Cybersecurity Foundations: Governance, Risk, and Compliance (GRC) (2023)
1h 14mBeginner2023-05-30
Authors

AJ Yawn
Cybersecurity Expert, Founder and CEO at ByteChek
Course details
If you’re interested in landing a role in the booming cybersecurity industry, you should check out governance, risk, and compliance (GRC), one of the hottest new topics in the field. In this course, explore the fundamental skills and best practices of GRC to find out if it’s the right field for you. Instructor AJ Yawn shows you how to get started building out a GRC program using common frameworks such as NIST 800-39, SOC 2, HIPAA, PCI-DSS, NIST CSF, FedRAMP, CSA STAR, SOX, GDPR, and ISO 27001. Along the way, you’ll learn about some potential GRC career paths and the most important soft skills to develop as a GRC professional.
Skills covered
Governance, Risk, and ComplianceIncident ResponseLimited SeriesCybersecurity
Concepts
0. Introduction
- 01 - Get started in cyber with GRC
1. What Is GRC
- 02 - Origin of the GRC acronym
- 03 - What is governance
- 04 - What is risk
- 05 - What is compliance
- 06 - How do GRC and cybersecurity interact
2. Building a GRC Program
- 07 - Importance of GRC for companies
- 08 - Challenges of building GRC programs
- 09 - How can GRC tools help
- 10 - GRC Capability Model
- 11 - GRC tips and strategies
3. 10 Frameworks to Know
- 12 - NIST 800-39
- 13 - SOC 2
- 14 - HIPAA
- 15 - PCI-DSS
- 16 - NIST CSF
- 17 - FedRAMP
- 18 - CSA STAR
- 19 - SOX
- 20 - GDPR
- 21 - ISO 27001
4. GRC Careers
- 22 - What careers are there in GRC
- 23 - Key certifications to earn
- 24 - Important soft skills for GRC professionals
- 25 - Importance of technical skills for GRC professionals
Conclusion
- 26 - Next steps