Cybersecurity fundamentals; risk management components, models, processes, and approaches; introduction to relevant definitions and case studies necessary to evaluate risk with respect to technology, activities, individuals, and the enterprise itself; security policy and governance; survey of techniques for identifying, assessing, and mitigating threats, vulnerabilities, and exploits; compliance standards, frameworks, and laws; security controls and best practices; business impact analysis and the economics of risk mitigation; business continuity, disaster recovery, and incident response planning.