Now active in
πŸ‡³πŸ‡¬ Nigeria πŸ‡¬πŸ‡§ United Kingdom πŸ‡ΊπŸ‡Έ United States πŸ‡°πŸ‡ͺ Kenya πŸ‡ΏπŸ‡¦ South Africa and 99 other countries
AI Foundations Cyber Security
16 weeks Β· no security background needed

Learn to defend before you specialise.

Sixteen weeks on how attacks actually work, how defences are built around them, and where AI helps or quietly makes things worse. You finish able to read an incident and say what you would do next.

16 weeksFour phases, attacker to defender
LiveSmall cohort, taught in real time
ZeroSecurity background assumed
Global shortfall
4.8M
unfilled security roles
Cohort size
Small
so you get asked questions
Taught live, never recorded
Read an incident by week sixteen
01Why this field

The gap between attackers and defenders keeps widening.

Security is one of the few fields where demand has outrun supply for a decade and shows no sign of correcting. These are public industry figures, not ours, and each one is sourced.

4.8M Roles nobody can fill The global security workforce gap, which has grown almost every year it has been measured. ISC2 Cybersecurity Workforce Study
67% Teams say they are short staffed Most security teams report not having enough people to cover what they are responsible for. ISC2 Cybersecurity Workforce Study
Top 10 Fastest growing job families Security specialists sit among the roles employers expect to grow most this decade. World Economic Forum, Future of Jobs
No degree Required by most employers Security hires increasingly on demonstrated skill, which is unusual and works in your favour starting out. ISC2 hiring research

Figures describe the industry, not Brixgate outcomes. We are a new programme and we do not have placement statistics to quote yet. When we do, they will appear here with the same sourcing.

Learners working through a session together
Nobody here started knowing this Cohorts are deliberately mixed: career changers, graduates and people moving across from other fields.
02What the work looks like

An attack is a sequence, and every step is a chance to catch it.

This is the shape of a common intrusion. Defenders do not think in tools, they think in timelines like this one, and by week sixteen you will read one the same way.

Credential theft to data loss Teaching example
09:14

A convincing email arrives

Addressed correctly, referencing a real project, sent from a domain one character different from a supplier's.

09:16

Someone signs in on the fake page

The password is now in somebody else's hands. No alarm has gone off anywhere.

Catchable here: a second factor makes the stolen password almost worthless.
11:02

A login from an unusual place

Same account, a country nobody on the team is in, at a time that does not match their working pattern.

Catchable here: this is the signal most teams already collect and never look at.
11:40

Quiet looking around

Reading mail, finding out who approves payments, learning the shape of the organisation. Nothing is broken yet.

14:25

A mailbox rule is created

Replies from finance get moved out of sight, so the real owner never sees the conversation happening in their name.

Catchable here: new hiding rules are a reliable tell, and easy to alert on.
16:58

The actual damage

An invoice redirected, or a folder of client data copied out. This is the first moment anybody notices, and it is far too late.

Three of those six steps were catchable with things most organisations already own. Security work is mostly noticing, and noticing is a skill that can be taught from zero.

03Who it is for

Sixteen weeks is a real commitment. Make sure it is the right one.

This is you

Sixteen weeks will suit you

  • You want a change of field rather than a skill to bolt onto your current job.
  • You are curious about how things break, and patient enough to understand why.
  • You have never worked in security and would rather not start with a certification syllabus.
  • You can find six hours a week for four months and finish what you start.
This is not you

Look elsewhere in Foundations

  • You already work in security. AI in Cyber Security is the four week professional sprint.
  • You want something working in weeks rather than months. AI Automation runs six.
  • You are chasing a specific certification exam. We teach the understanding underneath them, not the exam itself.
04The sixteen weeks

Four phases. Attacker first, because defence makes no sense otherwise.

Most beginner courses start with policies and firewalls. We start with how things actually get broken into, because every defence worth building is a response to something specific.

WEEKS 01 β€” 04

How things work

You cannot defend a system you cannot describe. The unglamorous grounding, done properly.

  • Networks, without the certification jargon
  • How identity and access really work
  • The command line, enough to be useful
  • Where data sits and who can touch it
WEEKS 05 β€” 08

How things break

The attacker's view. Taught so you recognise it, in a closed environment built for it.

  • Phishing and why it keeps working
  • Weak configuration over clever exploits
  • Moving through a network once inside
  • What ransomware actually does
WEEKS 09 β€” 12

How to notice

The core of the job. Logs, signals and the judgement to tell a real event from noise.

  • Reading logs without drowning
  • What normal looks like, so odd stands out
  • Building an alert that is worth having
  • Writing up an incident clearly
WEEKS 13 β€” 16

Where AI fits

Honestly. It is genuinely useful in some places and actively dangerous in others.

  • Triage and summarising at volume
  • Attacks that use AI, and what changes
  • Why a confident wrong answer is worse here
  • Your final incident, investigated and defended
05What you leave with

Judgement, which is the part that does not come from a tool.

01

An incident you investigated

Worked end to end and written up the way a real team would need to read it, including what you could not determine.

02

A defender's instinct

Knowing what normal looks like so that unusual announces itself. This is the thing that takes sixteen weeks rather than six.

03

A clear view of AI's limits

Where it genuinely speeds up security work, and where trusting it confidently gets people hurt.

Wireshark Linux Splunk Burp Suite Claude

Everything runs in a lab environment we provide. Nothing here is ever pointed at a system you do not own.

06Cohorts

When the next one runs.

Cohorts are kept small on purpose. Dates below come straight from our scheduling system, so what you see here is what is actually open.

07FAQ

Questions people
actually ask

Still unsure? Message us on WhatsApp and a human will answer.

Waitlist

Places go to the list first.

Cohorts are small on purpose. When the next Cyber Security intake opens, the waitlist hears before the site does.

Dates, timetable and pricing sent before they go public.
First refusal on seats in the next cohort.
No commitment, and nothing to pay to hold your place.

We only use this to tell you when Cyber Security opens. No newsletter, and you can ask us to remove you at any time.

You are on the list.

We will email you the dates, the timetable and the pricing for the next Cyber Security cohort before any of it goes on the site.

08The rest of Foundations

Sixteen weeks is the long road.

If four months is more than you want to commit to right now, the shorter courses get you somewhere useful faster.