ISSC Security‎ > ‎

Information Security and Risk Management

posted 27 Dec 2009, 04:10 by Kanav Gupta   [ updated 27 Dec 2009, 04:14 ]
Introduction
  • Security Program
  • Security Controls
  • The Elements of Security
Core Information Security Principles
  • Confidentiality
  • Integrity
  • Availability
Information Security Management Governance
  • Security Governance
  • Security Policies, Procedures, Standards, Guidelines, and Baselines
  • Oraganizational Security Models
Organizational Behavior
  • Organizational Structure Evolution
  • Best Practices
  • Security Roles and Responsibilities
  • Reporting Model
  • Enterprisewide Security Oversight
Security Awareness, Training, and Education
  • Conducting A Formal Security Awareness Training
  • Awareness Activities and Methods
Information Risk Management
  • Risk Management Concepts
  • Risk Handling Strategies
  • Risk Assessment/Analysis
Information Classification
  • Introduction
  • Classification Types
  • Guidelines for Information Classification
  • Criteria for Information Classification
  • Data Classification Procedures
  • Classification Controls
Ethics
  • Basic Concepts
  • Professional Code of Ethics
  • Example Topics in Computer Ethics
  • Common Computer Ethics Fallacies
  • Hacking and Hacktivism 
Comments