|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/it-cyber-security-nist-risk-management-framework/
课程评论:没有评论
课程名称:IT网络安全NIST风险管理框架 概述:如果您的工作需要在企业IT的高风险环境中管理网络安全风险,那么本课程非常适合您。在课程中,您将审视战略和操作层面的风险、威胁、机会和脆弱性,涵盖网络安全IT对商业的价值生成以及IT NIST风险管理框架(RMF)。您还将深入探讨风险偏好、风险容忍度和缓解策略,并学习选择、实施、定制、评估和监控NIST安全控制。课程案例研究将突出与法律和监管合规及利益相关者沟通有关的问题。 课程结束时,您将能够: - 理解七步NIST风险管理和合规流程 - 应用适当的风险管理技术和模型,包括风险情景 - 进行风险分析和评估 - 将网络安全与企业风险管理对齐 - 管理和监控NIST风险管理策略及计划的状态 - 监督相关法律和监管合规,如HIPAA和信用卡法规PCI DSS - 设计并使用有效技巧,以清晰的方式向利益相关者传达网络安全风险 - 选择和定制适当的NIST安全和隐私控制 - 理解IT审计与评估之间的区别 - 跟踪风险并创建网络安全绩效指标 本课程将为您提供风险基础知识,包括如何识别、评估和缓解风险。您将熟悉用于开发风险管理流程的概念、工具和技术,并学习如何使用这些工具和技术,结合NIST七步法及安全与隐私控制,有效管理风险。
If your job requires you to manage cyber security risks in the high-stakes world of enterprise IT, this course is for you. You'll examine risks, threats, opportunities, and vulnerabilities at the strategic and operational levels. This includes Cybersecurity IT value generation for the business, and the IT NIST Risk Management Framework (RMF).You'll also explore risk appetite, risk tolerance, and mitigation strategies, selecting, implementing, tailoring, assessing, and monitoring NIST security controls. The course case study will highlight issues related to legal and regulatory compliance and stakeholder communication.By the end of this course, you will be able to:Understand the seven-step NIST Risk management and complianceApply appropriate risk-management techniques and models including risk scenarios.Conduct risk analysis and assessmentAlign cyber security and enterprise risk management.Manage and monitor the status of NIST risk-management strategies and plans.Provide oversight of related legal and regulatory compliance such as HIPPA and credit card regulation PCI DSSDesign and use effective techniques to communicate Cybersecurity risks to stakeholders in a clear mannerSelect and tailor the proper NIST security and privacy controlsUnderstand the difference between IT audit and assessment.Track risks and create cyber security performance indicatorsThe course will provide you with a foundational understanding of risk and how to identify, assess, and mitigate risk. You will become familiar with the concepts, tools, and techniques used to develop a risk management process. You will also learn how to use these tools and techniques to effectively manage risk using the NIST seven-step approach along with security and privacy controls.