CRISC 2023: Security Controls

placeholder

To protect assets organizations must apply a structured approach to software development as well as implement manage and monitor security controls. Organizations must also determine the appropriate cost to protect assets.

In this course learn about security control types how physical security and digital data security relate and how critical infrastructure should be protected. Next explore the Cloud Controls Matrix (CCM) how to use the annual loss expectancy (ALE) formula and security within the software development life cycle (SDLC). Finally examine continuous integration and continuous deployment (CI/CD) Git version control how to use the git CLI and the benefits of the OWASP Enterprise Security API (ESAPI).

This course can be used to prepare for the ISACA Certified in Risk and Information Systems Control (CRISC) certification.