
Explore the basic principle of cyber security and the evolving threat landscape within organizations. Learn about compliance, data privacy, cyber security culture, and threats.
Learn how cyber security protects information in cyberspace from attacks by safeguarding sensitive information and ensuring authorized users can access what they need.
Explain the CIA principles—confidentiality, integrity, and availability—and how two-factor authentication and authorization protect data and ensure secure access.
Explain how a simple photograph can leak sensitive oilfield information, revealing location, weather, and equipment details that informed international bidding and intelligence.
Explore the evolving threat landscape and agile security strategies, from client-side tricks and malware to network and application layer attacks like DNS amplification and session hijacking.
Examine ransomware, malware, and man-in-the-middle and dose-attacks that disrupted global systems, from Stuxnet targeting supervisory control and data organization to cyber warfare and critical infrastructure.
Navigate the evolving threat landscape and strengthen enterprise cybersecurity by anticipating new attack vectors, ransomware, and attacker tactics, while addressing expanded attack surfaces and understaffed teams.
Analyze how attack forms remain largely unchanged, with viruses, piercing, and other methods targeting vulnerabilities from personal computers to the global landscape, including economy, politics, war, and energy.
Identify the attack surface as the points and vectors where an unauthorized user can enter to inject or extract data, and how cloud, IoT, and software ecosystems broaden exposure.
Explore how malware, malicious software, infects computers or networks and how vulnerabilities—entry points like bugs in legitimate software such as browsers or plugins—are exploited by attackers.
The OpenSCAP project provides open source tools to implement and enforce the SCAP standard, enabling security policy expression, tailoring files, and automated compliance checks across infrastructure.
Explore the Center for Internet Security's benchmarks and national checklist program for secure configurations and learn about 20 foundational and advanced controls used to protect operating systems, software, and networks.
Deploy malware and vulnerability scanners to monitor real-time activity with multiple sensors, using dynamic and static scanning—via automated tools and sandbox analysis—to detect infections and inform remedial action.
Explore the cloud control matrix (ccm), a 133-control cybersecurity framework across 16 domains, with the consensus assessment initiative questionnaire for cloud consumer and provider self-assessments.
Explore the Open Web Application Security Project (OWASP), a nonprofit international community providing free articles, tools, and top 10 web application security risks to strengthen software security.
Explore how FIPS defines minimum security requirements for cryptographic models used in federal non-military systems, including encryption methods, key management, and secure key storage.
Identify and score vulnerabilities using the common vulnerability scoring system, explore the national vulnerability database, and prioritize remediation based on severity and threat level.
Explore the National Checklist Program Repository to secure software configurations with SCAP-aligned checklists and best practices for AWS, IAM, root accounts, and multi-factor authentication.
Select an international data privacy framework, assess obligations and risks via a gap analysis, assign ownership, train staff, deploy the program, monitor progress, and review for continuous improvement.
Explore how security culture goes beyond awareness and technology by embedding values, attitudes, knowhow, and behaviors into daily actions, strengthening the human line of defense.
Explore how workplace culture shapes security posture and how employees' daily access drives resilience, emphasizing strong password policies, two-factor authentication, and role-based data access.
Develop engaging cyber security training and use a matrix to monitor training culture, track effectiveness with quick assessments, and encourage open threat reporting and constructive responses to mistakes.
Explore the persistent security personnel skills shortage, its impact on workload and hiring, and how combining broad technical skills, security knowledge, and soft skills prepares you for cybersecurity careers.
Explore the cybersecurity field, its diverse roles, and the essential problem-solving, technical aptitude, and cross-platform knowledge needed to protect organizations and respond to threats.
Examine the global cybersecurity skills shortage and rising demand for certified professionals. Identify certifications, including security+, certified ethical hacker, CISM, CISA, and CISSP, as reliable paths to well-paying roles.
Organizations which control, store or transmit data are increasingly exposed to active hackers, phishing scams and other threats that arise from poor information security.
Cybersecurity Essentials is the ideal course for anyone who needs to get a good all-round understanding of Cybersecurity. It provides an understanding of the fundamental principles of cybersecurity at a decision-making level. You don't have to be an aspiring security professional to do this course, it is suitable for everyone.
The content of this training course represents the essentials of Cybersecurity, and it is designed in the way that the capabilities learned by following this training course will be used to protect organizations and the society as a whole from areas of emerging threats.