Security Management and Operations Security Practices


Overview/Description
To discuss the purpose of information security, security management, operations security, risk control, and employment policies

Target Audience
Network administrators, network managers, information system managers, system administrators, application developers, IT security officers

Prerequisites
Experience in selecting, recommending, and implementing information system security policies, standards, procedures, and technologies

Expected Duration
300 Minutes

Objectives:

Security Management and Operations Security Practices

  • describe the features of information security.
  • outline the threats to information systems.
  • explain the underlying concepts and principles of security management.
  • describe the elements that comprise a typical security policy in the workplace.
  • recognize the processes involved in devising a security policy.
  • describe the controls that are available to protect resources, restrict privileges, and limit the risk of access abuse in a network environment.
  • describe the characteristics and features of intrusion detection systems.
  • describe the different types of intrusion detection mechanisms.
  • discuss the principles of detecting network intruders.
  • identify the resources that can be used to track a network intruder.
  • discuss risk management and its requirements with reference to security issues.
  • describe the processes involved in implementing information risk management.
  • discuss how defining responsibilities and maintaining awareness of those responsibilities can enhance information security in the workplace.
  • identify the risks to valuable information.
  • discuss employment practices in the workplace.

  • Course Number: 70443_eng