{"id":4295,"date":"2024-07-02T12:29:56","date_gmt":"2024-07-02T17:29:56","guid":{"rendered":"https:\/\/www.darkreading.com\/cyber-risk\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development"},"modified":"2024-07-02T12:29:56","modified_gmt":"2024-07-02T17:29:56","slug":"implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2024\/07\/02\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development\/","title":{"rendered":"Implementing Zero Trust and Mitigating Risk: ISC2 Courses to Support Your Development"},"content":{"rendered":"<div class=\"media_block\"><a href=\"https:\/\/i0.wp.com\/eu-images.contentstack.com\/v3\/assets\/blt6d90778a997de1cd\/blt850556f866500627\/654a5a8e05eb4d040a046894\/325351_DR23_Graphics_General_Large_Text_v1.png?ssl=1\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?w=640&#038;ssl=1\" class=\"media_thumbnail\"><\/a><\/div>\n<div><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?w=640&#038;ssl=1\" class=\"ff-og-image-inserted\"><\/div>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><span class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_bold\">PRESS RELEASE<\/span><\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Zero trust security is a proactive and robust approach to cybersecurity that addresses modern threats by continuously verifying and monitoring all network activities. While its implementation can be complex and resource-intensive, the benefits of improved security posture, reduced risk, and enhanced compliance make it a valuable strategy for organizations of all sizes.<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Member Views on Zero Trust\">Member Views on Zero Trust<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">ISC2 members recently shared with us their views on zero trust training, awareness and implementation.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">We asked members about barriers and obstacles to implementing zero trust, with many responses focusing on the same areas, as Ray Heffer, CISSP explained.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">\u201cOne of the barriers I see organizations facing is the shift in mindset from traditional perimeter-based security to a more holistic, identity-based approach. This change requires not just technological adjustments but also a significant cultural shift within the organization.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">\u201cThere\u2019s often resistance as this method necessitates rigorous authentication and verification processes at every access point, regardless of user location (network) or device, which can be perceived as adding complexity and potential delays to workflow. In addition, this extends beyond this to applications and data, which are two pillars that are often misunderstood or overlooked\u201d.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Bright Erhabor, CC, added: \u201cZero Trust is still a relatively new security concept that is being used to replace traditional perimeter security. Some of the boundaries or limitations of zero trust include: cost of implementation, complexity of organizations&#8217; infrastructure, employees&#8217; resistance, operational challenges, poor user experience as well as difficulty integrating legacy technologies\u201d.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">We also asked members who should be targeted when deploying zero trust training and education in the workplace:<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">\u201cEveryone should participate in zero trust continuing education. Executives need to understand the importance of restricting and monitoring access and end users need to understand the purpose behind why their access is being limited,\u201d said Lewis Mandichak, CISSP.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">This was echoed by several members including Raoul Hira, CISSP, who added: \u201cContinuing education on zero trust should be pursued by all IT and security personnel, from analysts to C-suite executives, to foster a comprehensive understanding of its principles across the organization. I\u2019ve led teams around the world, and the ones who understand zero trust deeply are always better prepared and react faster to security issues\u201d.<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Managing Zero Trust Data Risk Courses\">Managing Zero Trust Data Risk Courses<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Building on the&nbsp;<\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.isc2.org\/professional-development\/courses\/protecting-data-using-zero-trust\" rel=\"noopener\">ISC2 zero trust courses already available<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">, we have launched additional courses that expand coverage of zero trust issues and themes.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.isc2.org\/professional-development\/courses\/managing-zero-trust-data-risk\" rel=\"noopener\">Joining our roster are three new areas of focus<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">, all designed to support you in your continuous education and skills development in the face of a rapidly evolving technology and threat landscape.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><span class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_bold\">Communication for Zero Trust<\/span><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&nbsp;\u2013 This course addresses one of the great challenges of any fundamental security strategy implementation \u2013 effective communication and the strategies and skills necessary for zero trust to be successful. The course will cover methods for conveying the zero trust principles, policies and practices of your organization to ensure all stakeholder groups are kept informed and understand what is happening and why, while cybersecurity teams focus on managing data risk.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><span class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_bold\">Security within Zero Trust<\/span><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&nbsp;\u2013 A strategic approach to how zero trust implementation can strengthen your organization\u2019s security posture. You will examine the zero trust context of data classification; authentication policies; threat anticipation and evaluation; and risk management frameworks.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><span class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_bold\">Zero Trust Risk Management and Response<\/span><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&nbsp;\u2013 Addressing risk management and incident response in a zero trust environment. You will learn about the strategic benefits of implementing risk management processes, along with how to implement remediation actions and incident response plans within a zero trust environment.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.isc2.org\/professional-development\/courses\/managing-zero-trust-data-risk\" rel=\"noopener\">All three courses<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&nbsp;are aimed at cybersecurity professionals in advanced roles with an understanding of zero trust principles, such as Cybersecurity Architect, Cybersecurity Engineers and Cybersecurity Program Managers. ISC2 members completing zero trust courses can also earn CPE credits for each completed course.<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Continuing Professional Development from ISC2\">Continuing Professional Development from ISC2<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">ISC2 provides a wide range of courses, certificates and skills development opportunities to support your continuous education journey, covering topics including Security Operations (where you\u2019ll find the zero trust options), Software Security, Cloud Security, Cyber Leadership and more.<\/span><\/p>\n<p><a href=\"https:\/\/www.darkreading.com\/cyber-risk\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>PRESS RELEASE Zero trust security is a proactive and robust<\/p>\n","protected":false},"author":12,"featured_media":4296,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1],"tags":[809],"class_list":["post-4295","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-dark-reading"],"featured_image_urls":{"full":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?fit=3840%2C2160&ssl=1",3840,2160,false],"thumbnail":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?resize=150%2C150&ssl=1",150,150,true],"medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?fit=300%2C169&ssl=1",300,169,true],"medium_large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?fit=640%2C360&ssl=1",640,360,true],"large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?fit=640%2C360&ssl=1",640,360,true],"1536x1536":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?fit=1536%2C864&ssl=1",1536,864,true],"2048x2048":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?fit=2048%2C1152&ssl=1",2048,1152,true],"chromenews-featured":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?fit=1024%2C576&ssl=1",1024,576,true],"chromenews-large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?resize=825%2C575&ssl=1",825,575,true],"chromenews-medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?resize=590%2C410&ssl=1",590,410,true]},"author_info":{"display_name":"Dark Reading","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/darkreading\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/uncategorized\/\" rel=\"category tag\">Uncategorized<\/a>","tag_info":"Uncategorized","comment_count":"0","jetpack_featured_media_url":"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/07\/implementing-zero-trust-and-mitigating-risk-isc2-courses-to-support-your-development.png?fit=3840%2C2160&ssl=1","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/4295","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=4295"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/4295\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media\/4296"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=4295"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=4295"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=4295"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}