CISO Training: Build an Information Security Program

Course Details
This course contains the use of artificial intelligence
Security was added to your job. The budget and the team were not. And the CEO already wants to know onething: “Are we protected?”
That is how most first CISOs start in a company of 100 to 2,000 people. You know the infrastructure and youhave closed incidents with your own hands, but nobody showed you how to price a risk in dollars, write apolicy people actually read or get ready for an audit. So you patch whatever shouts loudest, buy one more tooland hope the next client security questionnaire does not arrive this month. Without a risk register there isnothing to compare, without a plan there is nothing to show the CEO, and every request for money sounds likefear instead of a business decision.
After this course you run information security as a management system, not as a queue of fires. Every majorrisk sits in one register with a price in dollars, an owner and a decision. Seven short policies are signed by theCEO and known to employees. You know which standard your clients will ask for and where your gaps arebefore an auditor finds them. MFA covers admins and executives first, phishing drills turn clicks into reports,vendors are checked before the contract is signed, and the first hour of an incident follows a playbook insteadof panic. Your budget points at rows of the risk register, and your quarterly report to the board fits into fiveslides and ten minutes.
The course is built and taught by Mike Pritula:
Founder of Pritula Academy, where 170,000+ students have trained, and #1 HR instructor on Udemy, with2,000,000+ students on Udemy
20 years of leadership in HR at Wargaming, Preply, iDeals, Starlightmedia and Alfa-Bank
At iDeals, a virtual data room company, a client made an ISO 27001 and COBIT audit a condition of one ofthe largest contracts in the company’s history; at Preply and iDeals he scored every system provideragainst his own criteria checklist
At Wargaming he worked with a business continuity plan for evacuating an office for several days and withevacuation drills in a 16-floor office of 2,000 employees, each followed by a debrief by the numbers
First you take the role: a 90-day plan, five first meetings and a risk register priced in dollars. Then you write therules: a pack of seven policies and a gap analysis against ISO 27001, SOC 2 or CIS Controls. Next you closethe most common doors: MFA and privileged accounts, phishing drills and security awareness training. Afterthat you control what comes from outside, with vendor checks and an incident response playbook. Finally youbuild the security budget, the metrics dashboard and the report to the board. Each lesson stands on its own,so if you need an incident playbook by Monday, you can open lesson eight tonight.
What’s included:
Lifetime access to all materials
Active instructor support in Q&A
Udemy Certificate of Completion
A practical assignment for your own company in every lesson
Ready-to-use templates: a 90-day plan, a risk register, seven policy templates, a gap analysis sheet, anaccess matrix, a phishing drill calendar, a vendor questionnaire, an incident playbook, a budget andmetrics sheet and a board report
A section with additional courses, tools and resources
Every month without a register, a playbook and a plan is another month in which a client questionnaire, anaudit request or an incident can arrive before you are ready. The security leads who speak to the CEO indollars get the budget and the seat at the table, and the rest keep defending another tool purchase. Your nextboard question is already on its way.
Enroll now and start your first lesson today.
Similar Courses
View More
Agentic AI Security: Red Team Agents Safely

Ciberseguridad aplicada en Bases de Datos. Protege tus datos

DevSecOps Supercourse - Kubernetes/SCA/SAST/DAST/Vault/Falco
