Home › Security Hardening & Compliance (STIGs/CIS)
Security Hardening & Compliance (STIGs/CIS)
14 chapters
Chapters
2 Functional Testing Security Hardening & Compliance (STIGs/CIS) · 3:13 Covering end-to-end functional testing for secure data pipelines, this chapter walks through validating Kafka streams and Kubernetes deployments to ensure every layer of your infrastructure performs as expected under real-world conditions.
3 Failover and Resilience Testing Security Hardening & Compliance (STIGs/CIS) · 3:49 Explore the critical strategies behind failover architecture and resilience testing, covering how distributed systems maintain stability during regional outages, broker failures, and network partitions. Listeners will learn how active-active configurations and documented recovery trails keep infrastructure sound when things go wrong.
1 Hardening Approaches Security Hardening & Compliance (STIGs/CIS) · 2:54 Explore the four foundational approaches to system hardening, including gold images, Infrastructure as Code, and policy-driven security controls that form the backbone of a robust defense strategy.
4 STIGs ↔ CIS Benchmarks Security Hardening & Compliance (STIGs/CIS) · 4:25 Explore the relationship between CIS Benchmarks and STIGs, two powerful security frameworks that share common ground in platform hardening while each bringing unique strengths to compliance and configuration management.
2 STIGs ↔ FedRAMP Security Hardening & Compliance (STIGs/CIS) · 3:49 Explore the relationship between STIGs and FedRAMP, two powerful compliance frameworks that both trace their roots to NIST 800-53 yet serve distinctly different security demands — one built for cloud providers seeking government approval, the other engineered for the rigorous protection standards of the DoD.
4 STIG Assessment Workflow Security Hardening & Compliance (STIGs/CIS) · 3:34 Mastering the STIG assessment process from start to finish, this track walks through a structured eight-step workflow that takes you from defining your system boundary all the way to final reporting, ensuring no asset is overlooked.
1 Windows Server STIG Security Hardening & Compliance (STIGs/CIS) · 3:15 Dive into the essential security requirements for hardening Windows Server environments, covering critical controls like password complexity, account lockout thresholds, and inactive account management to build a rock-solid compliance foundation.
6 Lab 6 — Ansible STIG Automation Security Hardening & Compliance (STIGs/CIS) · 3:29 Dive into hands-on Ansible automation for RHEL 8 STIG compliance, learning how to clone a lockdown role, configure variables, and leverage Infrastructure as Code to streamline your security hardening workflows.
4 Database STIGs Security Hardening & Compliance (STIGs/CIS) · 4:24 Diving into database security, this chapter explores the four essential STIG controls for protecting sensitive data, covering authentication, least privilege, and role separation to ensure DBAs, applications, and auditors each operate within their proper boundaries.
3 Zero Trust Architecture and STIGs Security Hardening & Compliance (STIGs/CIS) · 3:26 Explore how Zero Trust Architecture and STIGs work together to create a robust security framework built on the principle of "never trust, always verify." Learn how continuous identity verification and strict access controls form the hardened foundation of modern cybersecurity compliance.
2 STIG for DevSecOps Pipelines Security Hardening & Compliance (STIGs/CIS) · 4:01 Explore how to integrate STIG compliance directly into your DevSecOps pipeline using shift-left security practices, ensuring every code commit is scanned and security gates are enforced before vulnerabilities ever reach runtime.
5 Lab 5 — Gold Image Hardening Security Hardening & Compliance (STIGs/CIS) · 4:09 Discover the process of building a hardened gold image from a fresh server installation, ensuring STIG compliance before deployment into your environment.
1 Official Resources Security Hardening & Compliance (STIGs/CIS) · 4:09 Dive into the four essential official resources every security professional needs to know, including DISA Cyber Exchange and NIST frameworks, and learn exactly where to find authoritative STIGs, SRGs, and compliance documentation.
3 Continuous Monitoring and STIGs Security Hardening & Compliance (STIGs/CIS) · 4:33 Continuous monitoring doesn't stop after authorization — discover how post-ATO compliance stays alive through automated SCAP scanning, quarterly STIG updates, and the ongoing procedures that keep your system's security status green.