Intro to Cybersecurity
Empower your small business with a deep dive into cybersecurity basics at our upcoming Introduction to Cybersecurity event. Discover practical strategies to protect your business online. Join us for insights tailored to small businesses, ensuring your digital assets are secure. Do not miss out on the chance to boost your digital security knowledge.
SBA programs and services are extended to the public on a nondiscriminatory basis. For reasonable accommodation request please send an email to LADO@SBA.GOV at least 7 days in advance.
Navigating Cybersecurity Compliance
A helpful cybersecurity guide for small business owners!
In today's digital landscape, small businesses face an increasing number of cybersecurity threats. Navigating cybersecurity compliance can be daunting, especially for those with limited resources and expertise. This comprehensive guide provides small business owners with practical insights and actionable steps to effectively manage cybersecurity risks and ensure compliance with relevant regulations.
Whether you're a startup or an established small business, staying ahead of cybersecurity challenges is essential for protecting sensitive data, maintaining customer trust, and securing long-term success.
Supply Chain Risks and Counterintelligence
A diverse panel of Supply Chain Risk (SCR) Management subject matter experts from the Department of Justice, Office of the Director of National Intelligence, and the Office of the Under Secretary of Defense for Intelligence and Security will discuss supply chain risks with respect to counterintelligence concerns.
Defending Internet Accessible Systems (IR204)
The Cybersecurity and Infrastructure Security Agency (CISA) is proud to offer the Incident Response Training event, Defending Internet Accessible Systems Cyber Range Training (IR204), on Thursday, April 25, 2024, from 9:00 am to 1:00 pm EDT. The 200-level training events are open to government employees and contractors across federal, state, local, tribal, and territorial government, educational partners, and critical infrastructure partners. Please use your organization email address when registering.
This course is ideal for those working in cybersecurity roles who are interested in learning technical incident response skills and requires active engagement from all participants. The course assumes a mixed audience (e.g., from disparate teams and organizations) of mixed capability.
Participants will be introduced to tactics and strategies that enable them to protect their organizations from attacks against internet accessible system(s) (i.e., Internet Accessible System Attacks or IAS), through awareness of individual and organizational points of vulnerability.
Experience these benefits and more:
-
Practice in a realistic environment: Define IAS Vulnerabilities and their indicators.
-
Learn how to implement CISA guidance: Course exercises include implementation of the recommendations in BOD 19-02.
-
Identify and mitigate vulnerabilities in real time: Students will identify common methods of scanning for vulnerabilities, analyzing event logs, and modifying firewall rules.
-
Expert facilitation and peer discussion: Throughout the course, expert cybersecurity engineers will moderate discussion and conduct a recovery debrief for the exercises. Participants are also encouraged to help one another and offer relevant input to address peers' questions.
This exercise is a step-by-step, facilitated experience that uses a keyboard approach to understand these topics in a realistic technical environment.
Approved registrants must attend a mandatory student technical check the day before the training to establish a connection to the course content and lab environment.
EVENT LOGISTICS
-
Date: Thursday, April 25, 2024
-
Time: 9:00 am to 1:00 pm EDT
-
Location: Online via WebEx
-
CPE Credit: Participants can earn 4 CPE credits for attending this course.
-
Attendee Requirements: This course requires active participation. Attendees can use government-issued computers or personal computers. A second monitor is recommended.
-
Note: Audio is through WebEx; there is no external dial-in.
-
Closed captioning (English only) will be available during this training event. Previously recorded webinars are available on the CISA YouTube Channel for playback in other languages, if required.
Due to participation requirements, please register no later than 48 hours before the course starts. Cyber Insights will not accept registrations made less than 48 hours before the course start.
Coffee & Conversation with Jeanette McMillian
To mark Supply Chain Integrity Month, INSA will be hosting a virtual Coffee & Conversation with Jeanette McMillian, Assistant Director, Supply Chain and Cyber Directorate, National Counterintelligence and Security Center (NCSC), on Tuesday, April 23, from 9:00-9:45 am ET!
Moderated by INSA Executive VP John Doyon, topics for discussion include:
- Acquisition, cyber, and enterprise security
- Importance of supply chain illumination to identify and mitigate potential cyber threats to CI, such as energy, transportation, and telecommunications
- Emerging technology and supply chain challenges
- Collaborative approaches to supply chain integrity
- ...and more!
Plus, there will be ample time for audience Q&A!
Okta Gov Identity Summit
It’s a pivotal year. Federal agencies face immediate deadlines for key Zero Trust goals, while transforming digital service delivery and modernizing legacy systems. State and local governments made cybersecurity and digital services their top strategies for 2024.
What’s powering every one of these priorities? Modern Identity.
