1. Purpose-Driven Governance
Welcome to the course
()
Module introduction
()
Define ISMS success criteria
()
Map strategic goals to NIST CSF
()
Select governance tools and inputs
()
2. Scoping and Context Definition
Process mapping for ISMS scope
()
Policy and boundary setting
()
Contextualize governance risks, part 1
()
3. Leadership Engagement and Role Assignment
Establish sponsorship channels
()
Define roles and RACI
()
Leadership approval process
()
4. Risk Identification and Prioritization
Conduct ISO NIST risk analysis
()
Define risk acceptance criteria
()
Prioritize control objectives
()
5. Control Selection and Mapping
Use control mapping tools
()
Tailor controls to risk profile
()
Document mapping justification
()
6. Cloud and Privacy Integration
Map cloud controls
()
Assess privacy gaps
()
Write privacy addendum
()
7. Continuity and Recovery Planning
Module introduction
()
ISO NIST recovery principles
()
Designing continuity plans
()
Simulating failover workflows
()
8. Technical and Awareness Controls
Technical control deployment
()
Launch awareness training
()
Secure workflow assignments
()
9. Patch and Vulnerability Management
Patch methodologies overview
()
Automate patch monitoring
()
Track remediation logs
()
10. Incident Response Readiness
Module introduction
()
ISONIST IR playbooks
()
Define IR roles and teams
()
Simulate IR drill planning-
()
11. Performance Monitoring and Auditing
Define KPIs: Tier metrics
()
Develop dashboards
()
Prepare audit evidence logs
()
12. Governance Automation and Optimization
AI-powered monitoring
()
Template reuse control sync
()
Optimize control improvements
()
Course wrap-up
()
Ex_Files_Cybersecurity_Governance_NIST_ISO.zip
(76 KB)