pearson-dev-cysec
Developing Cybersecurity Programs and Policies
Access a start-to-finish guidance on how to establish an efficient and smart cybersecurity strategy in any organization.
- 18 Interactive Lessons and 73 topics mapped to the official exam objectives
- 808 Practice Test Questions
Beginner Self-paced · 1 year access 4.4/5 (35 Reviews)
01 / Skills you'll get
What you will be able to do
- Craft a strong and new cybersecurity policy.
- Implement industry frameworks (like NIST)
- Manage cybersecurity risk
- Secure assets and prevent data loss
- Train employees on cybersecurity best practices
- Build a robust incident response plan
Course Highlights
-
18 Structured Lessons Comprehensive coverage of core course objectives
-
808 Practice Questions Assessment tests with detailed answer rationales
-
1 Year Full Access Self-paced learning accessible anytime on all devices
02 / Lessons & labs
See exactly what you will learn and practice
Lessons
18 Interactive Lessons · 73 topics01 Introduction +
02 Understanding Cybersecurity Policy and Governance 5 topics +
- Information Security vs. Cybersecurity Policies
- Looking at Policy Through the Ages
- Cybersecurity Policy
- Cybersecurity Policy Life Cycle
- Summary
03 Cybersecurity Policy Organization, Format, and Styles 4 topics +
- Policy Hierarchy
- Writing Style and Technique
- Policy Format
- Summary
04 Cybersecurity Framework 3 topics +
- Confidentiality, Integrity, and Availability
- NIST's Cybersecurity Framework
- Summary
05 Governance and Risk Management 3 topics +
- Understanding Cybersecurity Policies
- Cybersecurity Risk
- Summary
06 Asset Management and Data Loss Prevention 6 topics +
- Information Assets and Systems
- Information Classification
- Labeling and Handling Standards
- Information Systems Inventory
- Understanding Data Loss Prevention Technologies
- Summary
07 Human Resources Security 4 topics +
- The Employee Life Cycle
- The Importance of Employee Agreements
- The Importance of Security Education and Training
- Summary
08 Physical and Environmental Security 3 topics +
- Understanding the Secure Facility Layered Defense Model
- Protecting Equipment
- Summary
09 Communications and Operations Security 9 topics +
- Standard Operating Procedures
- Operational Change Control
- Malware Protection
- Data Replication
- Secure Messaging
- Activity Monitoring and Log Analysis
- Service Provider Oversight
- Threat Intelligence and Information Sharing
- Summary
10 Access Control Management 4 topics +
- Access Control Fundamentals
- Infrastructure Access Controls
- User Access Controls
- Summary
11 Information Systems Acquisition, Development, and Maintenance 4 topics +
- System Security Requirements
- Secure Code
- Cryptography
- Summary
12 Cybersecurity Incident Response 4 topics +
- Incident Response
- What Happened? Investigation and Evidence Handling
- Data Breach Notification Requirements
- Summary
13 Business Continuity Management 5 topics +
- Emergency Preparedness
- Business Continuity Risk Management
- The Business Continuity Plan
- Plan Testing and Maintenance
- Summary
14 Regulatory Compliance for Financial Institutions 5 topics +
- The Gramm-Leach-Bliley Act
- New York's Department of Financial Services Cybersecurity Regulation (23 NYCRR Part 500)
- What Is a Regulatory Examination?
- Personal and Corporate Identity Theft
- Summary
15 Regulatory Compliance for the Health-Care Sector 4 topics +
- The HIPAA Security Rule
- The HITECH Act and the Omnibus Rule
- Understanding the HIPAA Compliance Enforcement Process
- Summary
16 PCI Compliance for Merchants 3 topics +
- Protecting Cardholder Data
- PCI Compliance
- Summary
17 NIST Cybersecurity Framework 7 topics +
- Introducing the NIST Cybersecurity Framework Components
- The Framework Core
- Framework Implementation Tiers ("Tiers")
- NIST's Recommended Steps to Establish or Improve a Cybersecurity Program
- NIST's Cybersecurity Framework Reference Tool
- Adopting the NIST Cybersecurity Framework in Real Life
- Summary
18 Appendix A: Cybersecurity Program Resources +
03 / Reviews
35 verified learner reviews
3M+ happy customers · 50+ countries
As an expert reviewer of the uCertify Developing Cybersecurity Programs and Policies course curriculum, I’ve found that it provides a thorough overview of professional learning...
04 / FAQs
Questions before you start
What is a cyber security policy? +
What programs do cyber security use? +
Cybersecurity professionals utilize a variety of programs and tools depending on their specific needs. These can include:
- Antivirus and Anti-malware software
- Firewalls
- Intrusion Detection/Prevention Systems (IDS/IPS)
- Data encryption software
- Security Information and Event Management (SIEM) systems
How to develop cyber security policies and procedures? +
Developing cyber security policies and procedures involves several steps:
- Identify your assets: This includes all your hardware, software, data, and intellectual property.
- Assess your risks: Evaluate the threats your organization faces and how likely they are to occur.
- Develop policies and procedures: Create clear guidelines for how employees will access, use, and store data, along with procedures for incident response and reporting.
- Implement and train: Roll out your policies to employees and provide training to ensure everyone understands their role in cybersecurity.
- Test and update: Regularly test your policies and procedures and update them as needed to address new threats and vulnerabilities.
How to develop a cybersecurity program?+
Increase Your Cybersecurity Policy and Management Effectiveness
This learning and training course positions you for a successful career in an exciting and rewarding domain.