À propos de ce cours
5.0
3 notes
1 avis
100 % en ligne

100 % en ligne

Commencez dès maintenant et apprenez aux horaires qui vous conviennent.
Dates limites flexibles

Dates limites flexibles

Réinitialisez les dates limites selon votre disponibilité.
Niveau débutant

Niveau débutant

Heures pour terminer

Approx. 14 heures pour terminer

Recommandé : 5 hours/week...
Langues disponibles

Anglais

Sous-titres : Anglais
100 % en ligne

100 % en ligne

Commencez dès maintenant et apprenez aux horaires qui vous conviennent.
Dates limites flexibles

Dates limites flexibles

Réinitialisez les dates limites selon votre disponibilité.
Niveau débutant

Niveau débutant

Heures pour terminer

Approx. 14 heures pour terminer

Recommandé : 5 hours/week...
Langues disponibles

Anglais

Sous-titres : Anglais

Programme du cours : ce que vous apprendrez dans ce cours

Semaine
1
Heures pour terminer
5 heures pour terminer

Identify and Analyze Malicious Code and Activity

Module Topics: Malicious Code, Malicious Code Countermeasures, Exploitation, Insider Threats, Spoofing, Phishing, Spam, and Botnet, Malicious Web Activity, Payloads, Malicious Activity Countermeasures, Malcode Mitigation, and Common Mistakes. Malicious Code includes topics like Key concepts, Example Worms, Polymorphic Viruses, Software Exploitation Methods, Scanners, Generations of Antivirus Scanning Software, Generic Decryption (GD) Technology, Behavior-Blocking Software, Antivirus Software on the Firewall and IDS, Code signing, Code Signing Certificates, Sandboxing, Virtual Machine (VM), Social Engineering, Additional Examples of Social Engineering Attacks, and Security Awareness Training. Under the topic of Exploitation, you will learn about Long File Extensions, Fake Icon, Hostile Codecs, and E-mail. In Insider Threats, you will learn about Indicators of Malicious Threat Activity, Countermeasures, Direction, Prevention, and Deterrence Methods, Continual Training, and Insider Hardware Threats. In Spoofing, Phishing, Spam, and Botnets, you will learn about Spoofing, Examples of Spoofing, Phishing, Common Characteristics of Forged E-Mail Messages, Techniques, How Phishing Works, Impact of Phishing, How to Recognize a Phishing E-Mail, Spam, Spam Distribution Channels, How Does Spam Work?, Spam Techniques, Protecting users From Spam, Botnets, How Are Botnets Created?, Botnet-Led Exploits, Botnet Detection and Mitigation, Common Botnet Detection and Mitigation Techniques. In Malicious Web Activity, you will go through topics like Mobomarket Attack, Cross-site Scripting (XSS) Attacks, The Theory of XSS, XSS Attack Vectors, Is the Organization's Site Vulnerable to Cross-Site Scripting? Example of a Cross-Site Scripting Attack, How to check for Cross-Site Scripting Vulnerabilities, Zero-Day Exploits and Advanced Persistent Threats (APTS), Unknown Vulnerabilities management Process, Five Phases of APT, Brute-Force Attacks, Instant Messaging, Infected Factory Builds and Media, man-in-the-Middle Malcode, Malicious Activity Countermeasures, Network Layer, Application Layer, Modified Hosts File and DNS Changes, Inspection of Process, Rootkit, Rootkit Classifications, Behavioral Analysis of Malcode, and Static File Analysis....
Reading
18 vidéos (Total 109 min), 18 lectures, 1 quiz
Video18 vidéos
Malicious Code and Activity: Key Concepts6 min
Malicious Code and Activity: Malicious Code Countermeasures4 min
Malicious Code and Activity: Software Exploitation Methods6 min
Malicious Code and Activity: Software Exploitation Methods5 min
Malicious Code and Activity: Code Signing5 min
Malicious Code and Activity: Social Engineering6 min
Malicious Code and Activity: Security Awareness Training6 min
Malicious Code and Activity: Long File Extensions5 min
Malicious Code and Activity: E-mail7 min
Malicious Code and Activity: Countermeasures5 min
Malicious Code and Activity: Examples of Spoofing5 min
Malicious Code and Activity: Techniques5 min
Malicious Code and Activity: Botnet-Led Exploits6 min
Malicious Code and Activity: Malicious Web Activity6 min
Malicious Code and Activity: Zero-Day Exploits4 min
Malicious Code and Activity: Infected Factory Builds and Media4 min
Malicious Code and Activity: Inspection of Processes7 min
Reading18 lectures
Systems and Application Security10 min
Malicious Code and Activity: Key Concepts10 min
Malicious Code and Activity: Malicious Code Countermeasures10 min
Malicious Code and Activity: Software Exploitation Methods10 min
Malicious Code and Activity: Software Exploitation Methods10 min
Malicious Code and Activity: Code Signing10 min
Malicious Code and Activity: Social Engineering10 min
Malicious Code and Activity: Security Awareness Training10 min
Malicious Code and Activity: Long File Extensions10 min
Malicious Code and Activity: E-mail10 min
Malicious Code and Activity: Countermeasures10 min
Malicious Code and Activity: Examples of Spoofing10 min
Malicious Code and Activity: Techniques10 min
Malicious Code and Activity: Botnet-Led Exploits10 min
Malicious Code and Activity: Malicious Web Activity10 min
Malicious Code and Activity: Zero-Day Exploits10 min
Malicious Code and Activity: Infected Factory Builds and Media10 min
Malicious Code and Activity: Inspection of Processes10 min
Quiz1 exercice pour s'entraîner
Quiz 120 min
Semaine
2
Heures pour terminer
1 heure pour terminer

