Skip to main content
Image coming soon

SEC1748 Mastering CIS Controls for Senior Technology Evangelists

$199.00
Adding to cart… The item has been added

A tailored course, built for your situation

Mastering CIS Controls for Senior Technology Evangelists

Produce more defensible, accurate, and polished governance narratives the first time, every time

$199 one-time
24-hour access provisioning 30-day money-back guarantee Hand-built implementation playbook
12 modules. 12 chapters per module. 144 chapters total.
12 modules, each with 12 chapters (144 chapters total), text-based, plus downloadable templates and a hand-built implementation playbook delivered alongside course access.
Avoid last-minute rewrites of control descriptions or weak responses to technical follow-ups

The situation this course is for

Even seasoned communicators face pushback when control mappings lack specificity or sound generic. The cost isn’t just time, it’s credibility.

Who this is for

Senior technology evangelists and public-facing engineers who translate security frameworks for broad audiences

Who this is not for

Entry-level auditors, compliance officers focused only on checklists, or practitioners without public messaging responsibilities

What you walk away with

  • Deliver CIS Controls mappings with precise language that stands up to expert review
  • Build reusable, source-cited narratives for common control families
  • Reduce revision cycles when preparing public content or customer briefings
  • Reference correct CIS sub-controls and implementation levels without lookup
  • Produce stakeholder-ready summaries that preserve technical fidelity

The 12 modules (with all 144 chapters)

Module 1. Understanding the CIS Controls Framework
Overview of the 20 critical security controls, including structure, priority, and implementation levels.
12 chapters in this module
  1. Origins of CIS Controls
  2. Version evolution
  3. Control categories
  4. CIS v8 updates
  5. Mapping to MITRE ATT&CK
  6. Control maturity levels
  7. Implementation groups
  8. Alignment with NIST CSF
  9. Public vs private sector use
  10. Common misconceptions
  11. Use in cloud environments
  12. Linking to Zero Trust
Module 2. Control 1 Deep Dive
Detailed exploration of Inventory and Control of Enterprise Assets.
12 chapters in this module
  1. Defining managed assets
  2. Network discovery methods
  3. Agent-based tracking
  4. Cloud asset visibility
  5. Orphaned device risks
  6. Asset tagging standards
  7. Integration with CMDB
  8. Dynamic inventory updates
  9. Ownership assignment
  10. Decommissioning process
  11. Audit logging
  12. Control validation
Module 3. Control 2 Deep Dive
Inventory and Control of Software Assets.
12 chapters in this module
  1. Software inventory scope
  2. License tracking
  3. Approved software list
  4. Shadow IT detection
  5. Automated discovery tools
  6. Version control
  7. EOL software risks
  8. Software removal process
  9. Whitelisting basics
  10. SaaS application tracking
  11. Container image tracking
  12. Integration with DevOps
Module 4. Controls 3, 5 Deep Dive
Data protection, secure configurations, and account management.
12 chapters in this module
  1. Data classification framework
  2. Encryption standards
  3. Data retention policies
  4. OS configuration baselines
  5. Hardening checklists
  6. CIS Benchmarks
  7. Password policy design
  8. Privileged account tracking
  9. MFA implementation
  10. Session timeout rules
  11. Naming conventions
  12. Access review cycles
Module 5. Controls 6, 8 Deep Dive
Malware defense, patching, and backup strategies.
12 chapters in this module
  1. EDR vs AV comparison
  2. Signature-based detection
  3. Behavioral analysis
  4. Patch management lifecycle
  5. Critical vs non-critical patches
  6. Automated patching
  7. Testing environments
  8. Backup frequency
  9. Air-gapped backups
  10. Recovery testing
  11. Immutable storage
  12. Ransomware resilience
Module 6. Controls 9, 11 Deep Dive
Network defenses, firewall rules, and secure DNS.
12 chapters in this module
  1. Network segmentation
  2. Zero Trust principles
  3. Firewall rule review
  4. Default deny policy
  5. DNS filtering
  6. DNSSEC implementation
  7. Web proxy logs
  8. SSL inspection
  9. Outbound connection logging
  10. VPNs and remote access
  11. Micro-segmentation
  12. Cloud network controls
Module 7. Controls 12, 14 Deep Dive
Boundary defenses, intrusion detection, and logging.
12 chapters in this module
  1. Perimeter monitoring
  2. IDS vs IPS
  3. SIEM integration
  4. Log retention duration
  5. Centralized logging
  6. Log format standards
  7. Event correlation
  8. Threat hunting basics
  9. Log integrity checks
  10. Retention compliance
  11. Search optimization
  12. Alert tuning
Module 8. Controls 15, 17 Deep Dive
Vendor risk, incident response planning, and penetration testing.
12 chapters in this module
  1. Third-party assessment
  2. Vendor questionnaires
  3. Risk scoring models
  4. Incident response team
  5. Playbook development
  6. Tabletop exercises
  7. Post-mortem process
  8. Red team scope
  9. Vulnerability scanning
  10. External pentest
  11. Internal pentest
  12. Reporting standards
Module 9. Controls 18, 20 Deep Dive
Security training, penetration testing, and threat intelligence.
12 chapters in this module
  1. Security awareness topics
  2. Phishing simulation
  3. Training frequency
  4. Executive training
  5. Developer training
  6. Threat feed integration
  7. Indicators of compromise
  8. Threat actor profiling
  9. Geopolitical context
  10. Sector-specific risks
  11. Information sharing
  12. Threat modeling
Module 10. Communicating Controls to Non-Experts
Tailoring CIS language for executives, customers, and public audiences.
12 chapters in this module
  1. Ladder of abstraction
  2. Avoiding jargon
  3. Metaphor use
  4. Executive summaries
  5. Customer-facing decks
  6. Blogging about controls
  7. Public speaking
  8. Handling technical pushback
  9. Credibility signals
  10. Source citation
  11. Audience segmentation
  12. Message consistency
Module 11. Producing First-Time Quality Outputs
Ensuring accuracy, defensibility, and polish in published materials.
12 chapters in this module
  1. Pre-submission checklist
  2. Source verification
  3. Peer review process
  4. Tone consistency
  5. Visual clarity
  6. Reference libraries
  7. Template use
  8. Version control
  9. Feedback integration
  10. Revision reduction
  11. Output reuse
  12. Ownership tracking
Module 12. Maintaining Long-Term Control Relevance
Ensuring your materials stay current as frameworks evolve.
12 chapters in this module
  1. Version change tracking
  2. Update alerts
  3. Revalidation schedule
  4. Stakeholder notifications
  5. Archive management
  6. Link rot prevention
  7. Succession planning
  8. Knowledge transfer
  9. Public content updates
  10. Audit readiness
  11. Continuous improvement
  12. Lessons learned

