Cybersecurity training built around how your agency defends its systems and earns its authorizations

Taught by federal security practitioners and RMF assessors, and delivered your way: onsite, live online, or self-paced.

Graduate School USA instructors and federal staff working together

Trusted across the federal government

Since 1921
training the federal workforce
500,000+
government employees trained
125+
federal agencies served
200+
federally experienced instructors
400+
courses and certificates
All levels
across the federal cybersecurity curriculum
U.S. Department of AgricultureU.S. Department of the TreasuryU.S. Department of CommerceU.S. Department of EnergyU.S. Department of Veterans AffairsU.S. Department of DefenseU.S. Department of Homeland SecurityU.S. Department of Health and Human ServicesU.S. Department of JusticeU.S. Department of the InteriorU.S. Department of LaborU.S. Department of TransportationU.S. Office of Personnel ManagementU.S. General Services AdministrationU.S. Department of StateNASA

Agency seals reflect organizations Graduate School USA has trained. They do not imply endorsement by, or affiliation with, any federal agency.

Three ways to train your team

Every format draws on the same practitioner-built cybersecurity curriculum and instructors who have done the work. Choose what fits your headcount, timeline, and budget, or combine them.

  • Private group training: we bring NIST 800-53, zero trust, or incident response to your team, scoped to the systems they defend
  • Open enrollment: send one or two people to scheduled classes like CISSP Certification Prep, live online or in Washington, DC
  • Self-paced eLearning: FedRAMP, CMMC 2.0, and NIST 800-53 courses your staff complete around on-call and audit schedules
A federal employee working through a Graduate School USA course on a laptop
A Graduate School USA advisor meeting one-on-one with an agency client

Private group training

Onsite delivery lets a security team work on its own material: the NIST SP 800-53 controls it is tailoring, the cloud package it is reviewing before authorization, the incident it handled last quarter. Sessions are shaped around the systems your agency has to get authorized and keep authorized.

  • Any course or certificate in our cybersecurity catalog, delivered onsite, live online, or blended
  • A new course built to your specification when nothing off-the-shelf fits
  • Scheduled around your calendar, for a cohort of any size
  • Rostering, progress, and completion reporting for the whole group

Open enrollment

When one analyst is sitting for the CISSP, or a single staff member has just inherited responsibility for a security plan, a scheduled public class is the practical option. Live sessions such as CISSP Certification Prep and FPM 513 run throughout the year.

  • A published schedule across the federal cybersecurity curriculum, entry to advanced
  • Live online, or in person at 1050 Connecticut Ave NW in Washington, DC
  • No minimum headcount and no setup: register and go
  • The same instructors and materials as our private cohorts
A Graduate School USA instructor leading a federal class

Self-paced eLearning

Most of this catalog is self-paced, from Cybersecurity Fundamentals for Government Employees and Zero Trust Fundamentals through both NIST 800-53 levels. It fits staff who need one compliance topic on a deadline, and teams that cannot leave their systems unattended.

  • Finish a self-paced course like Zero Trust Fundamentals, then take the instructor-led class free within a year
  • Knowledge checks and applied practice on control selection, tailoring, and incident handling, not slides to read
  • An always-available AI coach grounded in the course material when a NIST 800-53 control reads ambiguously
  • Enroll one analyst or the whole security team, with completion tracking ahead of an ATO deadline

A cybersecurity curriculum mapped to federal frameworks

From security fundamentals and zero trust to NIST 800-53, FedRAMP, CMMC, and CISSP prep, every course is written for the controls, mandates, and systems government teams work with every day.

Security fundamentals, zero trust, and incident response

Baseline defensive skills, zero trust concepts, and incident handling for every federal team.

CISSP certification and information protection

Professional-level credential prep plus counterintelligence tradecraft for protecting sensitive data.

Data, programming, and analytics for security teams

The Python, SQL, and data skills analysts use to automate defenses and investigate incidents.

Vetted procurement, right from the GSA Schedule

Graduate School USA is a GSA Multiple Award Schedule contract holder, allowing federal agencies and other qualifying organizations to confidently purchase our services.

