Event Details
Focus and Features
This course will provide attendees with an introduction to cybersecurity concepts based on Cybersecurity Framework to help in the organization's cybersecurity risk assessment and audit engagements. This will provide detailed discussions of the different functions described in the core framework of the Cybersecurity Framework and how to apply this knowledge on risk assessment process.
Learning Objective(s):
- Understand cybersecurity from risk and audit perspective,
- Understand the NIST Cybersecurity Framework
- Understand the five Framework Core Functions: Identify, Protect, Detect, Respond and Recover
What You Will Learn
Introduction to Cybersecurity
- Definition of Cybersecurity
- Current Cyber Threat Landscape
- Cyber Attack Models
Introduction to NIST Risk Assessment Framework
- Risk Assessment Process
- Risk Model
Introduction to NIST CyberSecurity Framework
- Core Functions
- Implementation Tiers
- Profiles
Assessing Cybersecurity Risks based on the NIST's Protect Core Function
- Identity Management and Access Control
- Awareness and Training
- Data Security
- Information Protection Processes and Procedures
- Maintenance
- Protective Technology
Assessing Cybersecurity Risks based on the NIST's Detect Core Function
- Anomalies and Event
- Security Continuous Monitoring
- Detection Processes
Assessing Cybersecurity Risks based on the NIST's Respond Core Function
- Response Planning
- Communications
- Analysis
- Mitigation
- Improvements
Assessing Cybersecurity Risks based on the NIST's Recover Core Function
- Recovery Planning
- Improvements
- Communications
Who Should Attend:
This course is designed for beginning internal auditors involved or will be involved in assessing and/or auditing cybersecurity.
Time and Schedule:
March 9, 2022 | 9am - 12noon
March 10, 2022 | 9am - 12noon
March 11, 2022 | 9am - 12noon