Information security in practice

所在平台: Udemy

课程主页: https://www.udemy.com/course/practical-information-security/

课程评论:没有评论

第一个写评论        关注课程

课程简介

Coursera 上的“实践信息安全”课程概述: 本课程由计算机科学博士 Nikola Milosevic 教授,他拥有信息与网络安全领域的出版物和项目经验,并且是 OWASP 的章节和项目负责人。课程内容涵盖了信息安全的各个方面,旨在帮助学员掌握将信息安全原理应用于家庭环境或组织的技能。 **课程重点包括:** * **信息安全框架的必要性:** 了解为什么需要信息安全框架。 * **信息安全控制的类型:** 学习应用、网络和物理安全控制。 * **信息安全风险管理:** 掌握风险评估、资产评估以及如何嵌入安全控制。 * **审计:** 学习审计的执行方式和时机。 * **安全运营管理:** 了解组织的安全运营管理。 * **事件响应与灾难恢复:** 掌握如何应对信息安全事件和进行灾难恢复。 * **信息安全法律法规与道德:** 了解相关的法律法规(可能侧重英国和欧盟,如 GDPR)和信息安全道德规范。 * **安全标准:** 介绍 ISO27001、ISO27003、ISO27005 等信息安全标准。 * **信息安全基础:** 涵盖信息安全历史、主要算法、密码学、访问控制、网络安全、应用安全和物理安全基础。 * **实践工具:** 将使用 SNORT、OSSEC 等开源工具。 **课程目标受众:** * 希望成为网络安全和信息安全专家的任何人。 * 希望获得实际技能来减轻各种信息安全威胁风险,并学习如何在组织中管理信息的个人。 * 对安全、保障和隐私感兴趣的初学者和中级信息安全爱好者。 * 无论是个人还是企业信息安全的需求,本课程都适用。 本课程内容紧随 CISSP (Certified Information Security Systems Professional) 认证的教学大纲,为学员打下坚实的信息安全基础。

课程评论(0条)

课程详情

In this course, you will learn the basics of information security and how to apply information security principles to your home environment or organization, regardless of its size. Information security, sometimes shortened to infosec, is the practice of protecting information by mitigating information risks. It is part of information risk management. It typically involves preventing or at least reducing the probability of unauthorized/inappropriate access, use, disclosure, disruption, deletion/destruction, corruption, modification, inspection, recording or devaluation, although it may also involve reducing the adverse impacts of incidents. The course is tough by Dr. Nikola Milosevic, a PhD in computer science with track record of publications and successful projects in information and cyber-security. Nikola is OWASP chapter and project leader and has been teaching on several reputable Universities over the past 5 years. I have also published scientific papers on malware analysis. Now he wants to share this knowledge with you and help you develop your career!This course is following the content of the CISSP (Certified Information Security Systems Professional) certification. The content of the course is suitable for both beginners and intermediate students interested in information security.In this course you will learn about:The motivation for having an information security frameworkTypes of information security controls (application, network, physical security)Information security risk managementHow to evaluate information assets of your organizationHow to perform a risk assessment and where to include information security controlsHow to perform audits and whenHow to manage security operation of a certain organizationWhat are and how to respond to information security incidents (Incident response)How to handle disaster recoveryEthics of information securityWhat laws and regulations are in place (this may be specific to the UK and EU, as it includes talks about GDPR but tries to generalize)Security standards in information security (ISO27001, ISO27003, ISO27005)History and main algorithms used for information securityCryptographyAccess controlBasics of network securityBasics of application securityBasics of physical securityThe tools that the course will be utilizing will be all open sources (such as SNORT or OSSEC). Who this course is for:This course is for anyone who wants to become an expert in cyber-security and information security. This volume covers the required foundation building blocks of that skillset.For anyone who would love to gain a practical skillset in mitigating the risk from various kinds of information security threats and would like to learn about managing information in the organization.For beginners and intermediate information security enthusiasts who are interested in security, safety, and privacy.This course is designed for personal and corporate information security. The content of this course was delivered also in the University settings.

课程标签

0人关注该课程

主题相关的课程