Sign In Start Free Trial
Account

Add to playlist

Create a Playlist

Modal Close icon
You need to login to use this feature.
  • Book Overview & Buying A CISO Guide to Cyber Resilience
  • Table Of Contents Toc
  • Feedback & Rating feedback
A CISO Guide to Cyber Resilience

A CISO Guide to Cyber Resilience

By : Debra Baker
5 (12)
close
close
A CISO Guide to Cyber Resilience

A CISO Guide to Cyber Resilience

5 (12)
By: Debra Baker

Overview of this book

This book, written by the CEO of TrustedCISO with 30+ years of experience, guides CISOs in fortifying organizational defenses and safeguarding sensitive data. Analyze a ransomware attack on a fictional company, BigCo, and learn fundamental security policies and controls. With its help, you’ll gain actionable skills and insights suitable for various expertise levels, from basic to intermediate. You’ll also explore advanced concepts such as zero-trust, managed detection and response, security baselines, data and asset classification, and the integration of AI and cybersecurity. By the end, you'll be equipped to build, manage, and improve a resilient cybersecurity program, ensuring your organization remains protected against evolving threats.
Table of Contents (20 chapters)
close
close
Free Chapter
1
Part 1: Attack on BigCo
3
Part 2: Security Resilience: Getting the Basics Down
13
Part 3: Security Resilience: Taking Your Security Program to the Next Level

Monitoring your controls

Security and risk management also involves the ongoing monitoring and review of implemented controls to ensure their effectiveness and to identify emerging risks. This includes regular security assessments, audits, and incident response planning to detect and respond to security incidents in a timely manner.

How you monitor your controls will follow the budget and priorities of your organization. You can manually do internal self-assessments at least annually. Ideally, at least annually, a third-party penetration test should be carried out on your network. At a more advanced level, you should bring in an outside third party to conduct an assessment of your network. If your organization has decided to comply with SOC2, then you would do at least one annual self-assessment, and an outside auditor would come in annually to do an audit.

At a more advanced level, you can carry out automated continuous monitoring of your organization’s controls. The...

Unlock full access

Continue reading for free

A Packt free trial gives you instant online access to our library of over 7000 practical eBooks and videos, constantly updated with the latest in tech
bookmark search playlist font-size

Change the font size

margin-width

Change margin width

day-mode

Change background colour

Close icon Search
Country selected

Close icon Your notes and bookmarks

Delete Bookmark

Modal Close icon
Are you sure you want to delete it?
Cancel
Yes, Delete

Confirmation

Modal Close icon
claim successful

Buy this book with your credits?

Modal Close icon
Are you sure you want to buy this book with one of your credits?
Close
YES, BUY