Cybersecurity �Fundamentals
Justin David Pineda
Welcome to the Workshop!
1-day Workshop from 12pm-8pm.
Course notes and materials provided.
Answers to exercises should be placed in the PPT template provided.
Executive Diploma Program in Cybersecurity - SPACE
Cybersecurity Defense
Page #
Page 3
Links for all related materials
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
SLIDE DECK
EXERCISES
WORKSHEET
REFERENCES
Things to do:
Part 1
Part 2
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Getting to Know
(Speed Introduction)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
About the Facilitator: Justin Pineda
Industry
Certs
Academe
Pineda Cybersecurity
Alorica
Ingram Micro
Bnext Inc.
JG Summit Holdings Inc.
The Coca-Cola Company
Silversky/Perimeter Security
DPO ACE, CISSP, ISO/IEC 27032, ISO/IEC 27035, ISO 27034, ISO 42001, ISO 27001, CISM, CEH, GWAPT, GMOB, CEH, Security+, CCNA, IBM DB2, ISO 27002, Cato SASE, Parallels RAS, ITILv3, APMG CISM, ISC2 Trainer
Asian Institute of Management (AIM)
DLS-CSB
Asia Pacific College
LPU
NU
San Beda
Mapua
TIP
Page 7
Learning Process
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Read Materials
Join the Lecture
Share Insights
Answer the Assessment
* A PDF Glossary of Cybersecurity terms is also uploaded for reference.
Cybersecurity Talent Shortage
Microsoft is launching a national campaign with U.S. community colleges to help skill and recruit into the cybersecurity workforce 250,000 people by 2025, representing half of the country’s workforce shortage
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Global Cybersecurity Skills Needed
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
(CSO Online, 2017)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
(Indeed, 2017)
Common Security Misconception
That there are only 2 teams:
Attackers (Red) and Defenders (Blue)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
But in the actual practice…
There are seven (7) teams.
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Survey – Which cybersec color are you interested to explore?
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Security Certifications
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
https://certification.comptia.org/docs/default-source/downloadablefiles/it-certification-roadmap.pdf
General Security Concepts
1 of 4
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Information Security
- From Dutchman Platform Professionals
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Information Security
— Code of practice for information security management��
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Information Security vs. IT Security
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
How to Implement Information Security?
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
What is information security? �(Isaac & Isaac, 2003)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Confidentiality
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
DFA probes data breach into PHL passport tracking system
Integrity
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Integrity
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Availability
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Availability
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Defense in Depth (DiD)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Security Architecture
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Security Service and Mechanisms
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Service & Mechanism Example
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Goal: I want to focus on physical security
Security Services: (1)Personnel security; (2) Access control
Security Mechanisms: (1) Security clearance, training, rules of behavior; (2) Biometrics, proximity card, mantraps;
Operational Model of Security
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
For many years, the focus was on prevention.
Protection = Prevention
For example: Use of Firewall
(Conklin et al, 2011)
Operational Model (cont’d)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Operational Model (cont’d)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Security Principles (cont’d)
Case of User Privilege:
Linux – sudo su (super user)
Microsoft – default admin
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Types of Least Privilege
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Diversity of Defense
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Diversity of Defense
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Because if a VULNERABILITY is FOUND in a particular brand, NO MATTER how many devices you have, ALL OF THEM ARE VULNERABLE.
Diversity of Defense
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Because if a VULNERABILITY is FOUND in a particular brand, NO MATTER how many devices you have, ALL OF THEM ARE VULNERABLE.
Security through Obscurity
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Security through Obscurity (STO)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cost Benefit Analysis (CBA)�
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cost Benefit Analysis (CBA)�
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
NIST Cybersecurity Framework
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
NIST Cybersecurity Framework Application
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Identify | Protect | Detect | Respond | Recover |
House | Gate | CCTV | Call the police | Evacuate |
Exercise 1�General Security Concepts�(Waymo vs. Uber) �45 minutes to answer�15 minutes to discuss
Refer to your Exercise Document.
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Threats and risks
2 of 4
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Security Relationships
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Threat Agent
Threat
Vulnerability
Risk
Asset
Exposure
Safeguard
Gives rise to
Exploits
Leads to
Can damage
And causes
Can be counter-measured by a
Directly affects
Definition of Terms
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Example: Broken door knob
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Thief
Threat agent/actor
Robbery
Threat
Broken Door Knob
Vulnerability
Cyber Threat Environment
Cyber Threat
Cyber Threat Environment
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cyber Threat Environment
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cyber Threat Actors
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cyber Threat Actor and Motivation
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cyber Threat Actor | Motivation |
Nation-states | Geopolitical |
Cybercriminals | Profit |
Hacktivists | Ideological |
Terrorist Groups | Ideological Violence |
Thrill-Seekers | Satisfaction |
Insider Threats | Discontent |
Anonymous
Hacktivists
Employee Negligence
Insider Threats
Cyber Threat Surface
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Risk Analysis
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
(Conrad, Misenar & Feldman, 2010)
Quantitative vs. Qualitative Risk Analysis
Risk Formula
Risk = Threat x Vulnerability
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Calculating Risk
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Risk Formula
*Impact – severity of the damage
*Impact – consequences
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
With Impact
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Risk Management Process (NIST 800-30)
1. System Characterization
2. Threat Identification
3. Vulnerability Identification
4. Control Analysis
5. Likelihood Determination
6. Impact Analysis
7. Risk Determination
8. Control Recommendations
9. Results Documentation
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Calculating Annualized Loss Expectancy
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
(Conrad, Misenar & Feldman, 2010)
Total Cost of Ownership
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Return on Investment (ROI)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Example Scenario:
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Asset Value
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Exposure Factor
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
SLE
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
ARO
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
ALE
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
TCO
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
TCO
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
ROI
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
You will save $247,500/year (the old ALE, $275,000, minus the new ALE, $27,500)
by making an investment of $136,667. Your ROI is $110,833 per year ($247,500 minus
$136,667). The laptop encryption project has a positive ROI, and is a wise investment.
