This is based on the idea that collaborating to provide real solutions during a cybersecurity incident is better and more effective than individual training concepts.















































			Participants trained by the CIAS at no cost

				0









## November 2025















## How to Register for a Cybersecurity Course





									To register for instructor-led courses, email us at [cias@utsa.edu](mailto:cias@utsa.edu). For web-based registrations, you will be redirected to one of our NCPC partner’s websites to complete registration.







Since the courses above have been developed though DHS/FEMA, you may need to register with your State’s Homeland Security Training Office to attend and/or participate. To register, visit FirstResponderTraining.gov. Click on your state for contact information. States that need to register through their office include: AK, AZ, CA, CO, CT, FL, GA, HI, IA, ID, IN, KY, KS, LA, MA, MD, MI, MN, MO, MS, NC, ND, NE, NH, NJ, NM, NV, NY, OH, OK, OR, PA, PR, RI, SC, SD, TN, UT, VA, VI, VT, WA, WI, WV, WY. All other states may contact us directly to register for the courses listed above.

NOTE: Students participating in FEMA-provided training, such as the courses listed here, are required to provide their FEMA Student Identification (SID) number. To obtain a SID, register online at [cdp.dhs.gov/femasid.](https://cdp.dhs.gov/femasid) There is no cost to register.











                        [

                            PER-412 • Cyber Threat Intelligence





										**



										**



                                                    ](#collapse-b0e78226aa36c6c73150)







[See Registration options at NCPC.org >>](https://www.nationalcpc.org/course/per-412/)

16 Hours. Instructor-Led.

The Cyber Threat Intelligence course will enable participants to perform basic tasks associated with an entry-level cyber threat analyst. At the end of the course the participants will be able to:

- Articulate the fundamental characteristics of cyber threat intelligence.
- Recognize the importance of the direction stage and how it guides cyber threat intelligence activities.
- Examine systems and information system data to identify cybersecurity threats and risks.
- Evaluate cyber threat information using one or more cyber threat analysis models.
- Compose a cyber threat intelligence report.
- Analyze and adjust priorities based on feedback from the customer.

Additionally, this course leverages a first-of-its-kind lab environment for an NCPC course. Students will be able to access the virtual-private cloud training environment from their own computers through almost any browser. Students only need their own computer and an internet connection to access the lab, activities and exercises.

**Target Audience**

This course was developed for government, private sector, and critical infrastructure technical, or security personnel or managers interested in expanding their cyber threat intelligence abilities. In addition, this source is designed for federal, state, local, regional, tribal, territorial, and private organizations. 

**Prerequisites**

This course is a hands-on, performance-based course for entry-level cyber threat analysts. Previous experience with cybersecurity in an IT support, IT administration, Network administration, or IT Security management role is recommended.










                        [

                            PER-342 • Identifying, Prioritizing, and Assessing High Value Assets





										**



										**



                                                    ](#collapse-49f78cc6aa36c6c73150)







[See Registration options at NCPC.org >>](https://www.nationalcpc.org/course/per-342/)

8 Hours. Instructor-Led.

Every organization has critical information and technology assets that are essential to its business operations and require enhanced security. Organizational resources that can be dedicated to cybersecurity are finite; therefore, those resources should be applied deliberately and strategically, focusing on the most important assets.

This course provides participants with the essential understanding, structured processes and resources needed to develop and implement a High Value Asset (HVA) program, enabling them to strategically allocate resources and enhance their cybersecurity posture against prevailing threats. Participants will learn to apply structured methodologies and resources to enhance their organization’s cybersecurity program by focusing protective efforts on its most critical assets.

The course is designed to align with the Federal HVA Program but provides a scalable and flexible approach that will assist any size SLTT organization to identify its critical assets based on its individual requirements. After being guided through a systematic, five-step process, this course will enable participants to identify their high value assets (HVAs), prioritize them, assess them and create a remediation action plan.