Implement and Operate Endpoint Device Security

Module Topics: Host-Based Intrusion Detection Systems (HIDS), Host-Based Firewalls, Application Whitelisting, Endpoint Encryption, Trusted Platform Module (TPM), Mobile Device Management (MDM), Secure Browsing. In Host-Based Intrusion Detection Systems (HIDS), you will learn about Advantages and Disadvantages of HIDS. In Application Whitelisting, you will learn about software Restriction Policies (SRP), Trusted Platform Module (TPM). In Mobile Device Management (MDM), you will learn about Bring your Own Device (BYOD), Security, BYOD Policy Considerations, BYOD Policy Considerations, Corporate Owned, Personally Enabled (COPE), and Secure Browsing....
Reading
3 vidéos (Total 15 min), 3 lectures, 1 quiz
Video3 vidéos
Endpoint Device Security: Trusted Platform Module (TPM)6 min
Endpoint Device Security: BYOD Policy Considerations2 min
Reading3 lectures
Endpoint Device Security: HIDS10 min
Endpoint Device Security: Trusted Platform Module (TPM)10 min
Endpoint Device Security: BYOD Policy Considerations10 min
Quiz1 exercice pour s'entraîner
Quiz 210 min
Semaine
3
Heures pour terminer
5 heures pour terminer

