Upgrade to Pro — share decks privately, control downloads, hide ads and more …

CISA Series – Part 6B | Domain 5: Protection of...

Sponsored · Ship Features Fearlessly Turn features on and off without deploys. Used by thousands of Ruby developers.

CISA Series – Part 6B | Domain 5: Protection of Information Assets Security Event Management

CISA Series – Part 6B | Domain 5: Protection of Information Assets
Security Event Management

This part of the CISA series focuses on one of the most practical areas of Domain 5 — Security Event Management.

The deck explores how organisations prepare for, detect, respond to and learn from security events to protect information assets and strengthen resilience.

Topics covered include:

• Security awareness training and programmes
• Information system attack methods and techniques
• Security testing tools and techniques
• Security monitoring tools and techniques
• Incident response management
• Evidence collection and digital forensics
• Threat intelligence and threat hunting
• IDS vs IPS
• SIEM vs SOAR
• Malware controls and detection techniques
• Protection of evidence and chain of custody
• Practical security scenarios and key exam points
• The use of AI applied to Part B topics and auditing

The focus is both CISA exam preparation and real-world application—linking people, process and technology to strengthen protection, improve incident response and support operational resilience.

My interpretation based on practical experience and research — open to feedback and additional insights.

#CISA #ISACA #CyberSecurity #InformationSecurity #SecurityOperations #ThreatIntelligence #SIEM #SOAR #IncidentResponse #DigitalForensics #ITAudit #InternalAudit #RiskManagement #Compliance #ArtificialIntelligence

Avatar for Alison

Alison PRO

May 26, 2026

More Decks by Alison

Other Decks in Business

Transcript

  1. Computer Crime and Threat Actors Hackers and script kiddies Nation-state

    actors Organized crime Malicious insiders Third-party threats
  2. Key Takeaway CISA DOMAIN 5 FOCUSES ON PROTECTING INFORMATION ASSETS

    THROUGH EFFECTIVE SECURITY CONTROLS, MONITORING, GOVERNANCE, AND OPERATIONAL RESILIENCE. IT BRINGS TOGETHER PEOPLE, PROCESSES, AND TECHNOLOGY TO ENSURE THAT INFORMATION REMAINS CONFIDENTIAL, ACCURATE, AVAILABLE, AND PROTECTED AGAINST EVOLVING THREATS. SECURITY EVENT MANAGEMENT IS NOT JUST ABOUT DETECTING ATTACKS — IT IS ABOUT BUILDING AN INTEGRATED CAPABILITY TO PREVENT, IDENTIFY, ANALYZE, CONTAIN, ERADICATE, RECOVER FROM, AND LEARN FROM SECURITY INCIDENTS.
  3. Disclaimer Based on practical experience and interpretation Not affiliated with

    any organization • Like • Share • Subscribe • Follow the series Thank You