What is this programme?
The Cybersecurity Basics Certificate is a self-paced online course that teaches non-specialists how to recognise phishing and social engineering, protect accounts with password managers and multi-factor authentication, keep devices patched and backed up, and report a suspected incident correctly. It is written for office staff, remote workers, small-business owners and helpdesk newcomers, not for people already working in security operations. The document issued at the end is a certificate of completion from ecertificate.pro, an independent training provider — it is not an accredited award, not a regulated qualification, and it does not authorise anyone to carry out security testing or audits. There is currently no public lookup service for these certificates, so it is best presented as evidence of structured self-study alongside other proof of ability.
Who it is for
Office, remote and hybrid staff, small-business owners, and newcomers to IT helpdesk work who handle company accounts, customer data or payments but have never had structured security training. It also suits anyone planning a deeper technical security track later who wants the vocabulary and mental model first.
What you will be able to do
- Identify phishing, spear-phishing and invoice-fraud attempts by checking sender domains, link targets, attachment types and the pretext being used
- Set up unique credentials in a password manager and enable multi-factor authentication, choosing between one-time codes, authenticator apps and hardware keys
- Apply the confidentiality, integrity and availability model and least-privilege thinking to shared drives, admin accounts and device permissions
- Recognise malware and ransomware symptoms early, isolate an affected device, and run a 3-2-1 backup routine that is tested by restoring a file
- Configure a laptop, phone and home router safely: automatic updates, disk encryption, screen locks, WPA3, guest networks and cautious hotspot use
- Report an incident with the detail a responder needs — time, systems, accounts involved, actions already taken, and evidence left untouched
Modules
-
1
Threats, Attackers and the CIA Triad Defines confidentiality, integrity and availability, then maps everyday threats onto them: credential theft, data tampering, service outage and accidental loss. Covers who attacks and why — opportunistic mass campaigns, targeted fraud, and plain insider error — so that risk judgements stop being guesswork.
-
2
Identity, Passwords and Access Control Password strength in practical terms, why credential reuse is one of the most damaging everyday security habits, and how a password manager changes the arithmetic. Multi-factor methods are compared side by side, then least privilege and separate administrator accounts are applied to shared folders, devices and cloud storage.
-
3
Phishing and Social Engineering Breaks down the message patterns that actually work: display-name spoofing, look-alike domains, urgency and authority pretexts, payment redirection, and QR-code lures. Includes a repeatable checking routine and a first-ten-minutes response plan for the moment you realise you clicked something you should not have.
-
4
Malware, Ransomware and Device Hygiene How infostealers, trojans and ransomware arrive through attachments, fake installers and unpatched software, and which symptoms appear before encryption begins. Covers patching discipline, endpoint protection defaults, document macro and script settings, and a 3-2-1 backup routine verified by an actual restore.
-
5
Networks, Wi-Fi and Encryption in Plain Terms Explains HTTPS and TLS certificates, what the padlock does and does not prove, and the difference between hashing and encryption without the mathematics. Practical configuration follows: router administrator credentials, WPA3, guest and IoT network separation, firewall defaults, and realistic expectations of a VPN.
-
6
Data Handling, Reporting and Everyday Policy Sorts information into public, internal and sensitive, then attaches sharing, retention and disposal habits to each — including expiring share links and wiping devices before resale. Closes on incident reporting: what to capture, whom to tell, how to preserve evidence, and why reporting speed beats being certain.
How it works
Learning format
Self-paced written material, downloaded from your dashboard. No fixed schedule and no live sessions — you work through it when it suits you.
Material delivery
Everything appears in your dashboard as soon as your payment is confirmed. Files are served only to your signed-in session.
Prerequisites
None beyond comfortable everyday computer use — installing an app, using a browser, managing email. No programming, networking or command-line experience is assumed. Exercises rely on settings already present on a standard laptop and smartphone plus optional free browser and password-manager tools; no lab environment, virtual machine or paid software is needed.
Completion
You work through the six modules in your panel, pass the knowledge check at the end of each, and finish with a short multiple-choice review covering the whole course. Once every check is complete, the certificate is uploaded to the same panel within 24-48 hours and you are notified by email.
Your certificate
Once your completion is confirmed, we prepare your certificate and upload it to your dashboard, normally within 24–48 hours. You receive an e-mail as soon as it is there — you never have to chase it.
Refunds
Because the material is delivered digitally and immediately, purchases are non-refundable once the files have been made available to your account. The full terms are in our Refund Policy.