|
|
1-800-THE-TREE (1-800-843-8733)
|
|
|
 |
|
Security Awareness: Resisting Human Deception
Course: 173
Type: Course Workshop
Duration: 2 Days
You Will Learn How To
- Help prevent social engineering exploits by heightening your security awareness
- Decode the art of human deception
- Identify the social engineering attack cycle
- Define and help protect corporate and personal assets
- Assess and quantify the impact of social engineering attacks
- Integrate your corporate security policy into your professional responsibilities
Course Benefits In order to protect the enterprise from sabotage, spying and identity theft, companies can no longer rely on technology alone to secure corporate assets. Security awareness is the first line of defense to prevent the exploits of social engineers, who seek out weaknesses in people. In this course, you learn to identify social engineering tactics, build a human firewall, and apply a personal defense plan that minimizes social engineering exploits.Who Should Attend Anyone interested in strengthening the human component of security. No prior knowledge of security is required.Course Workshop Through a series of interactive small-group workshops, you gain the skills needed to help prevent social engineering exploits. Workshops include:
- Performing a self assessment of your personal security vulnerability
- Defining your personal and corporate assets
- Assessing the impact of an exploit
- Analyzing the social engineering attack cycle
- Creating preventive security measures to protect your assets
- Developing an employee defense plan
Course 173 Content
- Exploring the impact of social engineering attacks
- Identifying corporate and personal assets that need to be protected
- Distinguishing social engineering fact from fiction
- Classifying types of hackers
- Determining key motivators
- Demystifying the professional social engineer
- Selecting the target
- Enticing the target
- Increasing the target's compliance
- Information gathering
- Developing relationships
- Exploitation
- Execution
- Dumpster diving
- Eavesdropping
- Shoulder surfing
- E-mail threats
- War Driving
- Viruses
- Internet tools
- Keystroke Logging
- Intimidation
- Impersonation
- Shared sense of crisis
- Determining professional accountability
- Assessing financial and product strategies
- Securing customer information
- Addressing Personal Identifiable Information (PII)
- Measuring enterprise revenue losses
- Analyzing the effect at a business level
- Dealing with consequences on a personal level
- Physical infrastructure
- Equipment
- User accounts
- Contractor issues
- Incident response plan
- Evaluating industry security recommendations
- Reporting security breaches
- Managing exceptions
- Responding to real and suspected exploits
- Investigating roles and responsibilities
- Identifying early warning signs of a potential exploit
- Handling uncommon situations
- Taking the help out of helpdesk
- Discovering misplaced intellectual property
- Creating situational awareness
- Applying proven tips and techniques
- Referencing industry standards
- Performing a self-audit
- Recommending changes
- Identifying key assets
- Assessing the impact and probability
- Prioritizing the top 20%
- Defining protective measures
- Implementing defense strategies
- Monitoring for effectiveness
- Customizing the plan for changing environments
- Responding to real and suspected exploits
|
|
|
|
|
 |
|
|