Certification Programmes

MCSI Certification

MBT - Certified Blue Teamer

An MCSI qualified professional Blue Teamer is capable of delivering the full gamut of tasks for the SOC: malware analysis, threat hunting, threat intelligence, digital forensics, incident response and cyber defence.

Students who have successfully achieved their MBT Certification from MCSI can apply for Blue Teamer jobs worldwide with the confidence that they have the competencies the industry is seeking.

Register Now Course Overview
Intermediate Level MCSI Certification Intermediate
ic-certificate Certification
ic-clock 600+ hours
cpe-points 186
ic-money US$450
No Expiry, No Renewals


MCSI Certifications are world-class. The content is cutting-edge, uniquely-designed, hands-on and challenging. Our exercises teach in-demand skills that are immediately applicable in the field. MCSI's unique approach helps students around the world advance their careers.

This Certification has no expiry date. It has no renewal fees, no hidden fees, and is accessible with no time limits.

MCSI Certified Blue Teamer:

  • Investigate compromised machines and uncover what the attackers did
  • Rapidly reverse engineer and analyse malware samples to understand adversary capabilities
  • Identify anomalies and indicators of attacks on the network that enterprise security products have failed to catch
  • Track ongoing attack campaigns and provide actionable advice to teams in charge of defending the network(s)
  • Harden and protect networks against the most common attack vectors


Training Modules

  • Quickstarter: Lab Setup - 2 exercises
  • Quickstarter: Malware Analysis - 5 exercises
  • Lab setup - 8 exercises
  • Binary Classification - 5 exercises
  • Malware Analysis Fundamentals - 5 exercises
  • Pandas Fundamentals - 9 exercises
  • Cyber Defence - 17 exercises
  • Threat Hunting - 7 exercises
  • Situational Awareness - 5 exercises
  • Incident Response Challenges - 5 exercises
  • Memory Forensics - 5 exercises
  • Open-Source Intelligence - 5 exercises
  • Threat Intelligence (Offensive) - 5 exercises
  • Static Code Analysis - 5 exercises
  • Threat Hunting Challenges - 4 exercises
  • Cyber Defence Challenges - 3 exercises
  • Malware Analysis Challenges - 7 exercises
  • Enterprise Investigations - 6 exercises
  • Real-Time Threat Detection Challenges - 4 exercises

Sample Exercises

Below are three (3) exercises from the 100+ exercises available in MBT - Certified Blue Teamer:

Use Sysmon For Rapid Malware Analysis (Novice)


Extract Malware From A Memory Dump Using The Volatility Framework (Advanced Beginner)


Build A Multithreaded Python Tool To Convert A Redline Outputs To Parquet At Scale (Competent)


Enrolment and Fees


US$450 (+ GST if you're based in Australia).

Practical exercises must be completed online using MCSI's Online Learning Platform.

How to enrol

  1. Login/Register for MCSI's Online Learning Platform
  2. Select `Shop` from the left-side menu
  3. Find the MBT - Certified Blue Teamer, select `Buy` and proceed through the checkout process. You can purchase using a Credit Card or PayPal
  4. Once you have enrolled in the MBT - Certified Blue Teamer, the curriculum unlocks immediately
  5. In the left-side menu of the platform, select `Training & Education` then `MCSI Curriculums`, and you will see the MBT - Certified Blue Teamer listed
Register Now

Terms and Conditions

  • No discounts
  • No refunds
  • No transfers
  • No renewal fees
  • No hidden fees
  • No time limits

Cooling-Off Policy

Receive a full refund if you change your mind about a purchase within 24 hours. No questions asked.

Read the full details here.

Student Testimonials

Here's what students say about the MCSI Method™ and our Online Learning Platform:

Student Testimonials


Training Laptop Requirement

This course can be completed on a standard training laptop. Below are some specifications that guarantee you can complete this course with your machine:

  • 64-bit Intel i5/i7 2.0+ GHz processor or equivalent
  • 8GB of RAM
  • Ability to run at least (1) virtual machine using Virtual Box, or an equivalent virtualization software
  • Windows 10 or later, macOS 10 or later, or Linux
  • Local administrator privileges
Do you support older operating systems?

Yes. Many of the exercises can be completed on older OS versions. Several of our students are successfully using older equipment to learn cyber security.

Proficiency in the English language

Ability to comfortably read and understand IT documentation written in English. Ideally, an IELTS score of 6.5 with no band less than 6 (or equivalent).

Note: You can register for this course without having undertaken an English test.

Programming Skills

We recommend that you have some experience in software programming prior to registering for this course.

The preferred programming languages for this course include: Python and PowerShell.

Knowledge of basic C and Assembly will also prove helpful for the reverse engineering exercises.

Here's a list of things for you to confirm whether you're at the right level:

  • Writing scripts in Python and PowerShell
  • Using command line utilities and tools
  • Operating virtual machines
  • Troubleshooting and resolving software errors

Frequently Asked Questions

What is the MCSI Method™?

