From the course: ISACA Certified Information Systems Auditor (CISA) Cert Prep
Unlock this course with a free trial
Join today to access over 25,600 courses taught by industry experts.
SOCs and SLAs
From the course: ISACA Certified Information Systems Auditor (CISA) Cert Prep
SOCs and SLAs
- [Instructor] In evaluating information security with third parties, we certainly want to take a look at SOC documents. And so with our SOC documents, this stands for system and organization control. These are reports that help us get that assurance in our third-party service providers. So we have three report types, SOC 1, SOC 2, and SOC 3. So SOC 1 is going to attest to an organization's financial reporting. Probably on the CIS exam. This will not be the correct answer for us 'cause we're more focused on information security, obviously very important document. But what's going to be more in our wheelhouse is going to be the SOC 2 and SOC 3. Now if you notice this, the use is the same for both SOC2 and SOC 3. So how do we process transactions impacting security, specifically availability, integrity, confidentiality, and privacy of customer data? The CIA triad, right? So, ultimately, the difference here is that SOC 2 documents are for current customers and for auditors. SOC 3…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
(Locked)
Introduction and privacy principles5m 40s
-
(Locked)
Physical and environmental controls3m 1s
-
(Locked)
Identity and access management5m 21s
-
(Locked)
SOCs and SLAs2m 48s
-
(Locked)
Networking basics11m 34s
-
(Locked)
The OSI and TCP reference models7m 9s
-
(Locked)
OSI Layers 1 and 215m 11s
-
(Locked)
OSI Layers 3–7 and TCP model15m 54s
-
(Locked)
Network devices10m 36s
-
(Locked)
NAT and PAT5m 38s
-
(Locked)
Firewalls10m 38s
-
(Locked)
Additional security devices, part 110m 23s
-
(Locked)
Additional security devices, part 26m 4s
-
(Locked)
Cryptography basics2m 23s
-
(Locked)
Symmetric cryptography9m 1s
-
(Locked)
Asymmetric cryptography18m 13s
-
(Locked)
Hybrid cryptography5m 21s
-
(Locked)
Integrity4m 45s
-
(Locked)
PKI and wrap-up6m 4s
-
(Locked)
Wireless security5m 6s
-
(Locked)
Indicators of attacks, part 114m 9s
-
(Locked)
Indicators of attacks, part 213m 13s
-
(Locked)
Indicators for application attacks7m 15s
-
(Locked)
Cross-site attacks9m 3s
-
(Locked)
Timing attacks6m 6s
-
(Locked)
Memory issues2m 20s
-
(Locked)
Network-based attacks18m 49s
-
(Locked)
Threat actors and vectors8m 17s
-
(Locked)