Security Frameworks and Compliance
Move from framework orientation into detailed control, assurance, and continuous-monitoring requirements across major security programs.
Security engineers, Compliance teams, Technical leaders
Move from framework orientation into detailed control, assurance, and continuous-monitoring requirements across major security programs.
Courses in this path
A practical introduction to using NIST CSF 2.0 as a flexible cybersecurity risk management framework for outcomes, profiles, tiers, governance, communication, and continuous improvement.
Launch Course What Are the CIS Controls?Open course in the Explainers catalog: What Are the CIS Controls?.
Launch Course OWASP Top 10 2025 Mapped to CIS Critical Security ControlsOpen course in the Governance, Risk, and Compliance catalog: OWASP Top 10 2025 Mapped to CIS Critical Security Controls.
Launch Course What Is Zero Trust?Open course in the Explainers catalog: What Is Zero Trust?.
Launch Course What Is NIST SP 800-53?Open course in the Explainers catalog: What Is NIST SP 800-53?.
Launch Course OWASP Top 10 2025 Mapped to NIST SP 800-53 Rev. 5Open course in the Governance, Risk, and Compliance catalog: OWASP Top 10 2025 Mapped to NIST SP 800-53 Rev. 5.
Launch Course What Is RMF?Open course in the Explainers catalog: What Is RMF?.
Launch Course What Is FedRAMP?Open course in the Explainers catalog: What Is FedRAMP?.
Launch Course What Is CMMC 2.0?Open course in the Explainers catalog: What Is CMMC 2.0?.
Launch Course OWASP Top 10 2025 Mapped to CMMC 2.0 PracticesOpen course in the Governance, Risk, and Compliance catalog: OWASP Top 10 2025 Mapped to CMMC 2.0 Practices.
Launch Course What Is SOC 2?Open course in the Explainers catalog: What Is SOC 2?.
Launch Course SOC 2 Type I vs Type IIA practical course on the difference between SOC 2 Type I and Type II reports, evidence, scope, and sustainable readiness.
Launch Course OWASP Top 10 2025 Mapped to SOC 2 Trust Services CriteriaOpen course in the Governance, Risk, and Compliance catalog: OWASP Top 10 2025 Mapped to SOC 2 Trust Services Criteria.
Launch Course OWASP Top 10 2025 Mapped to ISO/IEC 27001 and ISO/IEC 27002 ControlsOpen course in the Governance, Risk, and Compliance catalog: OWASP Top 10 2025 Mapped to ISO/IEC 27001 and ISO/IEC 27002 Controls.
Launch Course OWASP Top 10 2025 Mapped to PCI DSS v4.0 RequirementsOpen course in the Governance, Risk, and Compliance catalog: OWASP Top 10 2025 Mapped to PCI DSS v4.0 Requirements.
Launch Course OWASP Top 10 2025 Mapped to HIPAA Security Rule SafeguardsOpen course in the Governance, Risk, and Compliance catalog: OWASP Top 10 2025 Mapped to HIPAA Security Rule Safeguards.
Launch Course What Is SBOM?Open course in the Explainers catalog: What Is SBOM?.
Launch Course What is Continuous Monitoring?Open course in the Explainers catalog: What is Continuous Monitoring?.
Launch CourseContinue from here
Understand the quantum risk, current NIST standards, and practical migration implications for long-lived data and web services.
View Path FedRAMP PractitionerUnderstand FedRAMP scope, baselines, High requirements, NIST control foundations, evidence, vulnerability management, and continuous monitoring.
View Path Sovereign AI Starter KitBuild a working mental model of private AI, select suitable models, and launch a practical local assistant.
View Path