|
Understanding Risk Factors
Understanding Risk Factors delves more deeply into Who, What, and Why
CyberCrime Happens!
Programs in this series answer these questions:
- What is really required?
- Why is it personally relevant?
- How to implement & improve your defense in depth practices?
Understanding Risk Factors serves as a base of knowledge for all
employees and stakeholders in preventing CyberCrime and in protecting
intellectual property. It forms the basis for further ACCTTS courses such
as Coping Controls
Who Should Attend
- Department Managers
- Project Managers
- Contractors
- Suppliers
- Current or potential members of a Security Incident Response Team
(SIRT)
- All employees directly or indirectly involved with information vital
to business success
Job Title examples include the following or direct reports of:
- Chief Executive Officer
- President
- Chief Compliance Director
- Chief Operating Officer
- Chief Knowledge Officer
- Chief Privacy Officer
- Chief Legal Officer
- Chief Financial Officer
- Chief Information Officer
- Executive Vice Presidents
- Vice Presidents
- Outside Counsel and Advisors
And Staff of:
- Accounting
- Human Resources
- Customer Services
- Risk Management
- Warehouse
- Marketing and Sales
A21A: Introduction
to Understanding Information Security for All Stakeholders
Overview
This program provides an overview of what Information Security covers,
todays threats,
and what you need to be aware of.
This introduction presents a few case studies of factual incidents,
how organizations
were affected, and what they did to improve their Information Security
Posture.
It includes a brief overview of how the CyberCriminal works and some
of their typical behavior patterns plus a consideration of todays
internal threats.
Who Should Attend
Outcomes
Participants will have a high level understanding of:
- What is Information Security?
- What threats exist
- Some popular CyberAttack methods
- Who and where are the threats?
- What you can do to improve your Information Security Posture
- Recommended sites, tools, references & resources
Length
2 Hours
Materials
Workbook & Case Studies
A21S: Introduction
to Understanding Information Security for Sr. Management
This program provides an overview of what Information Security covers,
typical threats
and what Senior Management team members need to be concerned about.
This briefing presents case studies of factual incidents, how organizations
were affected, and what management did to improve their Information
Security Posture.
This course explains why management must perform due diligence in this
area. It also includes a brief overview of how the Cyber Criminal works,
some related behavior patterns plus and understanding of todays
internal threats.
Who Should Attend
- Executive and Corporate Management
- CEO
- President
- CIO
- Chief Marketing Officer
- Vice Presidents
Outcomes
Participants will have a high level overview & understanding of:
- What Information Security is and the threats to the organization
- Common CyberAttack methods used
- What to do to ensure due diligence is understood in the enterprise
- Recommended sites, tools, references and resources for your IT Staff
to assess
Length
2 Hours
Materials
- Workbook
- Case Studies
- Reference Guide
A22: Building
an Information Security Awareness Program (ISAP)
Overview
This program provides information on how to build an Information Security
Awareness Program (ISAP) from the ground up. It includes various methods
and ways to present essential information plus links to resources that
can help you.
This information enables you to create an Information Security Awareness
Program
with a limited budget (except your time) up to a more comprehensive
program
without funding limits.
Who Should Attend
- Human Resources Staff
- Employees Responsible for Awareness Programs
- Security Analysts
- IT Security Staff
- IT Security Manager
Outcomes
Participants will demonstrate a high level understanding of:
- What is Information Security is and the threats to the company
- Typical CyberAttackmethod demonstrations or illustrations
- What to do to ensure prudent protection practices are used in the
organization
- Recommended sites/tools/references for your IT Staff to evaluate
Length
1 Day
Materials
- Workbook
- Case Studies
- Security Awareness Program Templates
A23: Security
Technologies Program (STP)
Overview
This technology support team training program provides an overview
of proven practices that help to protect your digital information assets
and interconnecting network(s).
It includes practical case studies plus a reference listing of current
references for specific safeguard suppliers and their products.
Who Should Attend
- Security Analysts
- Network Administrators
- Network Managers
Outcomes
Participants will receive a solid understanding of baseline IT Security
Safeguards such as:
- Tokens
- Firewalls
- Routers
- DMZs
- Server security
- Biometrics
- SSL
- Encryption
Length
2 Days
Materials
- Workbook
- Case Studies
- Reference Guide
|