Common Questions

  • Are solutions included in certifications and bundles?
    • No. Our method of teaching cyber security consists of challenging you with real-world problem statements that you're expected to research and solve by doing your own research. This is how you'll be expected to work in the field. When you fail an exercise, we provide you with constructive feedback to improve and try again.
  • Do the videos provides the answers to exercises?
    • No. The videos teach concepts, mindset, methodologies, procedures and professional skills such as report writing, interviewing and preparing proposals.
  • Do bundles, training content, or certificates ever expire? Am I expected to buy again in the future?
    • Once purchased, bundles and certificates are unlocked forever. They are no recurring or ongoing fees.
  • Do I need to buy the training and the certification separately?
    • No. The price provided covers both. You only pay once.
  • Do you offer any special offers and discounts?
    • No.
  • If I can't solve the exercise where do I go for help?
  • Who reviews and marks exercises?
    • Trained cyber security instructors that work for Mossé Cyber Security Institute.
  • We can't pay via credit card. Can you raise an invoice for international wire payment instead?
    • Yes. Send us the list of bundles and certifications you want to purchase at [email protected]
  • Can I access a trial/demo the certification programmes prior to enrolling?
    • We provide a free curriculum with 82 practical exercises you can try.
    • The Free Curriculum teaches Security Tools, Penetration Testing, Red Teaming, Threat Hunting, Cyber Defence, GRC and Windows Internals.
    • Try the Free Curriculum
  • What is an `Unofficial Curriculum`?
    • An `Unofficial Curriculum` contains MCSI's practical exercises aligned to a non-MCSI Industry Certification syllabus.
    • We offer unofficial curriculums for the OSCP, ISACA CISA, ISACA CISM, ISACA CRISC, CCT ICE, CCSAS, CCT ACE.
  • Do you provide Continuing Professional Education (CPE) credits?
    • Yes. Every single exercise offers CPE credits. The number of credits earned depends on the difficulty of the exercise completed. Below are the CPE Credits achieve for an exercise in each difficulty:
    • Novice exercises = 1 CPE credits
    • Advanced Beginner exercises = 2 CPE credits
    • Competent exercises = 5 CPE credits
    • Proficient exercises= 8 CPE credits
    • Beyond Proficient exercises = 16 CPE credits
  • Are MCSI courses/certifications recognized and have value outside of Australia?
    • Yes. MCSI certifications have value worldwide and are recognized by employers looking for individuals with practical cyber security skills.
    • MCSI's training is 100% practical with real cybersecurity problems designed to teach immediately applicable skills in the field. To solve our practical exercises, students must do their own research and develop their own solutions.
    • While completing exercises, students also develop their own comprehensive cybersecurity portfolio of skills. Individuals use this portfolio to demonstrate their cybersecurity competencies to solve real industry problems to future employers or hiring managers.
  • Do I need to complete an exam to receive MCSI Certification?
    • No. MCSI Certifications are completed by solving practical cybersecurity exercises.

Career Outcomes

This certification successfully prepares you for the following roles:

  • Digital Forensics Analyst
  • Incident Responder
  • Security Analyst
  • Security Operations Centre (SOC) Analyst
Certification Detail

Training Curriculum and Certifications

Students unlock Certificates of Completion for every exercise they complete. Industry Certifications are unlocked upon achieving Skills Proficiency Milestones.




Obtain CPE points by solving exercises


Achieve multiple certifications


Receive help from instructors online

MCSI's MBT certification covers all six levels of the Australian Signals Directorate's Cyber Skills Framework. You will achieve a certificate upon reaching each level. You will earn an industry certification at Level 5. Click here to learn more.

ASD Skills Proficiency Level Curriculum Completion Requirement Scenarios Completion Requirement
MCSI Blue Team Learner Level 1 0% 0%
MCSI Novice Blue Teamer Level 2 20% 0%
MCSI Blue Team practitioner Level 3 50% 0%
MCSI Senior Blue Team Practitioner Level 4 70% 0%
MCSI Certified Principal Blue Team Practitioner Level 5 80% 0%
MCSI Certified Expert Blue Teamer Practitioner Level 6 95% 0%

As an MCSI Certified Blue Teamer you will be fully capable of performing the following:

  • Deploy and manage incident mitigation strategies and tools
    • Application whitelisting
    • Patching applications and operating system
    • Hardening user applications and operating system
    • Automated analysis and content filtering
    • Restrict administrative privileges
    • Network segmentation
    • Intrusion detection and response
    • Backup and recovery
  • Investigate and contain security intrusions on Windows systems
    • Using all log types and sources
    • Performing timeline analysis
    • Conducting impact assessments
    • Recover compromised systems
    • Writing detection rules
  • Analyse suspicious binaries and malware samples
    • Structured reverse engineering
    • Static and dynamic analysis
    • Rapidly identifying different malware types
    • Reverse engineering shellcode
  • Identify “unknown unknowns” in the network
  • Produce usable and actionable threat intelligence that assists business leaders make cyber security investment and divestment decisions
  • Write custom security tools to defend large-scale enterprise networks


Why MCSI’s Blue Teamer Certification is World Class

why MCSI

Comprehensive, Effective, Exceeds Standards

Holders of the MBT Certification have completed 100 practical online exercises thus demonstrating that they have the skills and knowledge in the following areas: cyber defence, digital forensics, threat hunting, reverse engineering and threat intelligence.

why MCSI

Internals Focused

Students who have obtained this Certification have demonstrated that they have a full understanding of the internals of Windows for digital forensics, incident response, threat hunting and malware analysis purposes.

why MCSI

Programming Oriented

The challenges that students have had to overcome successfully in order to obtain this Certification have required them to write software in C/C++, Golang, PowerShell, and Python. This guarantees that Blue Teamers certified by MCSI can write custom defence tools to defend large-scale enterprise networks.

MCSI students have submitted over 13,000 practical online exercises since December 2018.

Information Security Professionals made a median salary of $103,590 in 2020. Cybersecurity roles are regularly ranked #1 jobs in the United States.

Invest $450, and in 5 weeks, you will be ready to apply for jobs with a salary of $75,000 to $150,000 per year.
Why spend between $10,000 to $45,000 on tuition to only get theoretical courses and wait for 2 to 4 years for piece of paper?
Act Now! - You are in control! - Sign-Up Now!


We'll respond within 24 hours

Visit our Frequently Asked Questions (FAQ) page for answers to the most common questions we receive.

Ready to learn hands-on cyber security skills online?

Register Now