À propos de ce cours
5.0
4 notes
1 avis
100 % en ligne

100 % en ligne

Commencez dès maintenant et apprenez aux horaires qui vous conviennent.
Dates limites flexibles

Dates limites flexibles

Réinitialisez les dates limites selon votre disponibilité.
Niveau débutant

Niveau débutant

Heures pour terminer

Approx. 23 heures pour terminer

Recommandé : 6 hours/week...
Langues disponibles

Anglais

Sous-titres : Anglais
100 % en ligne

100 % en ligne

Commencez dès maintenant et apprenez aux horaires qui vous conviennent.
Dates limites flexibles

Dates limites flexibles

Réinitialisez les dates limites selon votre disponibilité.
Niveau débutant

Niveau débutant

Heures pour terminer

Approx. 23 heures pour terminer

Recommandé : 6 hours/week...
Langues disponibles

Anglais

Sous-titres : Anglais

Programme du cours : ce que vous apprendrez dans ce cours

Semaine
1
Heures pour terminer
4 heures pour terminer

Understand the Risk Management Process

Module Topic: Risk Visibility and Reporting, Risk management Concepts, Risk Assessment, Risk Treatment, Audit Findings. In Risk visibility and Reporting, you will learn about risk register, creating a risk register, risk register, and risk management steps. In Risk Management Concepts, you will learn about, key terms, and generic risk model with key factors - NIST SP 800-30 R1. In risk Assessment, you will learn about NIST SP 800- 30 R1 risk assessment methodology, Step 1. prepare for the assessment, Step 2. conduct the assessment, Step 2a. identify threat sources, step 2b. identify potential threat events, step 2c. identify vulnerabilities and predisposing conditions, step 2d. determine likelihood, step 2e. determine impact, step 2f. risk determination, risk level matrix, risk levels, step 3. communicating and sharing risk assessment information, step 4. maintaining the risk assessment, and risk assessment activity. In Risk Treatment, you will learn about, risk mitigation, example control: passwords, control selection, residual risk, risk transference, risk avoidance, and risk acceptance. In audit Findings, you will learn about auditors, types of audits, audit methodologies, auditor responsibilities, audit scope, documentation, and response to audit. ...
Reading
14 vidéos (Total 84 min), 14 lectures, 1 quiz
Video14 vidéos
Risk Management Process: Creating a Risk Register7 min
Risk Management Process: Risk Register Risk Management Steps8 min
Risk Management Process: Key Terms5 min
Risk Management Process: Key Terms6 min
Risk Management Process: Risk Assessment3 min
Risk Management Process: Preparation Steps7 min
Risk Management Process: Step 2b4 min
Risk Management Process: Quantitative Analysis8 min
Risk Management Process: Qualitative Analysis5 min
Risk Management Process: Step 33 min
Risk Management Process: Risk Treatment5 min
Risk Management Process: Risk Avoidance5 min
Risk Management Process: Type of Audits7 min
Reading14 lectures
Risk Management Process: Risk Visibility and Reporting10 min
Risk Management Process: Creating a Risk Register10 min
Risk Management Process: Risk Register Risk Management Steps10 min
Risk Management Process: Key Terms10 min
Risk Management Process: Key Terms10 min
Risk Management Process: Risk Assessment10 min
Risk Management Process: Preparation Steps10 min
Risk Management Process: Step 2b10 min
Risk Management Process: Quantitative Analysis10 min
Risk Management Process: Qualitative Analysis10 min
Risk Management Process: Step 310 min
Risk Management Process: Risk Treatment10 min
Risk Management Process: Risk Avoidance10 min
Risk Management Process: Type of Audits10 min
Quiz1 exercice pour s'entraîner
Quiz 120 min
Semaine
2
Heures pour terminer
3 heures pour terminer

Perform Security Assessment Activities

Module Topics: Participate in Security and Test Results, Penetration Testing. In Participate in Security and Test Results, you will learn about vulnerability scanning and analysis, vulnerability testing software categories, vulnerability testing qualities, potential problems, host scanning, host security considerations, traffic types, security gateway types, wireless networking testing, potential security issues, searching for rogue access points, locking down the enterprise, wireless tools, war dialing, and war driving. In Penetration Testing you will learn about penetration testing modes, white box / hat, gray box / hat, black box / hat, phase 1: preparation, reporting, phase 2: reconnaissance and network mapping techniques, reconnaissance, social engineering and low-tech reconnaissance, whois attacks, DNS zone transfers, network mapping, network mapping techniques, firewalking, basic built-in tools, phase 3: information evaluation and risk analysis, phase 4: active penetration, phase 5: analysis and reporting, penetration testing high-level steps....
Reading
11 vidéos (Total 73 min), 11 lectures, 1 quiz
Video11 vidéos
Security Assessment Activities: Potential Problems6 min
Assessment Activities: Security Gateway Types5 min
Security Assessment Activities: Potential Security Issues6 min
Security Assessment Activities: Penetration Testing6 min
Security Assessment Activities: White Box / Hat8 min
Security Assessment Activities: Reconnaissance4 min
Security Assessment Activities: DNS Zone Transfers7 min
Security Assessment Activities: Network Mapping Techniques9 min
Security Assessment Activities: Firewalking6 min
Security Assessment Activities: Active Penetration6 min
Reading11 lectures
Security Assessment Activities: Participate in Security and Test Results10 min
Security Assessment Activities: Potential Problems10 min
Assessment Activities: Security Gateway Types10 min
Security Assessment Activities: Potential Security Issues10 min
Security Assessment Activities: Penetration Testing10 min
Security Assessment Activities: White Box / Hat10 min
Security Assessment Activities: Reconnaissance10 min
Security Assessment Activities: DNS Zone Transfers10 min
Security Assessment Activities: Network Mapping Techniques10 min
Security Assessment Activities: Firewalking10 min
Security Assessment Activities: Active Penetration10 min
Quiz1 exercice pour s'entraîner
Quiz 220 min
Semaine
3
Heures pour terminer
4 heures pour terminer

