Informações sobre o curso
5.0
3 classificações
1 avaliações
100% online

100% online

Comece imediatamente e aprenda em seu próprio cronograma.
Prazos flexíveis

Prazos flexíveis

Redefinir os prazos de acordo com sua programação.
Nível iniciante

Nível iniciante

Horas para completar

Aprox. 14 horas para completar

Sugerido: 5 hours/week...
Idiomas disponíveis

Inglês

Legendas: Inglês
100% online

100% online

Comece imediatamente e aprenda em seu próprio cronograma.
Prazos flexíveis

Prazos flexíveis

Redefinir os prazos de acordo com sua programação.
Nível iniciante

Nível iniciante

Horas para completar

Aprox. 14 horas para completar

Sugerido: 5 hours/week...
Idiomas disponíveis

Inglês

Legendas: Inglês

Programa - O que você aprenderá com este curso

Semana
1
Horas para completar
5 horas para concluir

Identify and Analyze Malicious Code and Activity

Module Topics: Malicious Code, Malicious Code Countermeasures, Exploitation, Insider Threats, Spoofing, Phishing, Spam, and Botnet, Malicious Web Activity, Payloads, Malicious Activity Countermeasures, Malcode Mitigation, and Common Mistakes. Malicious Code includes topics like Key concepts, Example Worms, Polymorphic Viruses, Software Exploitation Methods, Scanners, Generations of Antivirus Scanning Software, Generic Decryption (GD) Technology, Behavior-Blocking Software, Antivirus Software on the Firewall and IDS, Code signing, Code Signing Certificates, Sandboxing, Virtual Machine (VM), Social Engineering, Additional Examples of Social Engineering Attacks, and Security Awareness Training. Under the topic of Exploitation, you will learn about Long File Extensions, Fake Icon, Hostile Codecs, and E-mail. In Insider Threats, you will learn about Indicators of Malicious Threat Activity, Countermeasures, Direction, Prevention, and Deterrence Methods, Continual Training, and Insider Hardware Threats. In Spoofing, Phishing, Spam, and Botnets, you will learn about Spoofing, Examples of Spoofing, Phishing, Common Characteristics of Forged E-Mail Messages, Techniques, How Phishing Works, Impact of Phishing, How to Recognize a Phishing E-Mail, Spam, Spam Distribution Channels, How Does Spam Work?, Spam Techniques, Protecting users From Spam, Botnets, How Are Botnets Created?, Botnet-Led Exploits, Botnet Detection and Mitigation, Common Botnet Detection and Mitigation Techniques. In Malicious Web Activity, you will go through topics like Mobomarket Attack, Cross-site Scripting (XSS) Attacks, The Theory of XSS, XSS Attack Vectors, Is the Organization's Site Vulnerable to Cross-Site Scripting? Example of a Cross-Site Scripting Attack, How to check for Cross-Site Scripting Vulnerabilities, Zero-Day Exploits and Advanced Persistent Threats (APTS), Unknown Vulnerabilities management Process, Five Phases of APT, Brute-Force Attacks, Instant Messaging, Infected Factory Builds and Media, man-in-the-Middle Malcode, Malicious Activity Countermeasures, Network Layer, Application Layer, Modified Hosts File and DNS Changes, Inspection of Process, Rootkit, Rootkit Classifications, Behavioral Analysis of Malcode, and Static File Analysis....
Reading
18 vídeos (total de (Total 109 mín.) min), 18 leituras, 1 teste
Video18 videos
Malicious Code and Activity: Key Concepts6min
Malicious Code and Activity: Malicious Code Countermeasures4min
Malicious Code and Activity: Software Exploitation Methods6min
Malicious Code and Activity: Software Exploitation Methods5min
Malicious Code and Activity: Code Signing5min
Malicious Code and Activity: Social Engineering6min
Malicious Code and Activity: Security Awareness Training6min
Malicious Code and Activity: Long File Extensions5min
Malicious Code and Activity: E-mail7min
Malicious Code and Activity: Countermeasures5min
Malicious Code and Activity: Examples of Spoofing5min
Malicious Code and Activity: Techniques5min
Malicious Code and Activity: Botnet-Led Exploits6min
Malicious Code and Activity: Malicious Web Activity6min
Malicious Code and Activity: Zero-Day Exploits4min
Malicious Code and Activity: Infected Factory Builds and Media4min
Malicious Code and Activity: Inspection of Processes7min
Reading18 leituras
Systems and Application Security10min
Malicious Code and Activity: Key Concepts10min
Malicious Code and Activity: Malicious Code Countermeasures10min
Malicious Code and Activity: Software Exploitation Methods10min
Malicious Code and Activity: Software Exploitation Methods10min
Malicious Code and Activity: Code Signing10min
Malicious Code and Activity: Social Engineering10min
Malicious Code and Activity: Security Awareness Training10min
Malicious Code and Activity: Long File Extensions10min
Malicious Code and Activity: E-mail10min
Malicious Code and Activity: Countermeasures10min
Malicious Code and Activity: Examples of Spoofing10min
Malicious Code and Activity: Techniques10min
Malicious Code and Activity: Botnet-Led Exploits10min
Malicious Code and Activity: Malicious Web Activity10min
Malicious Code and Activity: Zero-Day Exploits10min
Malicious Code and Activity: Infected Factory Builds and Media10min
Malicious Code and Activity: Inspection of Processes10min
Quiz1 exercício prático
Quiz 120min
Semana
2
Horas para completar
1 hora para concluir

