Offered: Fall 2025 (current)
Security frameworks: Control frameworks, Program frameworks, Risk frameworks. Understanding risk: Risk concepts, Calibration, Risk assessment and management. Security policy: Purpose of policy, Risk appetite statement, Policy pyramid, Pandemic response planning policy. Program structure: Security functions, Reporting relationships, Three lines of defense, RACI Matrix. Leading modern security initiatives: Maturity model, Advisory board, Behavior model, Cloud security, Zero trust model, Negotiation primer. Detecting and responding to attacks: SIEM goals, Security Operations Center (SOC), Incident handling and response.
The core objectives of this course are to:
Understand the key elements of security governance of an organization.
Understand NIST cybersecurity frameworks
Design security policies for an organization
Develop a security program structure
Learn modern security initiatives
1. To Be Added
| # | Description | Weight | Edit |
|---|