Companies Home Search Profile

NIST Cybersecurity A-Z: NIST Cybersecurity Framework (CSF)

Focused View

Petya Yaneva

4:15:17

106 View
  • 1. Introduction.mp4
    06:08
  • 1. introduction.mp4.zip
  • 2. Course Notes and Navigation.mp4
    03:22
  • 1. The NIST Framework.mp4
    03:07
  • 2. NIST Framework Core.mp4
    02:55
  • 3. Framework Implementation and Profile.mp4
    07:43
  • 4. Recent NIST Developments.mp4
    04:42
  • 1. Cybersecurity Risk Planning.mp4
    03:45
  • 2. What is a Cyber Security Risk.mp4
    04:13
  • 3. Asset Management.mp4
    03:55
  • 4. Keeping Hardware Inventory Updated.mp4
    08:24
  • 5. Keeping Software Platform Inventory.mp4
    04:03
  • 6. Prioritizing Devices, Software and Apps.mp4
    03:25
  • 7. Personnel Security Requirements.mp4
    05:30
  • 8. Governance.mp4
    04:00
  • 9. Risk Assessment and Management.mp4
    04:02
  • 10. Identifying Internal and External Threats.mp4
    02:42
  • 11. Focus on Highlighted Risk.mp4
    03:53
  • 12. Plans for Dealing with the Highest Risk.mp4
    03:45
  • 13. Cybersecurity Risk Planning and Management Test.html
  • 1. User and Network Infrastructure.mp4
    07:26
  • 2. Authentication and Access Control.mp4
    05:28
  • 3. Control List and Remote Access.mp4
    04:15
  • 4. Network Security Controls.mp4
    09:37
  • 5. Association and Authentication.mp4
    05:09
  • 6. Awareness and Training.mp4
    02:37
  • 7. Data Security.mp4
    05:44
  • 8. Hardware Integrity.mp4
    05:51
  • 9. Information Protection.mp4
    06:12
  • 10. Patch Management.mp4
    05:20
  • 11. Maintenance.mp4
    03:30
  • 12. Protective Technology.mp4
    04:52
  • 13. Cybersecurity Risk Planning and Management.html
  • 1. Tools and Techniques.mp4
    05:49
  • 2. Detecting Incidents.mp4
    02:36
  • 3. Anomalies and Events.mp4
    05:57
  • 4. Monitor Systems.mp4
    07:15
  • 5. Logging Devices and Log Files.mp4
    04:05
  • 6. Continuous Monitoring.mp4
    10:43
  • 7. Detection Process.mp4
    09:49
  • 8. Tools and Techniques for Detecting Cyber Incidents Test.html
  • 1. Developing a Continuity of Operations Plan.mp4
    05:28
  • 2. Incident response.mp4
    05:21
  • 3. Executable Response Plan.mp4
    05:51
  • 4. Importance of Communications.mp4
    03:04
  • 5. Incident Analysis.mp4
    08:07
  • 6. Mitigation.mp4
    05:41
  • 7. Recover.mp4
    10:39
  • 8. Developing a Continuity of Operations Plan Test.html
  • 1. Supply Chain Risk Management.mp4
    04:42
  • 2. Supply Chain Management Practices.mp4
    03:18
  • 3. Incorporating the Supply Chain Category.mp4
    04:25
  • 4. Develop, Assess and Test Supply Chain Risks.mp4
    06:52
  • 5. Supply Chain Risk Management Test.html
  • Description


    Learn to create a complete Cybersecurity Framework from scratch with NIST Cybersecurity Guidelines

    What You'll Learn?


    • Deep look at the Cybersecurity Framework's five Functions: Identify, Protect, Detect, Respond, and Recover
    • Cybersecurity Authorization and Authentication
    • Cybersecurity Risk Planning and Management
    • Identifying Cybersecurity Threats and Vulnerabilities in a Company
    • Develop Plans for Dealing with the Highest Risks
    • User and Network Infrastructure Planning Identity Management and Access Control
    • Firewalls Protecting Network Integrity
    • Data Security of Active and Archived Databases
    • Risk Baseline Configuration and Patch Management
    • Tools and Techniques for Detecting Cyber Incidents
    • Monitor Employee Behavior in Terms of Both Physical and Electronic Access to Detect Unauthorized Access
    • Develop an Executable Cybersecurity Response Plan
    • Cyber Attacks and Hackers Protection
    • Building and Examining Intrusion Detection System for Analyzing an Incident
    • Supply Chain Risk Management

    Who is this for?