Implement and Operate Endpoint Device Security

Module Topics: Host-Based Intrusion Detection Systems (HIDS), Host-Based Firewalls, Application Whitelisting, Endpoint Encryption, Trusted Platform Module (TPM), Mobile Device Management (MDM), Secure Browsing. In Host-Based Intrusion Detection Systems (HIDS), you will learn about Advantages and Disadvantages of HIDS. In Application Whitelisting, you will learn about software Restriction Policies (SRP), Trusted Platform Module (TPM). In Mobile Device Management (MDM), you will learn about Bring your Own Device (BYOD), Security, BYOD Policy Considerations, BYOD Policy Considerations, Corporate Owned, Personally Enabled (COPE), and Secure Browsing....
Reading
3 vídeos (total de (Total 15 mín.) min), 3 leituras, 1 teste
Video3 videos
Endpoint Device Security: Trusted Platform Module (TPM)6min
Endpoint Device Security: BYOD Policy Considerations2min
Reading3 leituras
Endpoint Device Security: HIDS10min
Endpoint Device Security: Trusted Platform Module (TPM)10min
Endpoint Device Security: BYOD Policy Considerations10min
Quiz1 exercício prático
Quiz 210min
Semana
3
Horas para completar
5 horas para concluir

Operate and Configure Cloud Security

Module Topics: Introduction, Deployment Models, Service Models, Virtualization, Legal and Privacy Concerns, Classification of Discovered Sensitive Data, Mapping and Definition of Controls, Application of Defined Controls for Personally Identifiable Information (PII), Data Storage and Transmission, Encryption, Key Management, Masking/Obfuscation and Anonymization, Tokenization, Data Deletion Procedures and Mechanisms, Event Sources, Data Event Logging and Event Attributes, and Storage and Analysis of Data Events. Introduction covers the Five Essential Characteristics of Clouds. Deployment Models cover topics like Public, Private, Hybrid and Community Cloud, Service Models, SaaS, PaaS, and IaaS. Virtualization includes Hypervisor, and Types of Virtualization. In Legal and Privacy Concerns, you will learn about Key P&DP Questions, Country-Specific Legal Considerations, Jurisdiction and Applicable Law, Essential Requirements in P&DP Laws, Typical Meaning for Common Privacy Terms, Privacy Roles for Customer and Service Provider, Data Discovery, and Privacy Level Agreement (PLA). In Application of Defined Controls for Personally Identifiable Information (PII), you will learn about Cloud security Alliance Cloud Controls Matrix (CCM), CCM Security Domains, Data Dispersion in Cloud Storage, Threat to storage Types, Technologies Available to Address Threats, Data Loss Prevention (DLP), DLP Components, DLP Architecture, Cloud-Based DLP Considerations, and Best Practices. In Encryption, you will learn about Sample Use cases for Encryption, Cloud Encryption Challenges, Key Management, Key Storage in the Cloud, and Key Management in Software environments. In Masking/Obfuscation and Anonymization, you will learn about Data Masking/Obfuscation, Common Approaches for Data Masking, Primary Methods of Masking Data, and Data Anonymization. Tockenization covers topics like Tokenization and Cloud, Data Retention Policies, Data Deletion Procedures and Mechanisms, Disposal Options, Crypto-shredding, Data Archiving Policy, Security and Information Event Management (SIEM). Data Event Logging and Event Attributes covers topics like OWASP Recommendations, SIEM Capabilities, and SIEM Challenges. ...
Reading
16 vídeos (total de (Total 105 mín.) min), 16 leituras, 1 teste
Video16 videos
Cloud Security: Hybrid5min
Cloud Security: Virtualization7min
Cloud Security: Hypervisor4min
Cloud Security: Country-Specific Legal Considerations6min
Cloud Security: P&DP Laws6min
Cloud Security:Application of Defined Controls for Personally Identifiable Information (PII)8min
Cloud Security: Data Dispersion5min
