|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/security-controls/
课程评论:没有评论
课程名称:安全与隐私控制入门 课程概述: 本课程旨在帮助学习者以简单明了的方式理解信息安全和网络安全的基本知识,特别是不同类型的安全控制措施。课程内容专注于人身数据、位置等常见类别的安全控制,为新手提供基础知识,同时也为有经验的专业人士提供更复杂的附加信息。无论您是未来的信息安全或网络安全专业人士,还是任何涉及数据和人身保护的职业人士,本课程都适合您。 适合人群: - 当前或未来的信息安全和网络安全专业人士 - 任何希望了解安全控制工作原理的专业人士 - 对数据在数字和现实世界中的保护方式感兴趣的人 - 想了解访客控制、门禁认证及其他物理安全措施的人 - 想学习数据在存储、传输和销毁时的保护方法的人 课程内容包括: - 代码分析:识别应用程序中的安全漏洞 - 数据分类控制设置:根据数据敏感性定义不同的安全控制级别 - 加密保护:学习数据加密及相关最佳实践 - 数据去标识化与匿名化:减少数据敏感性以便共享 - 数据治理结构:了解组织中的数据治理决策 - 数据使用目的与权限:定义数据处理的可接受使用方式 - 数据保留与销毁:减少数据保留的风险,安全销毁数据 - 物理安全措施:锁定房间和设备,防止未经授权访问 - 服务提供商评估与监督:确保服务供应商符合安全控制需求 - 访客控制:获取访客信息、管理凭证等措施 课程承诺: 课程提供30天无风险退款保障,您可以放心尝试。另外,课程也提供免费预览视频,确保其适合您。如果您希望提升数据质量知识,欢迎加入学习。
SECURE YOUR KNOWLEDGE, SECURE YOUR ORGANISATIONInformation Security and Cybersecurity are broad areas, with a lot to cover.Usually, you find information about them in highly complex technical manuals with hundreds of pages, or in other formats with no clear real-world applications.What if you could find a simple, clear course about the most common types of security controls, in plain language, with no complexity?This is what this course aims to cover.In this course, you will find the most common types of security controls for people data, locations and other categories.The language will be simple so that new professionals can understand the basics, but we also include additional, optional more complex information for the experienced.If you wish to know more about the different types of security controls in organisations, this is the course!THE PERFECT COURSE.FOR WHOM?This course is targeted at different types of people.Naturally, if you're a current or future Information Security or Cybersecurity professional, you will find this course useful, as well as if you are any other professional or executive involved in the protection of data or people within an organisation.But even if you're any other type of professional that aims to know more about how security controls work, you'll find the course useful.More specifically, you're the ideal student for this course if:You're someone who is curious about how data are protected, both in the digital world but also the "real world";You're someone who wants to know more about how visitors are controlled, how authentication for locked doors occurs, and how other controls protect physical locations;You're someone who wants to know more about how data are protected at rest, in transit, and when destroyed, as well as for different levels of sensitivity;LET ME TELL YOU.EVERYTHINGSome people - including me - love to know what they're getting in a package.And by this, I mean, EVERYTHING that is in the package.So, here is a list of everything that this masterclass covers:You will learn about code analysis, which is the analysis of either the source code or the running binary of an application to find security vulnerabilities within them - internal or external;You will learn about setting controls by data classification, which is about defining different classes for data based on their sensitivity, and then defining security controls of different levels of strength accordingly;You will learn about cryptographic protection, commonly known as encryption. How to protect data with encryption, what best practices to follow related to protocol versions and key management, and more;You will learn about data de-identification and anonymisation, consisting of removing the sensitive parts of data, which usually contain Personally Identifiable Information (PII), to make the data less sensitive and allow it to be shared;You'll get to know data governance structures, such as boards and committees, that drive data governance decisions in an organisation, and possibly focusing on specific topics such as data ethics or data integrity;You'l learn how data purposes and authority work, by defining acceptable uses for the processing of data, and how to ensure that specific users and roles have permission based on their use case;You'll learn about data retention and disposal - why data retention must be minimised due to the vulnerabilities data present (both in terms of the timeframe and the quantity of data retained), and also how to dispose of data securely;You'll learn about locked rooms, devices and ports, placing physical barriers in front of attackers to prevent them from accessing physical media, servers or systems;You'll learn about media downgrading and redaction, which consists of eliminating the sensitive information contained in a physical medium of data in order to allow that medium to be shared more easily;You'll learn about physical media protection, including measures ranging from visitor control, locked rooms, secure destruction, and many others, ensuring the integrity of data in physical media at rest, in transit and during destruction;You'll learn about service provider assessment and monitoring - that is, why it's crucial to gauge service providers according to a set of criteria, and how to ensure they both comply with your security control needs but also mitigate the risks they present to you;You'll learn about visitor controls, including the information obtained from visitors, credential expiration, differentiation between employee credentials and visitor credentials, and other controls to ensure visitors cannot bring harm to the organisation;MY INVITATION TO YOURemember that you always have a 30-day money-back guarantee, so there is no risk for you.Also, I suggest you make use of the free preview videos to make sure the course really is a fit. I don't want you to waste your money.If you think this course is a fit and can take your data quality knowledge to the next level.it would be a pleasure to have you as a student.See you on the other side!