A tailored course, built for your situation
Broader decision scope in your current role with CIS Controls
Earn wider authority over security initiatives without changing titles
Who this is for
Senior support leader in a large enterprise environment managing infrastructure reliability and security compliance
Who this is not for
Individuals seeking certification prep or entry-level training in cybersecurity frameworks
What you walk away with
- Direct ownership of security control decisions across teams
- Expanded budget influence for infrastructure hardening initiatives
- Ability to set policy cadence without escalation
- Consolidated reporting lines from cross-functional teams
- First review on all control mapping updates
The 12 modules (with all 144 chapters)
- What CIS Controls are
- Why 18 controls not 10
- Mapping to operational roles
- Control tier distinctions
- Benchmark versions compared
- Integration with audit cycles
- Common misalignments
- Control ownership models
- Metrics that matter
- Updating baselines
- Cross-platform applicability
- Maintaining version parity
- Hardware inventory standards
- Software inventory automation
- Cloud instance tracking
- Shadow IT detection
- Decommissioning workflows
- Ownership assignment
- License compliance links
- Patch cadence triggers
- Asset tagging policies
- Integration with IAM
- Reporting frequency
- Audit trail structure
- Baseline definition process
- CIS Benchmarks usage
- Golden image creation
- Configuration drift detection
- Automated remediation
- Change control sync
- Approval workflows
- Deviation logging
- Version control for configs
- Environment parity
- Cloud-native settings
- Emergency override protocols
- User role taxonomy
- Privileged account tiers
- Just-in-time access
- Break-glass procedures
- Session monitoring
- Credential rotation
- Multi-factor enforcement
- Access review cycles
- Delegation frameworks
- Contractor access rules
- SaaS application control
- Access certification
- Scan scope definition
- Frequency standards
- Severity thresholds
- Patch prioritisation logic
- Remediation SLAs
- Exception handling
- False positive triage
- Third-party tool integration
- Reporting to leadership
- Trend analysis
- External scan coordination
- Zero-day response
- Log retention policies
- Centralised collection
- Immutable storage
- Retention compliance
- Log integrity checks
- Searchability standards
- Correlation tactics
- Incident readiness
- Regulator access prep
- Audit file packaging
- Log ownership
- Log review cadence
- Phishing filter rules
- URL rewriting standards
- Browser extension control
- User training content
- Threat intelligence feeds
- Mail gateway settings
- Sandboxing deployment
- Sender reputation checks
- Content filtering
- Mobile email security
- Incident reporting flow
- Policy enforcement
- Antivirus standardisation
- EDR deployment
- Signature update cycles
- Quarantine procedures
- Ransomware detection
- Endpoint visibility
- Auto-containment rules
- Malware signature sharing
- Threat hunting workflows
- Incident escalation paths
- Recovery protocols
- Reporting metrics
- Data classification schema
- Encryption key management
- At-rest encryption
- In-transit standards
- Database encryption
- File-level protection
- Cloud storage rules
- Decryption access
- Key rotation policies
- Compliance validation
- Audit trail linkage
- Recovery procedures
- Firewall rule governance
- Network segmentation
- DMZ standards
- Access request workflow
- Rule review cadence
- Change logging
- Remote access controls
- IoT device policies
- Wireless security
- VPN configuration
- Zero trust alignment
- Traffic monitoring
- MFA coverage targets
- Phased rollout plan
- User support setup
- Exception criteria
- Authentication methods
- Recovery options
- Monitoring adoption
- Reporting gaps
- Integration complexity
- User feedback loops
- Training content
- Policy enforcement
- Detection rule setting
- Alert triage workflow
- Team activation
- Containment strategies
- Forensic data capture
- Legal coordination
- Post-mortem facilitation
- Remediation tracking
- Communication protocols
- Stakeholder updates
- Lessons integration
- Playbook maintenance
How this maps to your situation
- After audit findings require action
- When new systems come online
- Before policy renewal cycles
- During cross-team integration projects
Before vs. after
What's included with your purchase
- 12 modules with 12 chapters each (144 chapters)
- Downloadable templates and worked examples for every module
- Hand-built implementation playbook delivered alongside course access
- 30-day money-back guarantee
Delivery and format
- Course and learning environment access provisioned within 24 hours of purchase
- Hand-built implementation playbook delivered alongside course access
Format: Text-based modules and chapters in the Art of Service learning environment, plus downloadable templates and worked examples for every chapter, plus the hand-built implementation playbook delivered alongside course access.
Time investment: Approximately 3 hours per module, self-paced over 6-8 weeks
How this compares to the alternatives
Unlike generic cybersecurity courses, this program focuses specifically on expanding your decision scope using the CIS Controls framework, with templates and playbooks tailored to enterprise support leaders in technical environments.
Frequently asked
Within 24 hours your account in the learning environment is provisioned and the tailored implementation playbook is delivered alongside it.