SY0-601 - CompTIA Security+: Risk Management, Privacy, & Sensitive Data Security


Overview/Description
Expected Duration
Lesson Objectives
Course Number
Expertise Level



Overview/Description

In this CompTIA Security+ SY0-601 course, you'll explore some advanced security concepts and build on some you may already know. The main topics you'll examine are risk management, privacy issues, and sensitive data management.

You'll start by recognizing the essential aspects and considerations of risk types, risk management strategies, risk analysis, and disasters. You'll then review the business impact analysis (BIA) aspect of business continuity planning. Moving on to sensitive data security, you'll identify privacy breach consequences, data classification types, and associated roles and responsibilities.

You'll also outline privacy protection measures, such as notifications of privacy breaches, privacy-enhancing technologies, and advanced privacy concepts, like impact assessments and privacy notices. This course is part of a series that prepares you for the CompTIA Security+ (SY0-601) exam.



Expected Duration (hours)
0.7

Lesson Objectives

SY0-601 - CompTIA Security+: Risk Management, Privacy, & Sensitive Data Security

  • discover the key concepts covered in this course
  • compare risk types, such as internal, external, and multiparty
  • describe risk management strategies, like acceptance, avoidance, transference, and mitigation
  • define risk analysis terms, as in risk register, inherent risk, residual risk, and control risk
  • list disasters and classify their types, such as environmental, human-made, and external
  • describe business impact analysis concepts, like recovery time vs. recovery point objectives, mean time to repair, and mean time between failures, and outline a disaster recovery plan
  • explore the consequences of breaches, such as fines and identity theft
  • define various data type classifications, like public, sensitive, and critical
  • compare different roles and responsibilities, as in data owners, controllers, processors, custodians, and stewards
  • describe privacy-enhancing technologies, such as tokenization, data minimization and masking, and anonymization
  • explore privacy concepts, like information's life cycle, impact assessment, terms of agreement, and privacy notices
  • summarize the key concepts covered in this course
  • Course Number:
    it_cssecp2020_19_enus

    Expertise Level
    Intermediate