Sign In Start Free Trial
Account

Add to playlist

Create a Playlist

Modal Close icon
You need to login to use this feature.
  • Book Overview & Buying A CISO Guide to Cyber Resilience
  • Table Of Contents Toc
  • Feedback & Rating feedback
A CISO Guide to Cyber Resilience

A CISO Guide to Cyber Resilience

By : Debra Baker
5 (12)
close
close
A CISO Guide to Cyber Resilience

A CISO Guide to Cyber Resilience

5 (12)
By: Debra Baker

Overview of this book

This book, written by the CEO of TrustedCISO with 30+ years of experience, guides CISOs in fortifying organizational defenses and safeguarding sensitive data. Analyze a ransomware attack on a fictional company, BigCo, and learn fundamental security policies and controls. With its help, you’ll gain actionable skills and insights suitable for various expertise levels, from basic to intermediate. You’ll also explore advanced concepts such as zero-trust, managed detection and response, security baselines, data and asset classification, and the integration of AI and cybersecurity. By the end, you'll be equipped to build, manage, and improve a resilient cybersecurity program, ensuring your organization remains protected against evolving threats.
Table of Contents (20 chapters)
close
close
Free Chapter
1
Part 1: Attack on BigCo
3
Part 2: Security Resilience: Getting the Basics Down
13
Part 3: Security Resilience: Taking Your Security Program to the Next Level

Creating your security baseline

The secure configuration of your endpoints, cloud assets, and network devices is paramount to protecting your company from hackers. Gartner has said that 99% of cloud and network breaches are due to misconfiguration. This is something you can do for free. It’s not an easy task, but it is well worth it and probably one of the most important actions you can take other than MFA and regular patching. We discussed this previously, but CIS is the de facto secure configuration standard for the commercial space, and STIGS are required for US Federal government networks and FedRAMP. The good news is that there are mappings of CIS to SOC2, HIPAA, NIST CSF, and PCI on the CIS website. As I’ve stated before, there are compliance products, such as Drata, that will automate the controls you need to meet. There is also a compliance mapping you can download for free called the Secure Controls Framework (SCF). It offers a master mapping of almost every...

Unlock full access

Continue reading for free

A Packt free trial gives you instant online access to our library of over 7000 practical eBooks and videos, constantly updated with the latest in tech
bookmark search playlist font-size

Change the font size

margin-width

Change margin width

day-mode

Change background colour

Close icon Search
Country selected

Close icon Your notes and bookmarks

Delete Bookmark

Modal Close icon
Are you sure you want to delete it?
Cancel
Yes, Delete

Confirmation

Modal Close icon
claim successful

Buy this book with your credits?

Modal Close icon
Are you sure you want to buy this book with one of your credits?
Close
YES, BUY