  • GSA MAS contract 47QRAA24D004K, SINs 611430 (professional training) and 541611 (management/administrative consulting)
  • Held as American Public Training LLC d/b/a Graduate School USA; UEI LA83MCFN1ST3; CAGE 99AA0
  • We work with your training office on the paperwork, whether a Schedule order, purchase order, or an SF-182.
Graduate School USA staff welcoming agency colleagues
A historical Graduate School USA faculty and leadership gathering, reflecting the institution's roots as the USDA Graduate School since 1921

An established federal training institution

Graduate School USA's federal cybersecurity curriculum is designed and taught in-house by practitioners who have defended federal systems and networks, not licensed from a generic library.

  • Founded 1921 as the USDA Graduate School; 500,000+ government employees trained across 125+ agencies
  • ACCET-accredited (ACCET is a U.S. Department of Education-recognized accreditor)
  • Center for Leadership and Management runs ECQ-aligned executive development, including the Executive Potential Program since 1995
  • 200+ federally experienced subject-matter experts across 400+ courses and certificates
  • Available on an active GSA MAS Schedule (SINs 611430 and 541611)

Questions agencies ask

The answers training officers and program directors ask for most, in one place.

How does my agency buy training from Graduate School USA?
Graduate School USA holds GSA Multiple Award Schedule contract 47QRAA24D004K (SINs 611430 and 541611), so you can place a pre-priced order directly under FAR Subpart 8.4 without running an open-market procurement. We accept the SF-182, Schedule orders, government purchase orders, and purchase cards for micro-purchases.
Can we pay with an SF-182?
Yes. We accept the SF-182, purchase orders, and GSA Schedule orders under contract 47QRAA24D004K, and our group training team works with your training office on the paperwork.
What is the difference between private group training and open enrollment?
Open enrollment classes are scheduled public sessions anyone can register for, taken live online or at our Washington, DC campus at 1050 Connecticut Ave NW. Private group training delivers a course for your agency's own cohort, tailored to your mission and delivered onsite, live online, or blended.
Can employees train self-paced, and still take the live class later?
Yes. Our self-paced online courses let a learner start anytime and work at their own pace, and when you buy the self-paced course the learner may also attend the live instructor-led course for free within one year.
Can courses be tailored to our agency?
Yes. We tailor existing courses to reflect your agency's mission, policies, and real cases, and we can develop new courses for unique requirements, all delivered under GSA contract 47QRAA24D004K.
Can training be delivered virtually or in person?
Both. Courses are offered as live virtual instruction or in-person onsite at your facility or at our Washington, DC location, and some programs blend live sessions with self-paced work.
What if an employee needs to repeat a class?
We offer one free retake of a class within one year, so a first attempt is never wasted if someone is reassigned, deployed, or needs a refresher before applying the material.
What's new in your federal cybersecurity training?
Our curriculum is refreshed to current federal law, policy, and practice; we added new AI courses for the federal workforce; courses now run in a modern learning portal, and self-paced courses add an always-available AI coach; and self-paced online options let a learner start anytime and still take the live class for free within a year.
Will this help our system owners actually earn and keep an ATO, or is it general security awareness?
Yes. The Risk Management Framework track covers control selection, implementation, and security planning, then moves to advanced assessment, tailoring, and enterprise program management under NIST SP 800-53. FPM 513: IT Infrastructure and Architectural Design supports the design side of the same work. Instructors include federal security practitioners and RMF assessors.
We buy cloud services rather than build them. Is there anything for the acquisition and oversight side?
Both FedRAMP for Agency Buyers courses are written for the buying side: one covers the authorization process and cloud service selection, the other covers package due diligence and cloud security program management. If your contractors fall under CMMC, Understanding CMMC 2.0 for Federal Contractors covers those requirements. Both are self-paced, so contracting and program staff can take them without waiting for a scheduled date.

Plan your agency's cybersecurity training

Tell us your topics, headcount, and timeline, and we'll propose the right mix for your team.

Group training team
onsite@graduateschool.edu
Main line: (888) 744-4723

Required