Cloud Security: Threat to Storage Types9min
Cloud Security: Technologies to Address Threats4min
Cloud Security: DLP Architecture7min
Cloud Security: Review Activity6min
Cloud Security: Key Storage in the Cloud4min
Cloud Security: Common Approaches for Data Masking4min
Cloud Security: Data Retention Policies7min
Cloud Security: Disposal Options8min
Reading16 leituras
Cloud Security: Five Essential Characteristics of Clouds10min
Cloud Security: Hybrid10min
Cloud Security: Virtualization10min
Cloud Security: Hypervisor10min
Cloud Security: Country-Specific Legal Considerations10min
Cloud Security: P&DP Laws10min
Cloud Security: Application of Defined Controls for Personally Identifiable Information (PII)10min
Cloud Security: Data Dispersion10min
Cloud Security: Threat to Storage Types10min
Cloud Security: Technologies to Address Threats10min
Cloud Security: DLP Architecture10min
Cloud Security: Review Activity10min
Cloud Security: Key Storage in the Cloud10min
Cloud Security: Common Approaches for Data Masking10min
Cloud Security: Data Retention Policies10min
Cloud Security: Disposal Options10min
Quiz1 exercício prático
Quiz 320min
Semana
4
Horas para completar
3 horas para concluir

Secure Big Data Systems & Operate and Secure Virtual Environments

Module Topics for Secure Big Data Systems: Application Vulnerabilities and Architecture or Design Environments. Application Vulnerabilities include topics like Data Growth, Big Data, Interpreting Big, Data, Big Data Issues, and Challenges with 'Free' Analytic Tools. Architectural or Design Environments include topics like Distributed Computing Architectures, Key Challenges, Securing the Organization's Big Data, and Deploying Big Data for Security. Module Topics for Operate and Secure Virtual Environments: Software-Defined Network (SDN), Virtual Appliances, Continuity and Resilience, Attacks and Countermeasures, Common Virtualization Attacks, Recommendations and Best Practices for Secure Virtualization, and Shared Storage. In Software-Defined network (SDN), you will learn about How SDN Works. Virtual Appliances talks about Virtual Appliances Compared to Virtual Machines. In Continuity and Resilience you will learn about Host Clustering Concepts, VMware Distributed Resource Scheduling (DRS), Scalability and Reliability, windows Failover Clustering. In Common Virtualization Attacks, you will learn about Mitigation Strategies. In Recommendations and Best Practices for Secure Virtualization you will learn about Desktop Virtualization and Security, Network Security, Storage Networks, Auditing and Logging, Virtual Machine Security, Management Systems, Hypervisor Security, Time Synchronization, Remote Access, Backups, and Configuration and Change Management. ...
Reading
9 vídeos (total de (Total 70 mín.) min), 9 leituras, 1 teste
Video9 videos
Secure Big Data Systems: Interpreting Big Data4min
Secure Big data Systems: Key Challenges5min
Operate and Secure Virtual Environments: SDN5min
Operate and Secure Virtual Environments: Virtual Appliances8min
Operate and Secure Virtual Environments: DRS10min
Operate and Secure Virtual Environments: Common Attacks6min
Operate and Secure Virtual Environments: Network Security5min
Operate and Secure Virtual Environments: Virtual Machine Security16min
Reading9 leituras
Secure Big Data Systems: Big Data10min
Secure Big Data Systems: Interpreting Big Data10min
Secure Big data Systems: Key Challenges10min
Operate and Secure Virtual Environments: SDN10min
Operate and Secure Virtual Environments: Virtual Appliances10min
Operate and Secure Virtual Environments: DRS10min
Operate and Secure Virtual Environments: Common Attacks10min
Operate and Secure Virtual Environments: Network Security10min
Operate and Secure Virtual Environments: Virtual Machine Security10min
Quiz1 exercício prático
Quiz 412min
5.0
1 avaliaçõesChevron Right