Operate and Configure Cloud Security

Module Topics: Introduction, Deployment Models, Service Models, Virtualization, Legal and Privacy Concerns, Classification of Discovered Sensitive Data, Mapping and Definition of Controls, Application of Defined Controls for Personally Identifiable Information (PII), Data Storage and Transmission, Encryption, Key Management, Masking/Obfuscation and Anonymization, Tokenization, Data Deletion Procedures and Mechanisms, Event Sources, Data Event Logging and Event Attributes, and Storage and Analysis of Data Events. Introduction covers the Five Essential Characteristics of Clouds. Deployment Models cover topics like Public, Private, Hybrid and Community Cloud, Service Models, SaaS, PaaS, and IaaS. Virtualization includes Hypervisor, and Types of Virtualization. In Legal and Privacy Concerns, you will learn about Key P&DP Questions, Country-Specific Legal Considerations, Jurisdiction and Applicable Law, Essential Requirements in P&DP Laws, Typical Meaning for Common Privacy Terms, Privacy Roles for Customer and Service Provider, Data Discovery, and Privacy Level Agreement (PLA). In Application of Defined Controls for Personally Identifiable Information (PII), you will learn about Cloud security Alliance Cloud Controls Matrix (CCM), CCM Security Domains, Data Dispersion in Cloud Storage, Threat to storage Types, Technologies Available to Address Threats, Data Loss Prevention (DLP), DLP Components, DLP Architecture, Cloud-Based DLP Considerations, and Best Practices. In Encryption, you will learn about Sample Use cases for Encryption, Cloud Encryption Challenges, Key Management, Key Storage in the Cloud, and Key Management in Software environments. In Masking/Obfuscation and Anonymization, you will learn about Data Masking/Obfuscation, Common Approaches for Data Masking, Primary Methods of Masking Data, and Data Anonymization. Tockenization covers topics like Tokenization and Cloud, Data Retention Policies, Data Deletion Procedures and Mechanisms, Disposal Options, Crypto-shredding, Data Archiving Policy, Security and Information Event Management (SIEM). Data Event Logging and Event Attributes covers topics like OWASP Recommendations, SIEM Capabilities, and SIEM Challenges. ...
Reading
16 vidéos (Total 105 min), 16 lectures, 1 quiz
Video16 vidéos
Cloud Security: Hybrid5 min
Cloud Security: Virtualization7 min
Cloud Security: Hypervisor4 min
Cloud Security: Country-Specific Legal Considerations6 min
Cloud Security: P&DP Laws6 min
Cloud Security:Application of Defined Controls for Personally Identifiable Information (PII)8 min
Cloud Security: Data Dispersion5 min
Cloud Security: Threat to Storage Types9 min
Cloud Security: Technologies to Address Threats4 min
Cloud Security: DLP Architecture7 min
Cloud Security: Review Activity6 min
Cloud Security: Key Storage in the Cloud4 min
Cloud Security: Common Approaches for Data Masking4 min
Cloud Security: Data Retention Policies7 min
Cloud Security: Disposal Options8 min
Reading16 lectures
Cloud Security: Five Essential Characteristics of Clouds10 min
Cloud Security: Hybrid10 min
Cloud Security: Virtualization10 min
Cloud Security: Hypervisor10 min
Cloud Security: Country-Specific Legal Considerations10 min
Cloud Security: P&DP Laws10 min
Cloud Security: Application of Defined Controls for Personally Identifiable Information (PII)10 min
Cloud Security: Data Dispersion10 min
Cloud Security: Threat to Storage Types10 min
Cloud Security: Technologies to Address Threats10 min
Cloud Security: DLP Architecture10 min
Cloud Security: Review Activity10 min
Cloud Security: Key Storage in the Cloud10 min
Cloud Security: Common Approaches for Data Masking10 min
Cloud Security: Data Retention Policies10 min
Cloud Security: Disposal Options10 min
Quiz1 exercice pour s'entraîner
Quiz 320 min
Semaine
4
Heures pour terminer
3 heures pour terminer

Secure Big Data Systems & Operate and Secure Virtual Environments

Module Topics for Secure Big Data Systems: Application Vulnerabilities and Architecture or Design Environments. Application Vulnerabilities include topics like Data Growth, Big Data, Interpreting Big, Data, Big Data Issues, and Challenges with 'Free' Analytic Tools. Architectural or Design Environments include topics like Distributed Computing Architectures, Key Challenges, Securing the Organization's Big Data, and Deploying Big Data for Security. Module Topics for Operate and Secure Virtual Environments: Software-Defined Network (SDN), Virtual Appliances, Continuity and Resilience, Attacks and Countermeasures, Common Virtualization Attacks, Recommendations and Best Practices for Secure Virtualization, and Shared Storage. In Software-Defined network (SDN), you will learn about How SDN Works. Virtual Appliances talks about Virtual Appliances Compared to Virtual Machines. In Continuity and Resilience you will learn about Host Clustering Concepts, VMware Distributed Resource Scheduling (DRS), Scalability and Reliability, windows Failover Clustering. In Common Virtualization Attacks, you will learn about Mitigation Strategies. In Recommendations and Best Practices for Secure Virtualization you will learn about Desktop Virtualization and Security, Network Security, Storage Networks, Auditing and Logging, Virtual Machine Security, Management Systems, Hypervisor Security, Time Synchronization, Remote Access, Backups, and Configuration and Change Management. ...
Reading
9 vidéos (Total 70 min), 9 lectures, 1 quiz
Video9 vidéos
Secure Big Data Systems: Interpreting Big Data4 min
Secure Big data Systems: Key Challenges5 min
Operate and Secure Virtual Environments: SDN5 min
Operate and Secure Virtual Environments: Virtual Appliances8 min
Operate and Secure Virtual Environments: DRS10 min
Operate and Secure Virtual Environments: Common Attacks6 min
Operate and Secure Virtual Environments: Network Security5 min
Operate and Secure Virtual Environments: Virtual Machine Security16 min
Reading9 lectures
Secure Big Data Systems: Big Data10 min
Secure Big Data Systems: Interpreting Big Data10 min
Secure Big data Systems: Key Challenges10 min
Operate and Secure Virtual Environments: SDN10 min
Operate and Secure Virtual Environments: Virtual Appliances10 min
Operate and Secure Virtual Environments: DRS10 min
Operate and Secure Virtual Environments: Common Attacks10 min
Operate and Secure Virtual Environments: Network Security10 min
Operate and Secure Virtual Environments: Virtual Machine Security10 min
Quiz1 exercice pour s'entraîner
Quiz 412 min
5.0
1 avisChevron Right

