What is the term for a security control supplied by a cloud service provider?
この演習はコースの一部です
理論を実践に変える、インタラクティブな演習のひとつをお試しください
Introduction to frameworks within security domainsIn this module, you’ll dive into the essential concepts of security domains, compliance frameworks, data privacy fundamentals, risk and security controls. You'll understand the key differences between security and compliance, and learn about controls and frameworks within the three pivotal areas of compliance: people, process, and technology. This module offers you the opportunity to explore risk and security controls in depth, giving you a clear view of how these controls are effectively implemented.
In this module, you’ll delve deeper into risk management frameworks, regulations, and industry standards, including NIST CSF, SOC 2, FedRAMP, HIPAA, and ISO 27001. You'll have the opportunity to compare and contrast these frameworks, standards, and regulations. Additionally, you'll learn how to effectively use these frameworks to establish controls and manage risks, ensuring compliance with various obligations.
Recognize and define controls, including compensating controls and the control mapping process.
現在の演習
In this module, you'll navigate key cloud tools and their applications in risk and compliance, focusing on tools like Google's Security Command Center, Risk Manager, and Policy Analyzer, as well as cloud security posture management (CSPM). You'll learn how these tools, along with risk protection programs and organizational policies, are used for compliance and risk mitigation, and explore compliance frameworks like CIS, NIST, and ISO, and MITRE in risk management and security standards.