Cybersecurity Foundations (2020)
2hIntermediate2020-02-13
Authors

Malcolm Shore
Cybersecurity Expert, Former Director of GCSB
Course details
Set a rock-solid foundation for your network, users, and data by learning about the basics of cybersecurity. Security expert Malcolm Shore describes how to assess and mitigate risks using various cybersecurity frameworks and control standards, such as NIST, COBIT 5, and the Payment Card Industry Data Security Standard (PCI DSS). Malcolm details pertinent cyber threats and how they operate, including how cyber criminals hide their attacks, how advanced persistent threats (APTs) work, and even how to determine what's real and what's merely cyber fear, uncertainty, and doubt (FUD). Throughout the course, he also covers managing cyber risk; selecting and applying controls; and the overall cybersecurity lifecycle, from managing defense to responding to cybersecurity incidents when they occur.
Topics include:
- Dissecting cyber risk
- Working with NIST, COBIT, and other frameworks
- Exploring cybercrime
- The different stages of the cyber kill chain
- How cyber criminals hide their attacks
- Measuring incident management maturity
- Detecting and responding to attacks
Topics include:
- Dissecting cyber risk
- Working with NIST, COBIT, and other frameworks
- Exploring cybercrime
- The different stages of the cyber kill chain
- How cyber criminals hide their attacks
- Measuring incident management maturity
- Detecting and responding to attacks
Skills covered
Incident ResponseFoundationsCybersecurity
Concepts
0. Introduction
- 01 - Understanding the frameworks, standards, and technology that form what we know as cybersecurity
- 02 - What you should know
1. Frameworks and Controls
- 03 - The Orange Book - Early concepts in computer security
- 04 - Understanding the NIST Cybersecurity Framework
- 05 - Adopting the NIST Cybersecurity Framework
- 06 - Understanding the basics of cyber risk
- 07 - Analyzing cyber threats and controls
- 08 - Recording, reporting, and the risk context
- 09 - An advanced risk framework
- 10 - Managing security with COBIT
- 11 - COBIT for operational security
- 12 - Introduction to cybersecurity controls
- 13 - Cybersecurity control framework
- 14 - The ISF Standard of Good Practice
- 15 - ASD and its top controls
- 16 - Protecting payment card data
- 17 - Clouding the issues
- 18 - Securing things on the internet
- 19 - Making sure security is effective
2. Cyber Threats
- 20 - Understanding the cyber kill chain
- 21 - Revisiting traditional threats
- 22 - Botnets and the cyber crime industry
- 23 - Cloaking and alternate data streams
- 24 - Hiding using processes
- 25 - Controlling the target through a rootkit
- 26 - Understanding advanced persistent threats
- 27 - Ransomware - A modern form of extortion
- 28 - Hardware implants and other cyber FUD
3. Managing Cyber Incidents
- 29 - Incident management basics
- 30 - Measuring incident management maturity
- 31 - Detecting an attack
- 32 - Responding to an incident
Conclusion
- 33 - What's next