Companies Home Search Profile

Risk Management Excellence: NIST 800-37 Framework Training

Focused View

Alexander Oni

1:57:53

124 View
  • 1. Welcome to the Course.mp4
    04:12
  • 1. Risks vs Threats.mp4
    06:47
  • 2. What is Compliance.mp4
    07:51
  • 3. Security vs Compliance.mp4
    09:53
  • 1. Introduction to the RMF.mp4
    04:51
  • 2. NIST 800-37 Preview.mp4
    03:41
  • 3. Information Security And Privacy.mp4
    04:09
  • 4. Requirements vs Controls.mp4
    03:26
  • 5. Supply Chain Risk Management.mp4
    04:31
  • 6. The RMF Steps.mp4
    04:24
  • 1. Step 1 Prepare (Organization Level).mp4
    07:16
  • 2. Step1 Prepare (System Level).mp4
    10:03
  • 3. Step 2 Categorize.mp4
    03:06
  • 4. Step 2 Categorize Part 2.mp4
    06:19
  • 5. Step 3 Select Controls.mp4
    04:56
  • 6. Step 4 Implement Controls.mp4
    08:38
  • 7. Step 5 Assess Controls.mp4
    07:43
  • 8. Step 6 Authorize.mp4
    05:16
  • 9. Step 7 Monitor.mp4
    10:00
  • 1. Conclusion.mp4
    00:51
  • Description


    From Risk Assessment to Continuous Monitoring: Navigating the NIST 800-37 RMF

    What You'll Learn?


    • Gain a comprehensive understanding of the NIST 800-53 Risk Management Framework and its significance in information security.
    • Learn methodologies for conducting risk assessments to identify and prioritize risks effectively
    • Acquire the skills to select and implement appropriate security controls based on organizational risk posture.
    • Develop the ability to assess the effectiveness of implemented security controls and identify vulnerabilities.
    • Understand the authorization process for granting system and information authorizations.
    • Learn strategies for continuous monitoring, incident response, and security assessment documentation.
    • Comprehend how to integrate NIST 800-53 RMF with compliance frameworks and standards for comprehensive risk management.
    • Explore best practices and strategies for overcoming implementation challenges when adopting the NIST 800-53 Risk Management Framework.

    Who is this for?


  • Cyber security risk managers
  • Cyber security Professionals who want to learn about Risk Management
  • What You Need to Know?


  • Basic knowledge of Cyber Security is required
  • More details


    Description

    The NIST 800-37 Risk Management Framework (RMF) is a comprehensive set of guidelines and best practices developed by the National Institute of Standards and Technology (NIST) to help organizations manage and mitigate information security risks effectively. This course is designed to provide participants with a solid understanding of the NIST 800-37 RMF and equip them with the necessary knowledge and skills to implement it within their organizations.

    Throughout this course, participants will explore the fundamental principles of risk management as defined by NIST 800-37. They will gain insight into the underlying concepts, terminology, and objectives of the framework, allowing them to navigate its various components with confidence. Emphasis will be placed on understanding the risk assessment and mitigation processes, as well as the roles and responsibilities of key stakeholders involved.

    Key Topics Covered:


    • Introduction to NIST 800-37 RMF: Participants will receive an overview of the NIST 800-37 RMF, its purpose, and the importance of effective risk management in today's digital landscape.


    • NIST 800-37 RMF Framework Components: Participants will dive into the core components of the RMF, including categorization, selection of security controls, implementation, assessment, authorization, and continuous monitoring.


    • Risk Assessment: Participants will learn how to identify, analyze, and prioritize risks using methodologies recommended by NIST 800-30. They will explore techniques for conducting risk assessments and documenting risk profiles.


    • Security Control Selection and Implementation: This module will cover the process of selecting and implementing appropriate security controls based on the organization's risk posture. Participants will gain insight into control families, baselines, and customization considerations.


    • Security Control Assessment: Participants will acquire the knowledge and skills needed to conduct security control assessments, including assessing the effectiveness of implemented controls and identifying vulnerabilities and weaknesses.


    • Authorization: This section will focus on the authorization process, where participants will learn about the requirements for granting system and information authorizations. Topics covered will include system documentation, security plans, and the security authorization package.


    • Continuous Monitoring: Participants will understand the importance of continuous monitoring and its role in maintaining an effective security posture. They will explore monitoring strategies, incident response, and security assessment and documentation.


    • Integration with Compliance and Standards: Participants will learn how the NIST 800-37 RMF aligns with other compliance frameworks and standards such as ISO 27001, HIPAA, and PCI DSS. They will understand how to integrate these requirements into their risk management practices.


    • RMF Implementation Challenges and Best Practices: This module will address common challenges faced during the implementation of the NIST 800-37 RMF and provide participants with best practices and strategies for overcoming them.

    By the end of this course, participants will have a solid understanding of the NIST 800-37 RMF and will be equipped with the knowledge and skills necessary to implement effective risk management practices within their organizations. They will be able to navigate the framework's components, conduct risk assessments, select and implement appropriate security controls, and maintain a continuous monitoring and authorization process aligned with industry best practices.

    Who this course is for:

    • Cyber security risk managers
    • Cyber security Professionals who want to learn about Risk Management

    User Reviews
    Rating
    0
    0
    0
    0
    0
    average 0
    Total votes0
    Focused display
    Alexander Oni
    Alexander Oni
    Instructor's Courses
    My passion is teaching people through online courses in a fun and entertaining manner.  I have been teaching online for about 5 years now and during this period, I have created over 25 different courses with more than 132,000 students registered worldwide.What would you like to learn? Would you like to learn how to build and manage your WordPress website?Would you like to learn advanced skills that will make you a true WordPress developer?Would you like to learn how you can establish a successful career as a web developer?Would you like to learn the basics of information and cyber security? If you want to do any of these things, just enroll in the  course and  I'm always improving my courses so that they stay up to date and the  best that they can be. Check them out, and enroll today!MORE ABOUT ALEX:We all have one shot at life and as such, I believe in living life to the fullest. This means constantly stepping out of my comfort zone by visiting new places and trying out new things. My relative success on Udemy has given me both financial freedom and the ability to be location independent. I am currently travelling around the world spending about a month in one city (current location is Chiang Mai, Thailand) before moving on to the next. My hobbies include watching movies, sports and playing chess. I am also a huge Dead by Daylight gamer.
    Students take courses primarily to improve job-related skills.Some courses generate credit toward technical certification. Udemy has made a special effort to attract corporate trainers seeking to create coursework for employees of their company.
    • language english
    • Training sessions 20
    • duration 1:57:53
    • Release Date 2023/07/05