Meilleurs avis

par GBJul 5th 2018

Thank you. Great course. The instructor breaks everything down, and makes it easy to learn.

Enseignant

Avatar

(ISC)² Education & Training

Education & Training

À propos de (ISC)²

(ISC)² is an international nonprofit membership association focused on inspiring a safe and secure cyber world. Best known for the acclaimed Certified Information Systems Security Professional (CISSP®) certification, (ISC)2 offers a portfolio of credentials that are part of a holistic, programmatic approach to security. www.isc2.org ...

À propos de la Spécialisation (ISC)² Systems Security Certified Practitioner (SSCP)

Pursue better IT security job opportunities and prove knowledge with confidence. The SSCP Professional Training Certificate shows employers you have the IT security foundation to defend against cyber attacks – and puts you on a clear path to earning SSCP certification. Learn on your own schedule with 120-day access to content aligned with the latest (ISC)2 SSCP exam domains. We’re offering the complete online self-paced program for only $1,000 – a $200 savings when you get all domains bundled together. 3 Steps to Career Advancement 1. Register for the course 2. Gain access for 120 days 3. Register and sit for the SSCP certification exam Upon completing the SSCP Professional Certificate, you will: 1. Complete six courses of preparing you to sit for the Systems Security Certified Practitioner (SSCP) certification exam as outlined below. Course 1 - Access Controls Course 2 - Security Operations and Administration Course 3 - Risk Identification, Monitoring, and Analysis/Incident Response and Recovery Course 4 - Cryptography Course 5 - Network and Communication Security Course 6 - Systems and Application Security 2. Receive a certificate of program completion. 3. Understand how to implement, monitor and administer an organization’s IT infrastructure in accordance with security policies and procedures that ensure data confidentiality, integrity and availability....
(ISC)² Systems Security Certified Practitioner (SSCP)

Foire Aux Questions

  • Oui, vous pouvez prévisualiser la première vidéo et consulter le programme du cours avant de vous inscrire. Vous devez acheter le cours pour accéder au contenu non inclus dans la prévisualisation.

  • Si vous décidez de vous inscrire au cours avant la date de début de session, vous aurez accès à toutes les vidéos et lectures du cours. Vous pourrez soumettre des devoirs à partir du début de la session.

  • Une fois que vous êtes inscrit(e) et que votre session commence, vous avez accès à toutes les vidéos et aux autres ressources, y compris les éléments à lire et le forum de discussion du cours. Vous pouvez afficher et soumettre des devoirs pour vous exercer, et terminer les devoirs notés requis pour obtenir une note et un Certificat de Cours.

  • Si vous réussissez le cours, votre Certificat de Cours électronique sera ajouté à votre page Accomplissements. À partir de cette page, vous pouvez imprimer votre Certificat de Cours ou l'ajouter à votre profil LinkedIn.

  • Ce cours fait partie du nombre restreint de cours proposés par Coursera actuellement disponibles uniquement aux étudiants ayant payé les frais du cours ou bénéficié de l'Aide Financière. Si vous souhaitez suivre ce cours alors que vous n'avez pas les moyens d'en acquitter les frais, nous vous recommandons de soumettre une demande d'Aide Financière.

  • The course schedule contains approximately 15 hours of content material covering lectures, reading materials, a case study, and quizzes broken up over the course of 7 weeks.

D'autres questions ? Visitez le Centre d'Aide pour les Etudiants.