Plan Szkolenia

Introduction

  • The time and cost of cyber risk management vs the time and cost from a disruption to the supply chain.

Key Cyber Supply Chain Risks

  • In-house software and hardware vulnerabilities
  • Third party hardware and software vulnerabilities
  • In-house security knowledge and practices
  • Third-party security knowledge and practices

Supply Chain Cyber Risk Case Study

  • Risk exposure through third-party software

Tools and Techniques for Attacking a Supply Chain

  • Malware
  • Ransomware
  • Adware

Supply Chain Cyber Risk Case Study

  • Outsourcing to an external website builder

Cyber Supply Chain Security Principles

  • Assume your system will be breached.
  • Cybersecurity as a technology + people + process + knowledge problem.
  • Physical vs cybersecurity

Supply Chain Cyber Risk Case Study

  • Outsourcing data storage to a third-party provider

Assessing Your Organization's Risk Level

  • Hardware and software design processes
  • Mitigation of known vulnerabilities
  • Knowledge of emerging vulnerabilities
  • Monitoring of production systems and processes

Supply Chain Cyber Risk Case Study

  • Cyber attacks by internal members of the team

Internal Security Threats

  • Disgruntled employees and not so-disgruntled employees
  • Access to login credentials
  • Access IoT devices

Forming Collaborative Partnerships

  • Proactive vs punitive approach to vendor risk
  • Achieving a common objective
  • Fostering growth
  • Mitigating risks

A Model for Implementing Supply Chain Cyber Security

  • Vetting suppliers
  • Establishing control
  • Continuous monitoring and improvement
  • Training and education
  • Implementing multiple layers of protection
  • Creating a cyber-crisis team

Summary and Conclusion

Wymagania

  • Experience with supply chains

Audience

  • Supply chain managers and stakeholders
 7 godzin

Liczba uczestników



Cena za uczestnika

Opinie uczestników (5)

Szkolenia Powiązane

CRISC - Certified in Risk and Information Systems Control

21 godzin

CRISC - Certified in Risk and Information Systems Control - 4 Days

28 godzin

IBM Qradar SIEM: Beginner to Advanced

14 godzin

Open Source Intelligence (OSINT) Advanced

21 godzin

Open Source Cyber Intelligence - Introduction

7 godzin

Fundamentals of Corporate Cyber Warfare

14 godzin

Certificate of Cloud Security Knowledge

14 godzin

Certificate of Cloud Security Knowledge (CCSK) Foundation (autoryzowany kurs CSA)

14 godzin

Certificate of Cloud Security Knowledge (CCSK) Plus (CSA authorized)

21 godzin

Application Security for Developers

21 godzin

Android Security

14 godzin

Comprehensive C# and .NET Application Security

21 godzin

Network Security and Secure Communication

21 godzin

Combined C/C++, JAVA and Web Application Security

28 godzin

Application Security in the Cloud

21 godzin

Powiązane Kategorie

1