Professional Development
Cybersecurity Foundations
A broad cybersecurity foundation covering the relationship between risk, threats, vulnerabilities, controls, protected systems and the operational processes used to respond when something goes wrong.
View original PDF ↗
Context
Why I took this course
By 2017, security had already been part of my work for many years through infrastructure administration, incident troubleshooting, data recovery, access control, network design and information-security responsibilities. I took the course to put those practical experiences against a structured cybersecurity framework and refresh areas that had changed as threats, platforms and defensive practices evolved.
Takeaways
What I took away from it
- Cybersecurity is not a single product or technical control; it is a risk-management discipline that spans people, processes, systems and data.
- Preventive controls matter, but monitoring, response, recovery and clear ownership are equally important when operating real systems.
- Good security decisions depend on context: the significance of a vulnerability or control is determined by the systems, data, exposure and business consequences involved.
Experience
How it connects to my work
My security work has ranged from electronic and physical security early in my career to server and network hardening, VPNs, access controls, cloud and web security, incident investigation, forensic recovery and cybersecurity-posture reviews.
In consulting and leadership roles, I have often had to translate technical findings into priorities that business owners, managers or technical teams could act on, rather than treating security as a checklist detached from operational reality.
The course helped organize that broad practical background into a more explicit cybersecurity vocabulary and framework.