Governance, Risk, and Compliance Analyst Skills from an Industry Expert
Your instructor has decades of GRC experience and will take you through the full set of skills that are in-demand right now by employers!
Students are given lecture content followed by hands-on labs to practice those skills.
Finally resume bullets are provided based on the lab experience to allow you to beef up that resume instantly!
A Course That Addresses a Major Gap in Industry
Course Overview
Welcome to the Governance, Risk, and Compliance (GRC) Analyst Master Class. This class assumes no prior background knowledge and is setup to give you a full scope understanding and the practical skills needed to be an effective GRC Analyst.
Cybersecurity workforce development is focused on red team and blue team skills, but GRC is terribly underserved for training.
This course fills that gap by offering practical application of risk, audit, policy development, and security awareness skills needed for modern GRC analysts.
In this course, we will cover:
-
An IT primer. While you don’t need to have prior IT experience, you will need to know some fundamental IT concepts to properly apply the GRC skills you learn.
- GRC as an information security capability. If you are going to be a GRC analyst you need to understand how the role fits into the larger information security office and how it interfaces with the business.
-
Compliance and Audit work. A great starting point for any GRC analyst, we begin with why compliance exists and why businesses need it. We then deliver on the audit work around compliance and share a practical audit lab.
- Practical Security Awareness. An often undervalued skill, you will learn how to make effective security awareness content that engages your end user community and reduces cyber risk. You will use a collection of tools to develop a security awareness briefing in a lab.
- Cybersecurity risk. This is the bread and butter function of a GRC analyst and we spare no expense and going deep on this topic. You will learn what risk is and how to calculate it. We will assess risk in a lab to show you how you too can properly understand any business’s cybersecurity risk.
- Instructional Governance work. Governance is critical to adoption and business buy-in. This section will teach you about policies, procedures, and standards. We cap it off by writing a policy from scratch in real time so you can too!
- Getting a GRC Analyst Job. What good are these skills if you can’t get paid to use them. This section breaks down all the aspects of how to go about getting a GRC Analyst job.
- It’s important to note the lecture videos are a collection of produced “lecture” style vides, and livestream “in-the-moment” style videos. Each has its own strength, but all of them will deliver value and excellence in the ultimate goal of understanding and executing as a GRC Analyst!
Where is all the good GRC Analyst Training?
Example Curriculum (~7 Hours of Lecture)
- 1.1 Introduction (2:39)
- 1.2 Cybersecurity Primer Baseline Assessment
- 1.3 What is Cybersecurity? (14:10)
- 1.4 What does a GRC Analyst do? (8:29)
- 1.5 Where does a GRC Analyst Fit in the Cybersecurity Picture? (6:28)
- 1.6 Understanding Technology (11:44)
- 1.7 Understanding Threats (9:09)
- 1.8 Quiz - Cybersecurity Primer
- 1.9 Conclusion and Touchpoints (2:09)
- 2.1 Introduction (3:49)
- 2.2 Compliance and Audit Baseline Assessment
- 2.3 Cybersecurity Frameworks (24:41)
- 2.4 Regulations and Compliance Standards (8:13)
- 2.4b SOC2 (Guest Lecturer) (15:07)
- 2.4c NIST Risk Management Framework (RMF) [Bonus Material] (72:52)
- 2.4d NIST Cybersecurity Framework (CSF) 2.0 [Bonus Material] (30:02)
- 2.5 Practical Auditing (Practical Lab) (28:39)
- 2.5b Practical Auditing (Part 2) (45:10)
- 2.6 Quiz - Compliance and Audit
- 2.7 Conclusion and Touchpoints (5:21)
- 2.8 Resume Bullet Unlocked
- 4.1 Introduction (5:53)
- 4.2 Cybersecurity Risk Baseline Assessment
- 4.3 What is Cybersecurity Risk? (1 of 4) (14:31)
- 4.4 What is Cybersecurity Risk? (2 of 4) (10:48)
- 4.5 What is Cybersecurity Risk? (3 of 4) (18:35)
- 4.6 What is Cybersecurity Risk? (4 of 4) (8:39)
- 4.7 What is Threat Modeling? (18:18)
- 4.8 Let's Assess Risk! (Practical Lab) (19:54)
- 4.8b Let's Assess Risk! (Practical Lab) (Part 2) (20:50)
- 4.9 Quiz - Cybersecurity Risk
- 4.10 Conclusion and Touchpoints (3:08)
- 4.11 Resume Bullet Unlocked
Get All The GRC Skills
Cyber careers are ever evolving and different skills serve at different phases of your journey.