Scaling Your Cybersecurity and Privacy Program

Scaling Your Cybersecurity and Privacy Program

1h 23mIntermediate2022-09-14

Authors

Nishant Bhajaria

Nishant Bhajaria

Privacy and Security Leader and Digital Product Architect

Course details

As cybersecurity becomes a key part of a company’s risk/trust strategy, it can become difficult to adapt and scale such a program. In this course, Nishant Bhajaria helps companies design an automation-powered and data-driven cybersecurity program.

Join Nishant as he shows you how to: categorize cybersecurity into four key dimensions; identify, protect, detect, and recover when it comes to security risk; identify strengths and gaps for various cybersecurity initiatives; build a cybersecurity capability maturity model for your business; categorize your company’s capabilities along the spectrum of basic, advanced and leading; and more. If you’re trying to figure out where and how to invest your cybersecurity resources, this course can help you build better security capabilities and measure their effectiveness for audits and assessments—thereby building trust with customers while also improving your compliance posture.

Skills covered

Business StrategyIncident ResponseCybersecurityBusiness Analysis and StrategyLeadership and ManagementOne-Off

Concepts

Introduction

  • Protecting through growth and innovation
  • Why you need a scalable cybersecurity program
  • Helping engineers scale cybersecurity

Identifiying Cybersecurity Risks

  • Why risk identification is critical
  • How to implement asset management
  • Compliance and governance as risk identtification
  • M&A security due diligence and integration
  • Risk analysis
  • Third-party risk management

Protecting from Cybersecurity Risks

  • Identity management and access control
  • Awareness and training
  • Data privacy
  • Security architecture design
  • Vulnerability management
  • Patch management
  • Product security
  • Cloud security
  • Infrastructure security

Detecting Cybersecurity Risks

  • Threat intelligence and hunting
  • Continuous security monitoring
  • Insider threat

Cyber Response and Recovery

  • Red team
  • Incident response and management
  • Business continuity and recovery

Conclusion

  • A shifting target
40,000 Toman