How this maps to your situation

  • When publishing a new security overview
  • Before a customer-facing briefing
  • During internal training development
  • After a control framework update

Before vs. after

Before
Spending extra cycles revising control descriptions, facing technical pushback, or losing credibility on details
After
Publishing accurate, polished, and defensible materials on the first attempt

What's included with your purchase

  • 12 modules with 12 chapters each (144 chapters)
  • Downloadable templates and worked examples for every module
  • Hand-built implementation playbook delivered alongside course access
  • 30-day money-back guarantee

Delivery and format

  • Course and learning environment access provisioned within 24 hours of purchase
  • Hand-built implementation playbook delivered alongside course access

Format: Text-based modules and chapters in the Art of Service learning environment, plus downloadable templates and worked examples for every chapter, plus the hand-built implementation playbook delivered alongside course access.

Time investment: Approximately 6 hours of core content, designed to fit within two weeks of part-time engagement.

If nothing changes
Continuing to rely on outdated or imprecise control language may lead to diminished trust in your technical narratives, especially as peer scrutiny intensifies.

How this compares to the alternatives

Unlike generic compliance courses, this program is tailored to public-facing technologists who must balance technical precision with broad accessibility.

Frequently asked

Who is this course designed for?
Senior technology evangelists, cloud advocates, and public-facing engineers who translate security frameworks into accessible content.
How is the course structured?
12 modules, each containing 12 chapters (144 chapters total).
Is prior CIS Controls experience required?
No, but familiarity with security frameworks will help. The course builds precision, not foundational knowledge.
$199 one-time. Approximately 6 hours of core content, designed to fit within two weeks of part-time engagement..

Within 24 hours your account in the learning environment is provisioned and the tailored implementation playbook is delivered alongside it.

30-day money-back guarantee· 144 chapters· Hand-built playbook included· Account access within 24 hours