Annualized Loss Expectancy of Unencrypted Laptops
Annualized Loss Expectancy of Encrypted Laptops
(Conrad, Misenar & Feldman, 2010)
Measures that reduce risk
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Measures that reduce risk
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Types of Risk Strategies
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Example Scenario
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
(Conrad, Misenar & Feldman, 2010)
Question 1
What is the Annual Rate of Occurrence in the above scenario?
A. $20,000
B. 40%
C. 7
D. $10,000
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Question 2
What is the annualized loss expectancy (ALE) of lost iPod sales due to the DoS attacks?
A. $20,000
B. $8000
C. $84,000
D. $56,000
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Question 3
Is the DoS mitigation service a good investment?
A. Yes, it will pay for itself
B. Yes, $10,00 is less than the $56,000 Annualized Loss Expectancy
C. No, the annual Total Cost of Ownership is higher than the Annualized Loss Expectancy
D. No, the annual Total Cost of Ownership is lower than the Annualized Loss Expectancy
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Exercise 2�Risk Analysis�(Equifax)�45 minutes to answer�15 minutes to discuss
Refer to your Exercise Document.
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Technical Measures �(ICT Security)
3 of 4
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Business Assets
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Information about the business asset
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Mandatory Access Control (MAC)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Top Secret |
Secret |
Confidential |
Public |
Mandatory Access Control (MAC)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Top Secret |
Secret |
Confidential |
Public |
If my label is ‘Secret’, I cannot access ‘Top Secret.’ I can, however, access ‘Secret’, ‘Confidential’, and ‘Public’ resources.
Discretionary Access Control (DAC) �
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
| Manny | Vangie | Alfred |
File 1 | rwx | | |
File 2 | | rwx | |
File 3 | | | rwx |
Discretionary Access Control (DAC) �
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
| Manny | Vangie | Alfred |
File 1 | rwx | | |
File 2 | | rwx | |
File 3 | | | rwx |
The Administrator/Root
Discretionary Access Control (DAC) �
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
| Manny | Vangie | Alfred |
File 1 | rwx | r | rw |
File 2 | r | rwx | - |
File 3 | rw | rwx | rwx |
Cryptography
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Encryption
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Some applications of encryption
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
ACCESSING ONLINE BANKING THROUGH WEB BROWSER
CONNECTING A WIRELESS NETWORK
SECURING INTERNAL STORAGE
Plaintext and Ciphertext
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Encryption Types
Encryption key analogy - key is like the one you’d use to open your car, or the door to your house.
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Symmetric Keys
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Asymmetric Keys
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Hashing
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Digital Signature
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Public Key Infrastructure (PKI)
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
(The Basics of Information Security A Practical Handbook, 2010)
Terms to remember:
Registration Authority (RA)
Certification Authority (CA)
Validation Authority (VA)
Certificate Revocation List (CRL)
Key Escrow
Information Security Incidents and Weaknesses
4 of 4
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Managing Information Security Incidents
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Information security process is not a one-time event.
It is a continuous process.
Part of information security process- incident management and risk management.
Reporting Information Security Incidents and Weaknesses
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Reporting security incidents is primarily a way of learning from them so as to avoid similar incidents from occurring again;
Reporting an incident is not intended as a way of punishing the perpetrator of that incident.
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Incident Report
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Date and time
Name of the person reporting
Location
What is the problem?
What is the effect of the incident?
How was it recovered?
Type of system
System number/system name
Who else was informed?
Incident Cycle
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Threat
Incident
Damage
Recovery
INCIDENT CYCLE
Type
Measure
Preventive
Detective
Repressive
Corrective
Evaluative
Reductive
Incident Response Process
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Discover and Report
Confirm
Investigate
Recover
Lessons Learned
Incident Response Process
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Discover and Report
Confirm
Investigate
Recover
Lessons Learned
Employees should be trained to report incidents.
Incident Response Process
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Discover and Report
Confirm
Investigate
Recover
Lessons Learned
Employees should be trained to report incidents.
Responders must acknowledge the incident.
Incident Response Process
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Discover and Report
Confirm
Investigate
Recover
Lessons Learned
Employees should be trained to report incidents.
Responders must acknowledge the incident.
Specialists must be able to determine the extent of the incident.
Incident Response Process
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Discover and Report
Confirm
Investigate
Recover
Lessons Learned
Employees should be trained to report incidents.
Responders must acknowledge the incident.
Specialists must be able to determine the extent of the incident.
Investigation is complete and documented. Return systems to operational status.
Incident Response Process
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Discover and Report
Confirm
Investigate
Recover
Lessons Learned
Employees should be trained to report incidents.
Responders must acknowledge the incident.
Specialists must be able to determine the extent of the incident.
Investigation is complete and documented. Return systems to operational status.
Discuss points of improvement to correct mistakes.
Remember!
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Remember!
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
But not every incident is a security incident.
Exercise 3�Incident Handling (SunCrypt Ransomware)�45 minutes to answer�15 minutes to discuss
Refer to your Exercise Document.
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
References:
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Other documents
Cybersecurity Fundamentals v7.0 | J. Pineda 07-2025
Cybersecurity �Fundamentals
Justin David Pineda