**Objectives**

- Identify key critical asset stakeholders in their organization and community
- Identify their mission essential functions (MEFs) and identify the assets needed to support those MEFs
- Prioritize critical assets also known as high value assets (HVAs) resulting in an HVA inventory
- Assess their HVAs against the NIST Cybersecurity Framework resulting in a remediation action plan

**
Target Audience**

Government, private sector and critical infrastructure decision makers, mid-level management, policymakers, administrators, information security and cybersecurity personnel. The course is also applicable for individuals in any size organization or agency who has an interest and/or influence to integrate High Value Assets (HVA) processes into their cybersecurity program.










                        [

                            AWR-136 • ​​Developing Cybersecurity Resiliency for Everyone





										**



										**



                                                    ](#collapse-e406de36aa36c6c73150)







4 Hours; .4 CEUs; Instructor-Led.

This discussion-based, non-technical course is an introduction to cybersecurity that provides individuals, community leaders and first responders with information on how cyber-attacks can impact, prevent and/or stop operations and emergency responses in a community. The ​​Developing Cybersecurity Resiliency for Everyone course provides a cursory introduction to cybersecurity vulnerabilities, risks, threats and countermeasures and introduces actions communities can take to establish a cybersecurity program. It introduces the Community Cybersecurity Maturity Model (CCSMM) as a framework for understanding community cybersecurity and offers a brief introduction to low or no-cost approaches to securing a community against cybersecurity threats and attacks; setting the stage for further efforts in which a community can build a cybersecurity program.

**Course Objectives**

- Identify reasons why communities are vulnerable to cyber attack
- Differentiate between the levels of cybersecurity threats
- Recognize that terrorists are capable of using, and planning to use, computers to attack American communities and citizens
- Describe how everyone is affected by and has a role in cybersecurity efforts
- List ways cyberattacks can affect the physical world
- Recognize the purpose of the Community Cyber Security Maturity Model
- State one technique for enhancing security awareness among community leaders
- Give one example of how a community can share cybersecurity-related information
- Identify at least two kinds of exercises
- Recognize that cybersecurity exercises are as important as other exercises to protect their organization, community, state and nation










                        [

                            AWR-366-W • Developing a Cyber Security Annex for Incident Response





										**



										**



                                                    ](#collapse-dd101a96aa36c6c73150)







6 Hours. Web-based.

[Click Here to Register](https://teex.org/class/AWR366/)

Cyber-attacks occur more frequently and have become increasingly sophisticated. Cybersecurity events now have the potential to significantly disrupt the business operations of government and critical infrastructure services. Public and private sectors, in the United States, are at increasing and continual risk of surprise attacks from nation-state and non-state actors. (Burgess, 2018)

The National Response Framework describes how preparedness can be achieved by developing an incident annex for each hazard. Incident annexes describe coordinating structures used to deliver core capabilities and support response missions unique to a specific type of incident. Incident annexes describe specialized response teams, resources, roles, responsibilities and other scenario-specific considerations.

At the end of this course, participants should possess the fundamentals needed to design and develop a cyber annex for states, locals, tribes, and/or territories (SLTTs). It addresses what the annex is, how it is used, who should participate in the design, implementation and execution.

**Course Objectives**

- Describe the purpose and importance of a cyber annex and will be able to summarize the scope and purpose of a cyber annex
- Identify various roles and responsibilities included in the development of a cyber annex
- Identify various types of cyber incidents
- Recognize how severity and impact influence escalation processes
- Recognize the components of an incident response plan and the functions they serve in the cyber annex
- Describe the components needed to establish an incident response team
- Summarize aspects of information sharing
- Determine activities needed for training and exercises
- Identify a variety of resources available for cyber annex development

**
Target Audience**

Personnel assigned to work in the jurisdiction’s emergency operations center, policy makers, elected and/or appointed officials, emergency responders, IT personnel with responsibilities for identifying and responding to cyber events for SLTT government, private industry and critical infrastructure representatives.










