Learn about the governance, risk, and compliance topics you need to know to pass the CompTIA Advanced Security Practitioner+ (CASP+) (CAS-004) exam.
Overview
Syllabus
Introduction
- Introduction
- Data considerations
- Data security
- Data classification
- Data types
- Data retention
- Data destruction
- Data ownership
- Data sovereignty
- Risk management
- Risk strategies
- Risk management lifecycle
- Risk types
- Risk handling
- Risk tracking
- Risk assessment
- When risk management fails
- Policies and frameworks
- Policies
- Frameworks
- Regulations
- Standards
- Contracts and agreements
- Legal considerations
- Integrating industries
- Business continuity
- Business continuity plan
- Business impact analysis
- Privacy impact analysis
- Incident response plan
- Testing plans
- Risk strategies
- Asset value
- Access control
- Aggregating risk
- Scenario planning
- Security controls
- Security solutions
- Cost of a data breach
- Vendor risk
- Business models
- Influences
- Organizational changes
- Shared responsibility model
- Viability and support
- Dependencies
- Considerations
- Supply chain
- Conclusion
Taught by
Jason Dion