
Explore how the cybersecurity landscape expands attack surfaces as data becomes valuable to hackers, with rising alerts, analyst shortages, and shrinking response times that affect employees.
Understand how vast data flows on social media create an attack surface for cyber threats, and why data privacy matters as data values rise.
Explore cybersecurity roles from chief information security officer to penetration tester, showing how organization size shapes roles like information security architect, analyst, auditor, digital forensics analyst, and security software developer.
The Security Operations Center analyst defends an organization's IT infrastructure by monitoring networks for threats, analyzing breaches, and guiding vulnerability management, incident response, and regulatory compliance.
Identify the main cybersecurity actors, from internal users and hackers to hacktivists and governments, and examine threats like data loss and sale, malware, ddos, and apt attacks.
Identify natural and human threats to organizations, from lightning and hurricanes to internal and external actors like hackers, crackers, viruses, trojans, and worms, emphasizing internal threat risks and departure processes.
Explore threats including botnets of compromised hosts used for spam and denial-of-service, phishing, spyware, and malware, with persistent threats linked to Fancy Bear, Lazarus Group, and Periscope Group stealing data.
Explore malware and its types, including viruses, worms, spyware, adware, ransomware, and remote access trojans (rats), and understand how they spread, operate, and threaten systems.
Implement antivirus and anti-malware defenses, understand signature-based detection and behavior monitoring, and apply binary whitelisting with cryptographic hashes and software signing certificates to protect against unknown threats.
Explain how firewalls separate an organization's internal network from the internet, pass or block packets, defend against denial of service, and distinguish application level, traditional, and packaging filtering firewalls.
Discover digital forensics as a core security tool, learning to identify, recover, investigate, validate, and present computer evidence, while mastering chain of custody and key tools.
Conduct vulnerability assessments using scanners to identify external, internal, web app, network, and database weaknesses, and prioritize fixes to avert compromises.
Launch a cybersecurity program by establishing admin and tech controls, incident response, user education, threat modeling with monitoring, and asset management with classification and documentation to protect networks, endpoints, identity, and recovery.
Explore technical controls such as antivirus and unified threat management, administrative policies and training, including a password policy with a minimum of 15 varying characters, plus updates, revision, and tracking.
Discover how social engineering uses psychological manipulation to gather information over time by asking harmless questions to obtain confidential data.
Explore how phishing and spear phishing use emails, text messages, and fake links to induce urgency, curiosity, or fear to steal credentials, with pretexting, baiting, physical media, and scareware tactics.
Practice social engineering countermeasures by never sharing passwords or personal information via email, scrutinize requests for help, and strengthen security with spam filters, antivirus, firewall, and multi-factor authentication.
Develop responsible user habits to safeguard security, such as never uploading sensitive data to unapproved third-party services, using strong, unique passwords, and enabling double factor authentication.
Promote a security-minded culture by delivering comprehensive training, encouraging employees to speak up, raise questions, and cooperate to enforce and reward behaviors that improve organizational security.
Learn to report and analyze cybersecurity incidents by keeping a full record with IP addresses and data crimes, contacting security personnel, and drafting an email-style incident report.
Information security governance aligns security with business objectives, ensures compliance, involves senior management, allocates trained personnel, integrates strategy planning, capital planning, and enterprise architecture, and monitors performance to manage risk.
Explore resourceful cybersecurity organizations like WIC, Sans Institute, OWASP, and AI RSA to access free materials and training across information security, web application security, and auditing.
Human error is a key component in major security breaches, which is why training employees on cyber security awareness is so important. Organizations can substantially enhance their security posture and cyber resilience by educating workers to detect and respond to cyber-attacks. This course educates employees on how to detect and respond to cyber-attacks. It covers the following areas:
In module one, we'll examine the cybersecurity space by looking into prevalent cybersecurity trends and by defining some key terms in cybersecurity. We will also look at the interactions between cybersecurity and social media.
To learn more about the different roles and actors in the cybersecurity space we will move to module two which looks at cybersecurity roles and actors. Here, we'll examine the many sorts of roles in IT security departments in both large and small organizations and look at what is ideal. We'll look at cybersecurity actors including hackers, government, hactivist and more.
In module two, you'll learn about the numerous kinds of security threats that exist including natural and human threats as well as the types of malware you should be on the look out for. You'll learn about the most common types of malware and the countermeasures you can take against the malware. You'll look at numerous kinds of malware including:
Worms
Adware
Ransomeware
Viruses
Spyware
In module three, you'll learn how to identify the different types of social engineering attacks and the kinds of actions you can take to prevent falling victim to social engineering attacks.
Finally, in the last module, you will learn how to foster a culture of good cybersecurity habits. You'll also learn how to report a cybersecurity incident.