Palo Alto NetSec Professional: What Prisma Access Is For
A consulting firm once secured remote users by sending every VPN connection back to its main office. As employees travel and the…
Read articleSECURITY & GOVERNANCE
Learn practical security operations, identity, threat defense, assurance, incident response and governance.
Security involves different kinds of evidence at different levels. An analyst investigating an intrusion needs timelines, indicators and defensive telemetry; an architect needs a coherent approach to trust boundaries and identity; a governance specialist must judge whether controls are effective and risk decisions can be defended.
CompTIA Security+ (SY0-701) covers broad security foundations, while CISSP addresses a wider security-management and architecture perspective. ISACA CISA approaches many of the same organizational systems from an audit and assurance standpoint. These distinctions are more useful than treating every cybersecurity certification as interchangeable.
CURATED FROM THE EDITORIAL LIBRARY
Carefully selected articles on the technologies, roles and concepts that shape this subject.
A consulting firm once secured remote users by sending every VPN connection back to its main office. As employees travel and the…
Read articleAn office firewall allows employees to reach the internet, and the help desk reports that a new collaboration application cannot connect. An…
Read articleA mid-sized business buys a next-generation firewall to protect its headquarters. Six months later, most employees work from home, business applications run…
Read articleA company manages a dozen firewalls using a central Panorama deployment. Headquarters creates a security rule, but the branch firewall continues behaving…
Read articleA security team reviews a firewall rule that permits traffic to a sensitive application. The source group includes several servers that no…
Read articleA university discovers that a newly deployed file-sharing application works on campus but fails for remote staff. An administrator sees a broad…
Read articleAn enterprise acquires a company that runs most services in AWS while its existing business relies on Azure and Microsoft 365. Both…
Read articleA security team has an endpoint product, a cloud monitoring system, and hundreds of detection rules. During a ransomware incident, analysts still…
Read articleA global organization uses Microsoft Entra ID for employee access, runs legacy applications in a data center, and has automation accounts in…
Read articleA company has invested in multifactor authentication, endpoint protection, and cloud logging. Its leadership announces that the environment is now ‘Zero Trust.’…
Read articleThe most technically impressive penetration test can fail its client if the report is confusing, overstated, or impossible to act on. A…
Read articleAn application’s visible pages are only one part of its security boundary. Mobile clients, single-page applications, background integrations, and partner systems may…
Read articleFURTHER EXPLORATION
Explore related disciplines across the editorial library.