                        [

                            AWR-381-W • Establishing an Information Sharing and Analysis Organization





										**



										**



                                                    ](#collapse-378b43f6aa36c6c73150)







8 Hours; .8 CEUs; Web-based.

[Click Here to Register](https://teex.org/class/AWR381/)

This course assists communities of interest to establish an Information Sharing and Analysis Organization (ISAO). The course will introduce the value proposition of creating an ISAO and provide considerations to joining an existing ISAO. The course will closely follow the guidance provided by the ISAO Standards Organization (ISAO SO), whose mission is to "improve the nation's cybersecurity posture by identifying standards and guidelines for robust and effective information sharing and analysis related to cybersecurity risks, incidents, and best practices".










                        [

                            AWR-398-W • Introduction to ISAOs





										**



										**



                                                    ](#collapse-431d08e6aa36c6c73150)







2 Hours. Web-based.

[Click Here to Register](https://teex.org/class/AWR398/)

This course is designed to introduce the basics of the cybersecurity information sharing processes. Participants will have an increased knowledge of cybersecurity information sharing and an understanding of the steps taken to join or establish an Information Sharing and Analysis Organization (ISAO) or Information Sharing and Analysis Center (ISAC).

**Course Objectives**

-

The importance of Cybersecurity Information Sharing

-

Information sharing organizations and what they do

-

Steps for cyber-security information sharing and analysis










                        [

                            MGT-301 • Community Cybersecurity Preparedness Simulation





										**



										**



                                                    ](#collapse-6d2b4906aa36c6c73150)







[See Registration options at NCPC.org >>](https://www.nationalcpc.org/course/mgt-301/)

Instructor-Led. 8 Hours.

This course is designed as a tabletop activity simulating a community-wide cybersecurity event. Using a gamification approach, participants will strategize with a diverse group of stakeholders to plan for and respond from a cybersecurity incident that could have cascading effects across a community.

Specifically, this training will encourage participants to discuss budgeting and planning strategies; coordinate with other community stakeholders to respond to a cyber incident; and will inform participants of various recovery aspects that may be included in a cybersecurity program.










                        [

                            MGT-473 • Organizational Cybersecurity Information Sharing





										**



										**



                                                    ](#collapse-89007736aa36c6c73150)







[See Registration options at NCPC.org >>](https://www.nationalcpc.org/course/mgt-473/)

16 Hours. Instructor-led.

This course introduces fundamental cyber information sharing concepts that can be incorporated into a cybersecurity program for both inside and outside an agency or organization. It introduces the purpose and value of information sharing and how sharing can assist with cyber incident preparedness and response before, during and after a cyber incident occurs. It will identify types of shared cyber information; explore when to share information; and will explore attributes found when reporting cyber information.










                        [

                            MGT-478 • Community Cybersecurity Information Sharing Integration





										**



										**



                                                    ](#collapse-94e4bd06aa36c6c73150)







[See Registration options at NCPC.org >>](https://nationalcpc.org/course/mgt-478/#locations)

Instructor-Led. 16 Hours.

This course will introduce foundational cybersecurity information sharing concepts that can be leveraged to build a community information sharing collaborative. It will establish the purpose and value of community information sharing; and will explore how sharing can assist communities with cyber incident preparedness and response before, during and after a cyber incident occurs.

Course content will assist participants to recognize common types of shared cyber information; understand when to share cyber information with trusted entities and partners; and will explore how to build trusted community cybersecurity partnerships and collaborations. At the end of this course, participants will be able to identify activities needed to establish a community cybersecurity information sharing collaborative.

This will include governance; creating public and private partnerships; services and capabilities; and coordinating efforts to prevent, mitigate, and counter attacks for a community.

**Objectives**

- Explain how cybersecurity information sharing can assist to prevent, detect, respond and recover from cyber-attacks
- Analyze partnerships and trust needed for an effective information sharing capability
- Recognize the components of a successful community cybersecurity information sharing collaboration
- Examine the steps to integrate cybersecurity information sharing into a community cybersecurity collaboration

**Target Audience**

Government, private sector and critical infrastructure decision makers, mid-level management, policymakers, administrators, information security and cybersecurity personnel and individuals with interest and influence to recommend or build a community cybersecurity information sharing collaborative.