  • Computer Science Students
  • Cybersecurity Analysts
  • Database Managers
  • IT Specialists
  • Everyone who wish to learn Cybersecurity
  • Cybersecurity Major Students
  • Software Developers
  • Engineers
  • More details


    Description

    This course will teach you how to use the  NIST Cybersecurity Framework that provides a process that integrates security, privacy, and cyber supply chain risk management activities into the system development life cycle. The risk-based approach to control selection and specification considers effectiveness, efficiency, and constraints due to applicable laws, directives, Executive Orders, policies, standards, or regulations. Managing organizational risk is paramount to effective information security and privacy programs; the CSF approach can be applied to new and legacy systems, any type of system or technology (e.g., IoT, control systems), and within any type of organization regardless of size or sector.


    NIST premised the entire Framework on the concept of risk management, which is “the ongoing process of identifying, assessing, and responding to risk,” an approach that provides a dynamic implementation of the Framework’s recommendations. The Framework consists of three parts: The Framework Core, the Framework Implementation, and the Framework Profile Tiers. The purpose of these three parts is to provide a “common language” that all organizations can use to understand, manage, and communicate their cybersecurity initiatives, both internally and externally, and can scale down or up to various parts of an organization as needed.


    The Framework Core is a set of activities aimed at organizing cybersecurity initiatives to achieve specific outcomes. The Core has five functions: Identify, Protect, Detect, Respond, and Recover.


    Section 2: Cybersecurity Risk Planning and Management:

    This section discusses how to establish knowledge of the systems in place and how to inform management of those systems’ risk profiles. We will also discuss how to develop plans for dealing with the highest priority risks. The goal is to help the students to develop an understanding necessary to manage cybersecurity risk to systems, assets, data, and capabilities.


    Section 3: User and Network Infrastructure Planning and Management:

    This section provides a series of steps and tools to improve their organizations’ network infrastructure protection through improved asset access control, awareness and training, data security, protection policies, maintenance procedures, and automated protection processes.


    Section 4: Tools and Techniques for Detecting Cyber Incidents

    This section aims to help the students describe effective techniques for detecting cyber incidents or attacks, establish best approaches for monitoring systems to detect incidents, and plan for the development of organizational processes for detecting incidents.


    Section 5: Developing a Continuity of Operations Plan

    This section will provide the reader with fundamental concepts and practical steps to respond to and recover from a cybersecurity incident. By the end of this section, the student will grasp the concepts necessary to develop an incident response plan (IRP), maintaining communications within the response team and the broader organization throughout an incident. The section will introduce the reader to the basic concepts of how to contain and mitigate an incident. Finally, the section will introduce the student to the basic principles and elements of developing a recovery plan and the importance of lessons learned in the aftermath of a cybersecurity incident.


    Section 6: Supply Chain Risk Management

    This section will provide the student with an introduction to the complex and evolving supply chain risk management field. The student will also learn about the five essential aspects of supply chain risk management in the most recently updated version of the NIST Framework: (1) how to identify where you should manage supply chain risks, (2) pinpointing which suppliers are crucial to supply chain risk management, (3) developing vendor contracts that minimize supply chain risks, (4) continually assessing supply chain risk management procedures, and (5) testing to make sure vendors are resilient in the event of supply disruptions.


    You are going the get the ultimate learning experience as every section is followed by practice test and has reading resources uploaded.

    Who this course is for:

    • Computer Science Students
    • Cybersecurity Analysts
    • Database Managers
    • IT Specialists
    • Everyone who wish to learn Cybersecurity
    • Cybersecurity Major Students
    • Software Developers
    • Engineers

    User Reviews
    Rating
    0
    0
    0
    0
    0
    average 0
    Total votes0
    Focused display
    Category
    Petya Yaneva
    Petya Yaneva
    Instructor's Courses
    Hey, my name is Petya Yaneva. I am 24 years old and am Front-End Web Developer. I have solid skills in building websites and all the technologies that go with it. Feel free to contact me on any topic related to Web Development as I am truly interested in this fields.
    Students take courses primarily to improve job-related skills.Some courses generate credit toward technical certification. Udemy has made a special effort to attract corporate trainers seeking to create coursework for employees of their company.
    • language english
    • Training sessions 48
    • duration 4:15:17
    • Release Date 2023/05/17

    Courses related to Cyber Security