Course track
IT & Admins
For IT, sysadmins, and privileged-account holders: ransomware response, admin credential hygiene, hardened MFA, backup discipline, and shadow IT.
Who takes this: IT staff, system administrators, and anyone holding privileged or admin credentials
ISOSOC2NISTPCINDPA
| Module | Length | What staff learn | Maps to |
|---|---|---|---|
| Behind the Firewall: Network Fundamentals | 5 min | Explain segmentation and least privilege, and why "behind the firewall" is not "safe." | ISO, SOC2, NIST |
| Ransomware: First 60 Minutes Priority | 7 min | Execute the isolate, report, preserve sequence before touching a suspected ransomware host. | ISO, SOC2, NIST |
| Privileged Account & Admin Credential Hygiene | 5 min | Apply least privilege and unique admin credentials, and never share root or admin logins. | ISO, SOC2, PCI |
| MFA Fatigue & Account Takeover for Admins | 4 min | Harden admin accounts against push-bombing and configure number-matching MFA. | ISO, SOC2, NIST |
| Patch, Backup & Recovery Discipline | 5 min | Explain why untested backups are not backups, and verify a restore quarterly. | ISO, SOC2, NIST |
| Shadow IT & Unapproved AI Tools | 4 min | Identify and report unsanctioned SaaS or AI tools handling company data. | NDPA, ISO, SOC2 |
Compliance codes show which frameworks each module supports. Some clauses are marked "verify" in our source review, meaning we phrase the claim cautiously rather than cite an exact, unconfirmed section number. See the glossary for term definitions.