Information Security Basics DescriptionInformation security basics is a “boot camp” course that covers 10 basic fields of information security and gives the participant a full scale knowledge of information security concepts, techniques and methodologies.
Course ObjectivesUpon completing the course, the participants will be able to:
- Fully understand the rule of the information security manager\officer.
- Understand how to assess, and improve the information security
- Describe various techniques of deploying an in-depth, multi-layer security mechanizes.
Topics
- Information security and risk management
- Access control
- Telecommunication and network security
- cryptography
- Security architecture and design
- Operation security
- Application security
- BCP and DRP
- Physical security
- Law ethics and investigation
Target AudienceInformation security officer, Risk managers, CIO, auditors, IT managers, system administrators
PrerequisitesBasic knowledge in networking and TCP/IP, and risk management.
Duration5 Days
Outline
- Basics
- Confidentiality
- Integrity
- Availability
- Authenticity
- Non-Repudiation
- Threats
- Definition
- Threat Classification
- Type
- Physical Damage
- Natural Events
- Loss of Essential Services
- Compromise of Information
- Technical Failures
- Compromise of Functions
- Origin
- Deliberate
- Accidental
- Environmental
- Threat Model
- Threat agents
- Access
- Misuse
- Disclose
- Modify
- Deny Access
- Threat Communities
- Internal (Adversaries)
- External (Adversaries)
- Threat Analysis
- Threat Management
- Vulnerabilities
- Definition
- Vulnerabilities Classification
- Hardware
- Software
- Network and Communication
- Personnel
- Site
- Physical
- Natural Disasters
- Power Failure
- Organizational
- Management
- Administration Procedures
- Business Operation
- Vulnerabilities Causes
- Complexity
- Familiarity
- Connectivity
- Password Management Flaws
- Fundamental OS Design Flaws
- Internet Web Browsing
- Software Bugs
- Unchecked User Input
- CVE & CVSS
- Controls
- Definition
- Preventive
- Detective
- Corrective
- Common Countermeasures
- Physical
- Procedural
- Background Check
- Social Networks Query
- Technical
- Legal and Regulatory