Companion-course connectionIncident Closure Criteria
Incident closure criteria define the evidence and approvals required before an event leaves active response and enters monitoring, remediation, or normal operations.
Open article →Companion-course connectionPassive OT Asset Discovery
Passive OT asset discovery infers devices, roles, communications, protocols, and changes from observed traffic without actively interrogating sensitive control equipment.
Open article →Companion-course connectionAttacker Communications Governance
Attacker communications governance defines who may communicate with an adversary, under what authority, through which channels, and with what legal, safety, and evidence controls.
Open article →Companion-course connectionCredential Attack Incident Response
Credential attack incident response addresses password spraying, stuffing, brute force, phishing, token theft, session hijacking, and unauthorized account use.
Open article →Companion-course connectionCyber Crisis Communications
Cyber crisis communications coordinates timely, accurate, authorized messages for employees, customers, partners, regulators, media, and other stakeholders.
Open article →Companion-course connectionPenetration Test Reporting
A penetration test report explains what was tested, what was demonstrated, why it matters, how confident the tester is, and what should happen next.
Open article →Companion-course connectionRansomware
Ransomware operations disrupt access to systems or data and may combine encryption with theft, extortion, public pressure, and attacks on recovery systems.
Open article →Companion-course connectionAgile Psychological Safety
Agile psychological safety is the shared confidence that people can raise concerns, admit uncertainty, ask for help, challenge assumptions, and report mistakes without retaliation or humiliation.
Open article →Companion-course connectionAI Shared-Responsibility Mapping
AI shared-responsibility mapping assigns control duties across model providers, cloud platforms, application teams, data owners, users, and oversight functions.
Open article →Companion-course connectionBacklog Prioritization
Backlog prioritization orders work using value, urgency, risk, learning, dependencies, cost of delay, capacity, and strategic commitments.
Open article →Companion-course connectionCloud Audit Evidence
Cloud audit evidence demonstrates how cloud controls are designed and operating through configuration, logs, assessments, access reviews, provider reports, tickets, approvals, and automated test results.
Open article →Companion-course connectionCloud Credential Exposure Paths
Cloud credential exposure paths include source code, build systems, images, logs, metadata services, environment variables, local files, browser sessions, and overprivileged automation.
Open article →