Melhores avaliações

por GBJul 5th 2018

Thank you. Great course. The instructor breaks everything down, and makes it easy to learn.

Instrutores

Avatar

(ISC)² Education & Training

Education & Training

Sobre (ISC)²

(ISC)² is an international nonprofit membership association focused on inspiring a safe and secure cyber world. Best known for the acclaimed Certified Information Systems Security Professional (CISSP®) certification, (ISC)2 offers a portfolio of credentials that are part of a holistic, programmatic approach to security. www.isc2.org ...

Sobre o Programa de cursos integrados (ISC)² Systems Security Certified Practitioner (SSCP)

Pursue better IT security job opportunities and prove knowledge with confidence. The SSCP Professional Training Certificate shows employers you have the IT security foundation to defend against cyber attacks – and puts you on a clear path to earning SSCP certification. Learn on your own schedule with 120-day access to content aligned with the latest (ISC)2 SSCP exam domains. We’re offering the complete online self-paced program for only $1,000 – a $200 savings when you get all domains bundled together. 3 Steps to Career Advancement 1. Register for the course 2. Gain access for 120 days 3. Register and sit for the SSCP certification exam Upon completing the SSCP Professional Certificate, you will: 1. Complete six courses of preparing you to sit for the Systems Security Certified Practitioner (SSCP) certification exam as outlined below. Course 1 - Access Controls Course 2 - Security Operations and Administration Course 3 - Risk Identification, Monitoring, and Analysis/Incident Response and Recovery Course 4 - Cryptography Course 5 - Network and Communication Security Course 6 - Systems and Application Security 2. Receive a certificate of program completion. 3. Understand how to implement, monitor and administer an organization’s IT infrastructure in accordance with security policies and procedures that ensure data confidentiality, integrity and availability....
(ISC)² Systems Security Certified Practitioner (SSCP)

Perguntas Frequentes – FAQ

  • Sim, você pode assistir uma prévia do primeiro vídeo e ver programa do curso antes de se inscrever. Você precisa comprar o curso para ter acesso ao conteúdo não incluído na prévia.

  • Se decidir se inscrever no curso antes da data de início da sessão, terá acesso a todos os vídeos das palestras e leituras do curso. Também poderá enviar tarefas assim que a sessão começar.

  • Uma vez inscrito, e tão logo sua sessão tenha iniciado, você terá acesso a todos os vídeos e outros recursos, incluindo itens de leitura e fórum de discussão do curso. Você poderá ver e enviar tarefas práticas e concluir tarefas com nota atribuída obrigatórias para obter uma nota e um Certificado de Curso.

  • Se você concluir o curso com êxito, seu Certificado de Curso eletrônico será adicionado à sua página de Participações e você poderá imprimi-lo ou adicioná-lo ao seu perfil no LinkedIn.

  • Este é um dos poucos cursos oferecidos na Coursera que está disponível apenas para alunos que pagaram ou tenham recebido auxílio financeiro. Caso tenha interesse em fazer este curso, mas não possa pagar a taxa, o incentivamos a enviar uma solicitação de auxílio financeiro.

  • The course schedule contains approximately 15 hours of content material covering lectures, reading materials, a case study, and quizzes broken up over the course of 7 weeks.

Mais dúvidas? Visite o Central de Ajuda ao Aprendiz.