JOIN US on April 23 to learn how the public and private sectors are harnessing the power of modern Identity. We’ll cover critical topics like:
- Accomplishing immediate Zero Trust milestones and advancing maturity
- Humanizing, simplifying, and securing digital services
- Maintaining operational readiness even in hostile environments
- Understanding the power and risks of AI
Attendance is free for government but space is limited, so secure your spot today. We’re looking forward to seeing you at the Okta Gov Identity Summit!
Cyber-Attack Management: Preparation & Response
This webinar combines the key definitions of incident management and demonstrates them through real-world examples. Small businesses will learn how to determine if an event has become an incident as well as how to quickly and effectively respond to eliminate immediate threats!
Cybersecurity for Small Business: How to Protect Your Business
This webinar will provide an overview of the current Cyber Security Landscape, with particular emphasis on how it affects small to mid-size businesses. Most importantly it will cover the actions you can take to protect your business from cyber threats.
You will learn about:
• The current Cyber Landscape
• The areas that are currently most active and vulnerable to cyber threats
• Best practices to protect your business from cyber threats
Prior to the webinar, give thought to:
• How do you currently protect your digital data and assets today?
• What would you do if you had a breach or loss of Data?
Presenter: Vincent LaRocca
Vinny LaRocca is the Chief Executive Officer of CyberSecOp, a seasoned leader in the cybersecurity industry with a profound commitment to protecting sensitive data and mitigating cyber threats. Vinny has over 30 years of experience in IT and CyberSecurity, working for companies such as IBM, EMC and Innovative Network Solutions.
Using the CISA Incident Response Playbook at your Organization (IR211)
The Cybersecurity and Infrastructure Security Agency (CISA) is proud to present the Using the CISA Incident Response Playbook at your Organization (IR211) event Wednesday, April 3, 2024, from 9:00 am to 1:00 pm EDT. The 200-level training events are open to government employees and contractors across federal, state, local, tribal, and territorial government, educational partners, and critical infrastructure partners. Please use your organization email address when registering.
This course is ideal for those working in cybersecurity roles who are interested in learning technical incident response skills and requires active engagement from all participants. The course assumes a mixed audience (e.g., from disparate teams and organizations) of mixed capability.
Produced in accordance with Executive Order 14028, “Improving the Nation’s Cybersecurity,” CISA released the Federal Government Cybersecurity Incident and Vulnerability Response Playbooks that provide federal civilian agencies with a standard set of procedures to respond to vulnerabilities and incidents impacting Federal Civilian Executive Branch (FCEB) networks. This course introduces students to the Incident Response Playbook that describes the process FCEB agencies should follow for confirmed malicious cyber activity for which a major incident has been declared or not yet been reasonably ruled out. The course will include a tabletop discussion format that follows a simulated IR event/scenario and guides students through the CISA IR checklist and IR phases. While the playbooks are intended for federal agencies, CISA encourages public and private sector partners to review them to help inform their own incident response practices.
Experience these benefits and more:
-
Key guidance for organizations: Introduce the CISA Incident Response (IR) Playbook with an overview of the IR phases, key resources, standardizing shared practices, and the Incident Response Checklist. Learn about roles, responsibilities, and the importance of communication during an incident response.
-
Lessons learned: This course also highlights lessons learned and common missteps when implementing an IR playbook.
-
Peer activity and discussion: A guided incident response tabletop scenario and discussion where students will be required to follow the IR process using the CISA IR checklist. The tabletop discussion will help students to better comprehend and apply critical thinking throughout the NIST/CISA IR process.
EVENT LOGISTICS
-
Date: Wednesday, April 3, 2024
-
Time: 9:00 am to 1:00 pm EDT
-
Location: Online via WebEx
-
CPE Credit: Participants can earn 4 CPE credits for attending this course.
-
Attendee Requirements: This course requires active participation. Attendees can use government-issued computers or personal computers. A second monitor is recommended.
-
Note: Audio is through WebEx; there is no external dial-in.
-
Closed captioning (English only) will be available during this training event. Previously recorded webinars are available on the CISA YouTube Channel for playback in other languages, if required.
Due to participation requirements, please register no later than 48 hours before the course starts. Cyber Insights will not accept registrations made less than 48 hours before the course start.
ONLINE: Cyber Security Post Pandemic for Small Business and Home
Post Covid-19 Small Businesses and Startups are challenged with the challenge of providing a secure and high performance work space for all collaborators.
2023 Small Business Cyber Issues Include:
1. Retooling for remote work created new vulnerabilities
2. Ransomware is more prevalent than before the pandemic
3. IoT and the supply chain has experienced new levels of cyber attacks
4. Expansion of cloud services increases complexity and depth of cyber attacks
5. Mobile computing and wearable’s are more of a target today
6. Phishing is a popular methodology for cyber terrorists
7. Insider threats are more prevalent than ever
8. Data privacy elevated to a primary organizational objective
9. Artificial Intelligence and Expert Systems becoming as component of cyber security
10. Cyber Cold war Security Perspectives