CISSP Exam Prep -032 | Security Governance | 🧑💻
Автор: Professional Certifications
Загружено: 2024-11-03
Просмотров: 65
Описание:
The audio content is commercially licensed by Naturalsoft Ltd.
00:00 CISSP Exam Prep -032 | Security Governance | 🧑💻
00:15 Definition:
Key Concepts:
00:46 1. Purpose of Security Governance:
01:18 2. Elements of Security Governance:
• Policies and Standards:
• Risk Management:
• Compliance and Legal Requirements:
ISO/IEC 27001, NIST, GDPR, HIPAA, or PCI-DSS.
• Organizational Structure:
• Accountability and Oversight:
• Security Strategy:
02:54 3. Principles of Security Governance:
• Alignment with Business Objectives:
• Risk-Based Approach:
• Responsibility and Accountability:
• Compliance:
• Continuous Improvement:
04:02 4. Security Governance Frameworks:
• ISO/IEC 27001:
• NIST Cybersecurity Framework (CSF):
• COBIT (Control Objectives for Information and Related Technologies):
• CMMI (Capability Maturity Model Integration):
05:23 5. Roles in Security Governance:
• Board of Directors:
• Senior Management (CEO, CFO, etc.):
• Chief Information Security Officer (CISO):
• Information Security Committee:
• Internal Audit:
06:33 6. Key Security Governance Activities:
• Establishing Security Policies:
• Risk Management and Assessment:
• Compliance Monitoring:
• Security Metrics and Reporting:
• Third-Party Risk Management:
07:56 7. Challenges in Security Governance:
• Alignment with Business:
• Resource Allocation:
• Changing Threat Landscape:
• Cultural Challenges
08:57 8. Security Governance and Compliance:
• Regulatory Requirements:
• GDPR:
• HIPAA:
• PCI-DSS:
• Legal Accountability:
09:50 9. Security Governance vs. IT Governance:
• Security Governance:
• IT Governance:
10:20 10. Continuous Improvement in Security Governance:
• Governance models often adopt a Plan-Do-Check-Act (PDCA) cycle:
• Plan: Define security goals and strategies.
• Do: Implement security controls and policies.
• Check: Monitor performance and conduct audits.
• Act: Adjust the strategy and controls based on findings.
11:02 Importance in the CISSP Exam:
11:37 Real-World Example:
CISSP #cissp #cisspexam #cissptraining
The Certified Information Systems Security Professional (CISSP)
Повторяем попытку...
Доступные форматы для скачивания:
Скачать видео
-
Информация по загрузке: