Course Contents
Presentations for Cyber Security for Executives will draw from the topics below. The precise content and the amount of time spent one any topic can be readily adapted according to the audience and to emphasise different areas of concern. Customised content can be added as required.
THREATS
- Evolution of the Threat Landscape
- Common Types of Malicious Software (Malware)
- Advanced Persistent Threat (APT)
- Ransomware Types
- Ransomware Marketplace
- Ransomware Payments
- Ransomware Example
- Ransomware Advice
- Passwords
- Passphrases
- Phishing (Social Engineering Attack)
- Phishing – Red Flags
- Vishing (Voice Solicitation)
- Spear Phishing
- Whaling
- Social Media
- Cloud
- Bring Your Own Device (BYOD)
- The Deep Web versus The Dark Web
- Identity Theft and Identity Fraud
- Family Fraud
- ACSC Top 4 and Essential 8
- Patch Management
PHYSICAL SECURITY
- Building Security
- Building Access (Cloning Cards)
- Lock Picking
- Tailgating
- Restricted Work Areas
- Clear Desk Policy
- Clear Screen Policy
- Dumpster Diving
- Asset Disposal
- Reporting Security Incidents
PRIVACY
- Privacy Act Australia & New Zealand
- Office of the Australian Information Commissioner (OAIC)
- Data Breaches
CYBER RISK MANAGEMENT
- Cyber security as a risk to business objectives
- The systemic nature of cyber risks
- Risk distribution and risk aggregation
- Relevant laws, regulations and standards
- Management of cyber risk
- Integrating cyber risk into the organisation’s governance and management processes
- Awareness of gap analysis and the use of a road map to increase the reliability of risk cyber management
- Assessing the quality of cyber risk information via metric
CYBER SECURITY STRATEGY
- There are many cyber security strategies
- Knowing which strategy to apply is daunting
- Organisations need a starting point
- No single strategy can prevent cyber incidents
- The ACSC baseline – the Essential 8
CYBER SECURITY RESILIENCE
- Incident management
- Detect
- Respond
- Recover
GENERAL SECURITY AWARENESS
The human factor – what your staff do or don’t do – is the single biggest vulnerability in the cyber world. Each day we are bombarded by increasingly sophisticated threats that play on people’s susceptibilities. Addressing the human factor is now a key part of any cyber resilience strategy. It is much more than having a set of policies and procedures. It’s a mindset.
ALC has a proven program to address cyber security awareness for the general organisation.
For more information or to discuss your requirements please contact the ALC team.