Cybersecurity Domain Map ver 3.0

Cybersecurity Domain Map ver 3.0

Since the first publication of the Map of Cybersecurity Domains rev. 2.0 in Feb 2017, I received overwhelming responses from readers everywhere. I'd like to thank each one of you who provided the feedback to make the next version up-to-date and to adapt ever changing cybersecurity landscape. Many of your invaluable inputs have been incorporated with this updated version. 

A lot has changed in the past four years. Attack vectors and methods; controls and countermeasures; cybersecurity and privacy regulations here in the U.S. as well as abroad. I also changed jobs. For little over a year I became a dedicated risk management officer to build a 2nd line defense program to better manage the cyber security risks for an international bank; then I switched back to be the 1st line CISO for the largest SaaS GRC company. 

Throughout different roles it afforded me to look cyber security from different perspectives. Because of that, the two main areas that I updated the most for Map 3.0 are related to application security and risk management practices.

Again no specific product names are included on the Map. Also the Map will not fit all regulations, frameworks, controls and methodologies that are out there. I only included the domains that I think are most prevalent and comprehensive for general cybersecurity practices. 

No alt text provided for this image

Just like the version 2.0, the Map and its entire content is for public consumption, you can share it and re-use as you see fit.  I provided the following formats of the Map so you can download those files directly:

? PDF 

? Freemind (*.MM) Mind Map app 

? PNG (lossless)

? HTML (outline only)

Update April 24, 2021

Released an updated map ver 3.1. Fixed a couple of typos spotted by Karen K. from Canada. Thank you Karen!

Update April 29, 2021

Thank you Eduardo Fedorowicz, Lead Security Specialist at Globo to translate this map to Portuguese:

No alt text provided for this image


Update June 16, 2021

Thanks you Yolanda (Baker) Baker, CISA, CDPSE, certified Information Systems Auditor to translate this map to Spanish. Yolanda collaborated with me on original version of Cybersecurity Map back in 2017.

No alt text provided for this image



You can download the latest maps by following the link below:

File download link


   

Andre Winslow

Communication and Tech Experience

1 个月

Thank you

回复
Andrew Fuertes

Sr. Sales Engineer at Comcast

1 个月

What version of MindMap is being used to open these files? I have tried 1.0.1 and 1.0.0 and no luck, error about version format. If anyone has the MindMap version, please share!

回复
Daniel Gutson

Core Detection Lead of Eclypsium Inc.

8 个月

Sorry if I'm blind, I also didn't see Threat Modeling

回复
Daniel Gutson

Core Detection Lead of Eclypsium Inc.

8 个月

I would add reverse engineering and malware analysis, and vulnerability management / prioritization (STRIPE, etc)

回复
Ellias Sota

Windows infrastructure Security | Cyber Security | Customer service | Project Management.

8 个月

Thank you for your great work.

回复

要查看或添加评论,请登录

Henry Jiang的更多文章

社区洞察

其他会员也浏览了