Summary

In this chapter, I covered the key elements of security-related awareness and training, social engineering, regulations, and the user in the environment. Your job as a security professional includes keeping yourself up-to-date on current issues as well as informing affected parties of changes occurring in the industry and new threats.

The process of raising sensitivity about security is part of a security-awareness program. This program should include communications about the nature of the issues, education about policies and procedures, and clear support from management.

Information classification is the process of determining what information is accessible to what parties and for what purposes. Classifications in industry are usually ...

Get CompTIA® Security+™: Study Guide, Fifth Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.