Operate and Maintain Monitoring Systems & Analyze and Report Monitoring Results

Module Topics: Events of Interest, Logging, source Systems, Security Analytics, metrics, and Trends, Visualization, Event Data Analysis, Communication of Findings. In Events of Interest you will learn about, monitoring terminology, Intrusion Detection System (IDS)/Intrusion Prevention System (IPS), comparing IDS and IPS, types of IDS/IPS devices, deploying HIDS and NIDS, implementation issues for monitoring, monitoring control, other considerations, sample questions to consider, collecting data for incident response, monitoring response techniques, attackers, attacker motivations, intrusions, events, types of monitoring, and file integrity checkers, continuous/compliance monitoring. In Logging, you will learn about reviewing host logs, reviewing incident logs, log anomalies, log management, clipping levels, filtering, log consolidation, log retention, centralized logging (syslog and log aggregation), syslog, distributed log collectors, hosted logging services, configuring event sources (s-flow, NetFlow, sniffer), Cosco NetFlow, What is an IP Flow, IP packet attributes, understanding network behavior, how to access the data produced by NetFlow, How does the router or switch determine which flows to export to the NetFlow collector server, format of the export data, sFlow, event correlation systems (security, information, and event management (SIEM)), SIEM functions, compliance, enhanced network security and improved IT/security operations, and full packet capture. In Source System, you will learn about comprehensive application, middleware, OS, and infrastructure monitoring, hyper capabilities, and operations manager. Analyze and Report Monitoring: In Security Analytics, Metrics, and Trends, you will learn about security baseline, network security baseline, metrics and analysis (MA), systems security engineering capability maturity model (SSE-CMM), and potential metrics. In visualization topic, you will learn about data visualization tools. In Event Data Analysis, you will learn about logs, log management, log management recommendations, and Potential uses of server log data. In Communication of Findings, you will learn about checklist for report writers and reviewers. ...
Reading
12 vidéos (Total 75 min), 12 lectures, 1 quiz
Video12 vidéos
Monitoring Systems: IDS/IPS5 min
Monitoring Systems: Implementation Issues for Monitoring6 min
Maintain Monitoring Systems: Sample Questions6 min
Maintain Monitoring Systems: Attacker Motivations7 min
Maintain Monitoring Systems: Logging5 min
Maintain Monitoring Systems: Log Anomalies5 min
Maintain Monitoring Systems: Log Retention6 min
Monitoring Systems: Compliance6 min
Monitoring Results: Security Baseline6 min
Monitoring Results: SSE-CMM6 min
Monitoring Results: Potential Uses of Server Log Data6 min
Reading12 lectures
Monitoring Systems: Monitoring Terminology10 min
Monitoring Systems: IDS/IPS10 min
Monitoring Systems: Implementation Issues for Monitoring10 min
Maintain Monitoring Systems: Sample Questions10 min
Maintain Monitoring Systems: Attacker Motivations10 min
Maintain Monitoring Systems: Logging10 min
Maintain Monitoring Systems: Log Anomalies10 min
Maintain Monitoring Systems: Log Retention10 min
Monitoring Systems: Compliance10 min
Monitoring Results: Security Baseline10 min
Monitoring Results: SSE-CMM10 min
Monitoring Results: Potential Uses of Server Log Data10 min
Quiz1 exercice pour s'entraîner
Quiz 320 min
Semaine
4
Heures pour terminer
4 heures pour terminer

