Cybersecurity Basics
CIA Triad(Confidentiality,Integrity,Availability)
compliance
Regulations
- PCI DSS (payment card industry Data security standard)
- HIPAA (Health Insurance Portability and Accountability)
- GDPR (General Data Protection Regulation)
- CPPA (California Consumer Privacy Act)
- SOX (Sarbanes-Oxley Act of 2002)
The privacy regulation that specifically applies to organizations doing business in the European Union (EU) and the European Economic Area (EEA) is the General Data Protection Regulation (GDPR)
Frameworks and Maturity
- ISO/IEC 27000
- COBIT
- NIST
- CIS
- CMMC
- ASD
The essential 8
- Application Control
- Patch Applications
- Configure Microsoft Office Macros
- User Application Hardening
- Restrict Admin Privileges
- Patch Operating System
- Multi-factor Authentication
- Daily Backups
Auditing
Includes, interviews, review paperwork,Assessments,Take good notes ,Mind Map,Reports
Auditing tools include
- Nessus
- Nmap
- SCAP Scan and Stigviewer