|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/how-to-write-powerful-executive-reports-in-infosec/
课程评论:没有评论
课程名称:如何在信息安全领域撰写强有力的执行报告 课程概述:欢迎参加本课程。在这里,您将学习如何在任何信息安全领域撰写专业且强大的执行报告。信息安全领域面临的最大挑战之一并不是技术技能的缺乏,而是缺乏有效的沟通,尤其是在向高层管理人员报告时。许多行业专业人士常常犯的错误是将技术报告提交给非技术背景的高管,导致安全专家与执行团队之间存在巨大的沟通鸿沟。一个强有力的报告应具备以下特征:高管能够理解您所传达的每一个要点,并基于您报告中提取的可操作建议采取行动。如果您的报告不能促使高管叫动相关利益相关者,那么在任何领域进行安全评估的目的就会失去意义。 在本课程中,您将学习到: - 如何将技术陈述转换为与业务相关的陈述 - 如何使用可视化工具来传达统计结果 - 如何确保您的报告控制在一页之内 - 如何在报告中仅包含相关细节 - 如何润色报告,使其更具吸引力 - 如何促使高管基于您所传达的信息采取行动 - 如何利用评估结果找到合规标准(如PCIDSS、NIST 800-53)中的差距 该课程将帮助您改善在信息安全领域报告的能力,以便更有效地与高层管理人员沟通。
Welcome to this course. Here, you'll learn how to craft professional, powerful executive reports in any Infosec field.One of the biggest challenge in the Infosec space isn't bordered on deficiency of technical skills, but a deficiency in proper communication - especially reporting to C level executives. Many pros in this field always make the mistake of submitting technical reports to non-technical executives. As a result, there's always a huge communication gap between the security pro and the executive team. Your report is powerful if: Executives understand every bit of what you're saying Executives go ahead to act based on the actionable advice drawn from your report.If your reports can't make executives call stakeholders to action, then the purpose of the security assessment exercise in any field is defeated.In this course, you'll learn:How to convert technical statements to business related statementsHow to use visualization to communicate statistical findingsHow to ensure that your report fits one pageHow to include only relevant details in your reportHow to polish your report and make it appealingHow to make executives take action based on what you've communicatedHow to use your findings from the assessment exercise to find gaps in compliance standards (PCIDSS, NIST 800-53)