Scaling Your Cybersecurity and Privacy Program
1h 23mIntermediate2022-09-14
Authors

Nishant Bhajaria
Privacy and Security Leader and Digital Product Architect
Course details
As cybersecurity becomes a key part of a company’s risk/trust strategy, it can become difficult to adapt and scale such a program. In this course, Nishant Bhajaria helps companies design an automation-powered and data-driven cybersecurity program.
Join Nishant as he shows you how to: categorize cybersecurity into four key dimensions; identify, protect, detect, and recover when it comes to security risk; identify strengths and gaps for various cybersecurity initiatives; build a cybersecurity capability maturity model for your business; categorize your company’s capabilities along the spectrum of basic, advanced and leading; and more. If you’re trying to figure out where and how to invest your cybersecurity resources, this course can help you build better security capabilities and measure their effectiveness for audits and assessments—thereby building trust with customers while also improving your compliance posture.
Join Nishant as he shows you how to: categorize cybersecurity into four key dimensions; identify, protect, detect, and recover when it comes to security risk; identify strengths and gaps for various cybersecurity initiatives; build a cybersecurity capability maturity model for your business; categorize your company’s capabilities along the spectrum of basic, advanced and leading; and more. If you’re trying to figure out where and how to invest your cybersecurity resources, this course can help you build better security capabilities and measure their effectiveness for audits and assessments—thereby building trust with customers while also improving your compliance posture.
Skills covered
Business StrategyIncident ResponseCybersecurityBusiness Analysis and StrategyLeadership and ManagementOne-Off
Concepts
0. Introduction
- 01 - Protecting through growth and innovation
- 02 - Why you need a scalable cybersecurity program
- 03 - Helping engineers scale cybersecurity
1. Identifiying Cybersecurity Risks
- 04 - Why risk identification is critical
- 05 - How to implement asset management
- 06 - Compliance and governance as risk identtification
- 07 - M&A security due diligence and integration
- 08 - Risk analysis
- 09 - Third-party risk management
2. Protecting from Cybersecurity Risks
- 10 - Identity management and access control
- 11 - Awareness and training
- 12 - Data privacy
- 13 - Security architecture design
- 14 - Vulnerability management
- 15 - Patch management
- 16 - Product security
- 17 - Cloud security
- 18 - Infrastructure security
3. Detecting Cybersecurity Risks
- 19 - Threat intelligence and hunting
- 20 - Continuous security monitoring
- 21 - Insider threat
4. Cyber Response and Recovery
- 22 - Red team
- 23 - Incident response and management
- 24 - Business continuity and recovery
Conclusion
- 25 - A shifting target