######  










                        [

                            MGT-333-W • Organizational Cybersecurity Policy Essentials





										**



										**



                                                    ](#collapse-a8a5d076aa36c6c73150)







4 Hours; Web-based.

[Click Here to Register](https://teex.org/class/MGT333/)

Organizations have increasingly been the target of cyberattacks that are preventable. One of the first steps to preventing cybersecurity incidents is developing and implementing cybersecurity policies in the organization. Developing robust cybersecurity policies is crucial for organizations to safeguard their digital assets and maintain operational resilience. Policies provide clear guidelines, define security standards, and establish procedures to protect against cyber threats such as data breaches, ransomware attacks, and unauthorized access. Organizations can mitigate risks, ensure compliance, and foster a security-conscious culture by implementing effective policies.

This web-based training is designed to help participants implement a comprehensive cybersecurity policy process. This course uses activities to help participants practice the various steps in each cybersecurity policy lifecycle phase. Specifically, this course is designed to enable participants to apply cybersecurity policy activities to enhance an organizational cybersecurity program.

**Objectives**

- Understand the key components of cybersecurity policies
- know how to define the content that should be included in a cybersecurity policy
- explain additional security policies that should be implemented within an organization
- highlight challenges or obstacles in the cybersecurity process and know what steps to take to overcome the challenges or obstacles

**
Target Audience**

This course is designed for critical infrastructure managers, local government and private sector management, policymakers, emergency management, information security and cybersecurity personnel and managers. Individuals will be targeted whose official duties are part of the strategic planning process associated with successful agency/organizational operation, data integrity and data security.










                        [

                            MGT-364-W • Using the Community Cyber Security Maturity Model to Develop a Cybersecurity Program





										**



										**



                                                    ](#collapse-a52044e6aa36c6c73150)







2 Hours. Web-based.

[Click Here to Register](https://teex.org/class/MGT364/)

Using the Community Cyber Security Maturity Model to develop a cybersecurity program will enable community leaders, network/security personnel and those individuals involved in developing or maintaining plans used for and throughout the community. This course will assist participants to understand what is required to develop a coordinated, sustained, and viable community cybersecurity program. The course will introduce participants at all levels to the DHS-supported Community Cyber Security Maturity Model (CCSMM) and can be used to guide communities and states in developing their own CCSMM-consistent cybersecurity programs. Participants will be introduced to different resources that can be used for a community program.

**Course Objectives**

-

Explain why the Community Cyber Security Maturity Model (CCSMM) was developed and summarize the purpose of the model

-

Learn how to use the CCSMM to develop a cybersecurity program in their community

-

Be able to explain how metrics, technology, training, processes and procedures, and finally assessment fit into the overall process of improving community cybersecurity at all levels

-

Gain a clearer understanding of additional DHS, NIST and other resources and be able to recall government, regulatory and industry standard resources to be used for community cybersecurity efforts



























						“The practical exercises and the class discussion [were most valuable] as I learned a lot from listening into my classmate's issues and problems concerning building an ISAO. The structured approach of the course and all the other info available was like giving us a Swiss Army knife – a multi-utilitarian tool for all our needs for establishing an ISAO! Thanks! The instructors really knew their subject matter well and were able to convey it in a readily absorptive manner!”


								Community Cybersecurity Information Sharing Integration Course






						“I needed a roadmap that would allow us to develop a statewide organization, and that's what the core of this class provided.”


								Community Cybersecurity Information Sharing Integration Course






						“The documents that came with the course is the MOST valuable asset that I have. It has all the answers to my planning questions and best helps me and the "Why" we want to share information. . . that is so critical to convey because from my experience it’s other people that want to stop the information sharing and it’s up to me, in my experience, to try to convince them otherwise. Having executive level examples makes it easier for a tech guy like to me answer with a different mindset. There is so much information in this document and most organizations can use this as a foundational Information sharing guideline.”


								Organizational Cybersecurity Information Sharing Course






						“The part that was most valuable to me [in the Community Cybersecurity Information Sharing Integration Course] was gaining knowledge of all of the community tools and groups that are already established for providing trusted information.”


								Community Cybersecurity Information Sharing Integration Course




















			Tagged free cyber security courses, free cyber security training, free cybersecurity resources, national cybersecurity preparedness consortium, NCPC, no cost training
