From the course: Performing a Technical Security Audit and Assessment
Unlock the full course today
Join today to access over 24,700 courses taught by industry experts.
Challenge: Recommend mitigation actions
From the course: Performing a Technical Security Audit and Assessment
Challenge: Recommend mitigation actions
(bouncy upbeat music) - [Instructor] In the previous challenge, you categorized four common security assessment findings. Now, your challenge is to recommend mitigation actions for each of these findings. They are missing security patches, users have not received security awareness training, transmitting sensitive information without encryption, and no security officer. What actions would you recommend the organization take to mitigate or reduce the risk of these security issues? To help with your recommendations, you can refer to the details for each control from the NIST website mentioned in the previous chapter solution. You can often translate the guidance provided there into actionable recommendations. Your mitigation recommendation should be concise, typically one or two sentences, unless the finding is complex. Take a moment to think about your recommendations for each finding, and then watch the following video to see what I would recommend.
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.