Companion-course connectionDetection Use-Case Engineering
Detection use-case engineering converts priority threats and business exposure into defined data needs, analytic logic, triage steps, expected evidence, and validation criteria.
Open article →Companion-course connectionHashing, Salting, and Peppering
Hashing transforms data into a fixed-length digest, while salts and peppers strengthen password storage by making precomputed and large-scale guessing attacks more difficult.
Open article →Companion-course connectionIncident Command Automation Boundaries
Incident command automation boundaries specify which coordination, communication, evidence, and technical actions may be automated and which require accountable human command.
Open article →Companion-course connectionMisuse and Abuse Cases
Misuse and abuse cases describe how a system could be intentionally misused, manipulated, or driven into unsafe behavior.
Open article →Companion-course connectionSecurity Project Management
Security project management controls scope, schedule, dependencies, risk, acceptance evidence, and stakeholder commitments for work that changes security capability.
Open article →Companion-course connectionShadow AI Discovery and Response
Shadow AI discovery and response identifies unauthorized AI tools, models, agents, extensions, data flows, and automated uses, then brings them under governance or removes them.
Open article →Companion-course connectionSymmetric and Asymmetric Encryption
Symmetric encryption uses the same secret key for encryption and decryption, while asymmetric encryption uses a mathematically related public and private key pair.
Open article →Companion-course connectionThreat Scenario Prioritization
Threat scenario prioritization ranks credible actor, path, target, consequence, and control-failure combinations by relevance to the organization and decisions at hand.
Open article →Companion-course connectionVendor Security Negotiation
Vendor security negotiation uses requirements, evidence, leverage, alternatives, and contract terms to reach defensible security outcomes with suppliers.
Open article →Companion-course connectionCybersecurity After-Action Review
A cybersecurity after-action review compares intended and actual response, identifies strengths and gaps, and converts lessons into owned improvements.
Open article →Companion-course connectionAgile Retrospectives
Agile retrospectives are structured learning sessions that examine how work occurred and commit to a small number of testable improvements.
Open article →Companion-course connectionAI Use-Case Readiness Assessment
AI use-case readiness assessment tests whether a proposed AI capability has a defined purpose, suitable data, accountable owners, realistic benefits, acceptable failure modes, and monitorable risk.
Open article →