SEC504: Hacker Tools, Techniques, and Incident Handling

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usConnect, learn, and share with other cybersecurity professionals
Engage, challenge, and network with fellow CISOs in this exclusive community of security leaders
Become a member for instant access to our free resources.
Sign UpMission-focused cybersecurity training for government, defense, and education
Explore industry-specific programming and customized training solutions
Sponsor a SANS event or research paper
We're here to help.
Contact UsApply your credits to renew your certifications
Attend a live, instructor-led class at a location near you or remotely, or train on your time over 4 months
Course material is geared for cyber security professionals with hands-on experience
Apply what you learn with hands-on exercises and labs
Master strategic cybersecurity risk management through practical frameworks, comprehensive threat modeling, and regulatory compliance implementation for enterprise-wide security posture enhancement.
Every day was a great experience and there is just no one else that provides this level of teaching in the industry. Thank you for doing this!
Navigate the critical intersection of risk management and regulatory compliance in today's complex threat landscape. This cyber risk management course provides essential skills for effective cybersecurity governance in threat modeling, safeguard frameworks, and risk analytics. It serves as a foundation for professionals pursuing a GRC certification or aiming to formalize their expertise with a cyber security risk management certification.
Through intensive case studies and a SANS Cyber42 leadership simulation game, students prioritize threats, select safeguards, and align security measures with organizational objectives. You will gain practical experience creating detailed risk assessments, evaluating safeguard effectiveness, and persuasively communicating security risks to executive and technical stakeholders.
The cyber risk management training builds capabilities that enable organizations to maintain resilient defenses against evolving threats while meeting compliance requirements.
James Tarala, managing partner at Cyverity, co-created the CIS Controls and Cybersecurity Standards Scorecard, transforming cybersecurity governance and empowering global organizations to operationalize risk into actionable defense strategies.
Read more about James TaralaExplore the course syllabus below to view the full range of topics covered in LDR519: Cybersecurity Risk Management and Compliance.
This section establishes the essential context for effective cybersecurity risk management. Students learn to define cybersecurity governance frameworks, align security with business objectives, and understand the foundational elements of risk-based security programs.
Students develop practical skills for systematic identification and categorization of cybersecurity threats. This section teaches methodologies for building comprehensive threat inventories and prioritizing threats based on organizational context.
This section teaches students to select implement, and validate appropriate cybersecurity safeguards. Students learn methodical approaches for evaluating security safeguard effectiveness and aligning safeguards with identified threats.
Students learn to quantify, analyze, and respond to cybersecurity risks through structured methodologies. This section teaches approaches for measuring risk impact, likelihood, and developing appropriate response strategies.
This section establishes frameworks for ongoing risk management and compliance. Students develop skills for continuous monitoring, periodic reassessment, and adapting security programs to evolving threats and business needs.
Daily focus is on the leadership of technical teams. Includes titles such as Technical Director, Manager, and Team Lead.
Explore learning pathResponsible for developing and maintaining business, systems, and information processes to support enterprise mission needs. Develops technology rules and requirements that describe baseline and target architectures.
Explore learning pathResponsible for establishing vision and direction for an organization's cybersecurity operations and resources and their impact on digital and physical spaces. Possesses authority to make and execute decisions that impact an organization broadly, including policy approval and stakeholder engagement.
Explore learning pathResponsible for developing and maintaining cybersecurity plans, strategy, and policy to support and align with organizational cybersecurity initiatives and regulatory compliance.
Explore learning pathWhen purchasing a live, instructor-led course, add 4 months of online access. View price in the info icons below.
Add 6 months of hands-on skills practice. Add to your cart when purchasing your course.
James has a wealth of risk management experience and doesn't just give us theory but real world/practical guidance to becoming better risk management professionals!
Get feedback from the world’s best cybersecurity experts and instructors
Choose how you want to learn - online, on demand, or at our live in-person training events
Get access to our range of industry-leading courses and resources