CAT 320 - Introduction to Security Policy
Course Description
This course introduces best practices for developing and implementing cybersecurity policies within organizations. It covers key cybersecurity control frameworks, essential policy and documentation practices, and strategies for creating effective corporate programs that protect digital assets and ensure compliance with legal and regulatory requirements.
Course Details
Learning Outcomes
By the completion of this course, successful students will be able to:
- Explain cybersecurity policies and control frameworks
- Develop and implement security policies for different environments
- Assess compliance with legal and regulatory requirements
- Prepare documentation related to incident response
Course Components:
Lectures (Theory Component):
- Key Cybersecurity Control Frameworks (NIST, ISO/IEC 27001)
- Essentials of Security Policy Development and Implementation
- Understanding Corporate and Legal Compliance
- Documentation Practices and Incident Response Policies
Cyber Range-Based Labs (Hands-On Component):
- Developing a Basic Security Policy for a Simulated Organization
- Simulating Incident Response and Policy Application
- Creating and Implementing Access Control Policies