Cybersecurity Compliance Framework, Standards & Regulations

所在平台: Coursera

课程主页: https://www.coursera.org/learn/cybersecurity-compliance-framework-standards-regulations

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:网络安全合规框架、标准与法规 课程概述:当前,网络威胁对各个组织构成了不断的挑战,造成数十亿美元的损失,影响范围从政府到小企业。你准备好为解决方案贡献力量了吗? 本课程将深入介绍网络安全的基本原则、行业标准、法规和审计流程。学员将探讨信息安全与合规的基本概念,涵盖治理、风险、合规、网络安全框架和流程管理等主题。 课程大纲: 1. 信息安全和合规介绍:本模块为组织保护敏感数据和遵守法规提供全面概述,介绍治理、风险和合规(GRC)策略及工具,讲解NIST网络安全框架(CSF 2.0)的应用和组件。定稿,了解不合规的后果及标准化流程的重要性。 2. IT服务管理与风险治理基础:本模块介绍IT服务管理(ITSM)、风险管理及人工智能(AI)的伦理考量,通过视频、阅读材料、活动和测验,学员将掌握ITIL、风险管理框架及AI伦理的基本知识。 3. 网络安全法律法规理解:本模块深入探讨网络安全的法律法规,从美国及全球视角分析,介绍HIPAA、GDPR和PCI DSS等重要立法,学习确保合规的方法。 4. 网络安全标准与审计理解:本模块探讨网络安全标准和审计,为学员提供行业标准及审计流程的全面理解,学习如何有效应用OWASP、NIST、ISO和IEEE等标准。 5. 期末项目:在本模块中,学员将完成一个期末项目,展示对网络安全框架、风险管理及标准与法规的理解。 通过本课程的学习,学员将获得必要的知识和技能,帮助组织有效管理其网络安全风险与合规要求。

课程大纲

Name:Introduction to Information Security and Compliance

Description:Information security and compliance are essential aspects for organizations that want to protect their sensitive data and adhere to regulations. This module provides a comprehensive overview of the guidelines, practices, policies, and technologies involved in safeguarding digital assets. First, you’ll be introduced to the Governance, Risk, and Compliance (GRC) strategy and tools. Then, you’ll learn about the NIST Cybersecurity Framework or CSF 2.0, which guides organizations in managing cybersecurity risks. You’ll also gain insights into CSF components, functions, and tier levels. Further, you are going to learn about security compliance that helps organizations protect their data, assets, and reputation, as well as about the repercussions of non-compliance with laws, regulations, or industry standards. You will also gain knowledge regarding the use of standardized processes in an organization that allows for a centralized structure and the concepts of automation and orchestration, which are essential to cybersecurity, streamlining processes, and reducing manual intervention. Finally, you learned about change management, which helps you adapt to new technologies and regulations.

Name:Foundations of IT Service Management and Risk Governance 

Description:This module offers a comprehensive introduction to IT service management (ITSM), risk management, and ethical considerations in artificial intelligence (AI). Participants will explore key frameworks and processes essential for effective IT service delivery, risk mitigation, and ethical AI implementation. Through a combination of videos, readings, activities, and quizzes, participants will gain practical insights into ITIL, risk management frameworks, and AI ethics.

Name:Understanding Cybersecurity Laws and Regulations 

Description:This module provides an in-depth exploration of cybersecurity laws and regulations, focusing on both US and global perspectives. Participants will gain insights into key legislations such as HIPAA, GDPR, and PCI DSS and learn how to ensure compliance with these regulations. Through a combination of videos, readings, activities, and quizzes, participants will develop a comprehensive understanding of legal frameworks governing cybersecurity.

Name:Understanding Cybersecurity Standards and Audits 

Description:This module delves into the landscape of cybersecurity standards and audits, providing participants with a comprehensive understanding of industry standards and audit processes. Participants will explore prominent standards such as OWASP, NIST, ISO, and IEEE and learn how to apply them effectively. Additionally, the course covers security control audits, COBIT framework, and SOC reports to ensure participants grasp the auditing process. Through videos, readings, activities, and quizzes, participants will gain practical knowledge to enhance cybersecurity practices.

Name:Final Project

Description:In this module, you will complete a final project where you will have an opportunity to demonstrate your understanding of Cybersecurity Frameworks, Risk Management, and Standards and Regulations.

课程评论(0条)

课程详情

Cyber threats present a constant challenge today, costing billions and affecting everyone, from governments to small businesses. Are you ready to contribute to the solution? This course will provide you with a deep understanding of cybersecurity principles, industry standards, regulations, and audit processes. You will explore the fundamental concepts of information security and compliance, covering topics such as governance, risk, compliance, cybersecurity frameworks, and process management.

课程标签

0人关注该课程

主题相关的课程