Incident Response and Recovery

Module Topics: Preparation, Detection and Analysis, Containment, Eradication, and Recovery, Post-Incident Activity, Implementation of Countermeasures. In Introduction, you will learn about incident response, and basic definitions. In preparation, you will learn about elements of an incident response policy, incident response plan, training, incident response tools, communication planning, communication with law enforcement, media, requirements for effective incident handling, the incident response team, core team areas, centralized and decentralized teams, team structure, team conditions that support success, and other considerations. In Detection and Analysis, you will learn about Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS), types of intrusion systems, intrusion detection techniques, false positives and false negatives, anti-malware systems, security information event management (SIEM), Incident analysis, packet sniffers, Inline SSL decryption devices, incident documentation, records, assessing risk, response, containment strategy considerations, Delaying containment, areas of focus, defining an incident, triage, and notification. In Containment, Eradication, and Recovery, you will learn about common containment activities, and eradication. In post-incident activity, you will learn about effective incident response. In implementation of Countermeasures, you will learn about implementation steps. ...
Reading
13 vidéos (Total 77 min), 13 lectures, 1 quiz
Video13 vidéos
Incident Handling: Preparation6 min
Incident Handling: Training6 min
Incident Handling: Communication Planning7 min
Incident Handling: The Incident Response Team7 min
Incident Handling: IDS and IPS4 min
Incident Handling: Intrusion Detection Techniques7 min
Incident Handling: Anti-Malware Systems2 min
Incident Handling: Packet Sniffers6 min
Incident Handling: SSL Decryption Devices4 min
Incident Handling: Records6 min
Incident Handling: Delaying Containment6 min
Incident Handling: Containment, Eradication, and Recovery4 min
Reading13 lectures
Incident Handling: Incident Response10 min
Incident Handling: Preparation10 min
Incident Handling: Training10 min
Incident Handling: Communication Planning10 min
Incident Handling: The Incident Response Team10 min
Incident Handling: IDS and IPS10 min
Incident Handling: Intrusion Detection Techniques10 min
Incident Handling: Anti-Malware Systems10 min
Incident Handling: Packet Sniffers10 min
Incident Handling: SSL Decryption Devices10 min
Incident Handling: Records10 min
Incident Handling: Delaying Containment10 min
Incident Handling: Containment, Eradication, and Recovery10 min
Quiz1 exercice pour s'entraîner
Quiz 420 min

Enseignant

Avatar

(ISC)² Education & Training

Education & Training

À propos de (ISC)²

(ISC)² is an international nonprofit membership association focused on inspiring a safe and secure cyber world. Best known for the acclaimed Certified Information Systems Security Professional (CISSP®) certification, (ISC)2 offers a portfolio of credentials that are part of a holistic, programmatic approach to security. www.isc2.org ...

À propos de la Spécialisation (ISC)² Systems Security Certified Practitioner (SSCP)

Pursue better IT security job opportunities and prove knowledge with confidence. The SSCP Professional Training Certificate shows employers you have the IT security foundation to defend against cyber attacks – and puts you on a clear path to earning SSCP certification. Learn on your own schedule with 120-day access to content aligned with the latest (ISC)2 SSCP exam domains. We’re offering the complete online self-paced program for only $1,000 – a $200 savings when you get all domains bundled together. 3 Steps to Career Advancement 1. Register for the course 2. Gain access for 120 days 3. Register and sit for the SSCP certification exam Upon completing the SSCP Professional Certificate, you will: 1. Complete six courses of preparing you to sit for the Systems Security Certified Practitioner (SSCP) certification exam as outlined below. Course 1 - Access Controls Course 2 - Security Operations and Administration Course 3 - Risk Identification, Monitoring, and Analysis/Incident Response and Recovery Course 4 - Cryptography Course 5 - Network and Communication Security Course 6 - Systems and Application Security 2. Receive a certificate of program completion. 3. Understand how to implement, monitor and administer an organization’s IT infrastructure in accordance with security policies and procedures that ensure data confidentiality, integrity and availability....
(ISC)² Systems Security Certified Practitioner (SSCP)

Foire Aux Questions

  • Oui, vous pouvez prévisualiser la première vidéo et consulter le programme du cours avant de vous inscrire. Vous devez acheter le cours pour accéder au contenu non inclus dans la prévisualisation.

  • Si vous décidez de vous inscrire au cours avant la date de début de session, vous aurez accès à toutes les vidéos et lectures du cours. Vous pourrez soumettre des devoirs à partir du début de la session.

  • Une fois que vous êtes inscrit(e) et que votre session commence, vous avez accès à toutes les vidéos et aux autres ressources, y compris les éléments à lire et le forum de discussion du cours. Vous pouvez afficher et soumettre des devoirs pour vous exercer, et terminer les devoirs notés requis pour obtenir une note et un Certificat de Cours.

  • Si vous réussissez le cours, votre Certificat de Cours électronique sera ajouté à votre page Accomplissements. À partir de cette page, vous pouvez imprimer votre Certificat de Cours ou l'ajouter à votre profil LinkedIn.

  • Ce cours fait partie du nombre restreint de cours proposés par Coursera actuellement disponibles uniquement aux étudiants ayant payé les frais du cours ou bénéficié de l'Aide Financière. Si vous souhaitez suivre ce cours alors que vous n'avez pas les moyens d'en acquitter les frais, nous vous recommandons de soumettre une demande d'Aide Financière.

  • The course schedule contains approximately 21 hours of content material covering lectures, reading materials, a case study, and quizzes broken up over the course of 7 weeks

D'autres questions ? Visitez le Centre d'Aide pour les Etudiants.