Cybersecurity Policy for Aviation and Internet Infrastructures

所在平台: CourseraArchive

课程类别: 其他类别

大学或机构: CourseraNew

课程主页: https://www.coursera.org/archive/cybersecurity-policy-aviation-internet

课程评论:没有评论

第一个写评论        关注课程

课程简介

University of Colorado System

课程大纲

In this module we will examine the difference between cybersecurity for fixed versus mobile assets, and take a closer look at the Transportation Roadmap and apply its tenets to different hypothetical situations. Also included in this module is course exam #5. Good luck!

课程评论(0条)

课程详情

In this course we will examine the aviation and Internet infrastructures, and various policies that have been developed to help guide and strengthen their cybersecurity programs. The aviation and Internet infrastructures are also considered "lifeline infrastructure" as part of the transportation and communications sectors. Both subsectors are overseen by the Department of Homeland Security National Protection and Programs Directorate which manages the DHS National Infrastructure Protection Program. SSA responsibility for the aviation subsector is shared between the Transportation Security Administration and Federal Aviation Administration under the auspices of the Department of Homeland Security and Department of Transportation respectively. The Department of Homeland Security retains sole responsibility as the Sector-Specific Agency for the Internet subsector. While TSA and FAA have regulatory over the aviation subsector, DHS has no regulatory authority whatsoever over the Internet. In response to Executive Order 13636 issued by President Obama in February 2013, both sets of SSAs recommended continuing with voluntary cybersecurity measures. TSA and FAA reported they were working to implement the Transportation Roadmap across all transportation subsectors, including aviation. DHS reported that it was working with Internet providers to implement the Cyber Assessment Risk Management Approach. Despite some differences, the Transportation Roadmap and CARMA are very similar to the NIST Cybersecrity Framework and ES-C2M2 examined previously. That is to say, they are predicated on a continuous improvement process that engages the whole organization in identifying and implementing incremental changes to enhance cybersecurity practices based on prevailing standards. This module will examine both the aviation and Internet lifeline infrastructure subsectors, and elements and application of the Transportation Roadmap and CARMA.

航空和互联网基础设施的网络安全政策:在本课程中,我们将研究航空和互联网基础设施以及为帮助指导和加强其网络安全计划而制定的各种政策。航空和互联网基础设施也被视为“生命线基础设施”,属于运输和通信部门。这两个子部门均由国土安全部国家保护和计划局负责管理,该局负责管理DHS国家基础设施保护计划。 SSA对航空分部门的责任由国土安全部和交通部分别负责,由运输安全局和联邦航空局共同承担。国土安全部作为互联网分部门的部门特定机构,全权负责。尽管TSA和FAA对航空子行业进行监管,但DHS在互联网上没有任何监管机构。为了响应奥巴马总统在2013年2月发布的13636号行政命令,这两套SSA都建议继续采取自愿的网络安全措施。 TSA和FAA报告说,他们正在努力在包括航空在内的所有运输子行业中实施运输路线图。国土安全部报告说,它正在与互联网提供商合作实施“网络评估风险管理方法”。尽管存在一些差异,但是运输路线图和CARMA与之前检查过的NIST网络安全框架和ES-C2M2非常相似。也就是说,它们基于持续的改进过程,该过程使整个组织参与到确定和实施增量更改中,以根据现行标准增强网络安全实践。本模块将研究航空和互联网生命线基础设施子行业,以及运输路线图和CARMA的要素和应用。

课程标签

0人关注该课程

主题相关的课程