Cybersecurity Foundations

Gain practical cybersecurity fundamentals you can apply immediately

Duration 3h 31m Rating (4.6) Price Included with subscription on LinkedIn Learning
Created by Malcolm Shore
Platform: LinkedIn Learning Topic: Network & Security Skills: Incident Response NIST Cybersecurity Framework Risk Management

Cybersecurity Foundations introduces core principles and practical practices for protecting networks, users, and data in modern environments. It teaches learners how to assess and mitigate cyber risk, detect and respond to incidents, and map controls to recognised frameworks such as NIST and COBIT.

Designed for beginners and professionals who need actionable security literacy, the course blends threat analysis, incident response, AI security considerations, and supply‑chain and zero‑trust concepts to build decision‑ready knowledge. Graduates should be able to explain threat types, recommend appropriate controls, and communicate risk across technical and non‑technical stakeholders.

At a Glance

Cybersecurity Foundations is an introductory online course that establishes core concepts for protecting networks, users, and data.

Taught by cybersecurity consultant Malcolm Shore, it covers common threat types, risk management and control frameworks such as NIST and COBIT, incident response, and the intersections of cybersecurity with AI and international norms.

Level Beginner
Rating 4.6 out of 5
Duration 3+ hours
Languages English
Certificate Certificate of completion (shareable)
Access Access for as long as your subscription is active
Course includes
  • Video lessons (3+ hours)
  • 2 exercise files
  • 5 quizzes
  • Mobile and offline viewing
  • Continuing Education Units
Price Included with LinkedIn Learning subscription; monthly or annual plans (free trial may be available)

What This Course Teaches

The course frames outcomes as measurable competencies that let learners evaluate risk, select controls, and take concrete defensive and incident-response actions.

On completion, learners should be able to analyze threat activity, apply risk and control frameworks, implement incident-response procedures, and explain AI and international cyber norms.

Cyber Threats
Analyze common threats such as phishing, ransomware, botnets, cloaking, and advanced persistent threats.
Risk Management
Apply cyber risk assessment and reporting methods to evaluate risk context and prioritise mitigations.
Control Frameworks
Explain and map security controls to frameworks like NIST and COBIT to guide governance and operations.
Incident Response
Implement incident-detection, hunting, response, and communications workflows including notification planning.
Security Architecture
Design or evaluate architectures that use zero-trust principles, cloud protections, and privacy-preserving measures.
AI Security
Assess AI-specific threats and define practical guardrails for safer AI deployment and management.
Supply-Chain Security
Apply supply-chain practices such as SBOMs to identify and reduce third-party risks.
Cyber Diplomacy
Explain international norms, protocols, and information‑sharing mechanisms used in global cyber governance.

How the Course Is Structured

The course is organized into eight broad sections made up of a series of short, focused video lessons; the syllabus lists 52 individual lessons in total.

The full run time is roughly 3.5 hours, with most lessons presented as concise, standalone videos grouped by topic from threats through frameworks, operations, AI, and diplomacy.

Curriculum overview

01Introduction

Opens the course with scope, objectives, and how the material is organized.

02Understanding the cybersecurity frameworks and standards

Provides a brief orientation to the role of standards and frameworks in shaping cybersecurity practice.

03What you should know

Summarises prerequisites and the baseline knowledge expected for learners beginning the course.

04Understanding the Cyber Kill Chain7m 35s

Explains attacker workflows and the stages commonly used to model intrusions.

05Pre-cyber threats4m 34s

Discusses preconditions and enabling activities that lead to cyber incidents.

06The emergence of the cyber threats2m 43s

Traces how modern cyber threats evolved and the forces driving current risk trends.

07Botnets and the cybercrime industry5m 59s

Examines botnets, monetization models, and how criminal ecosystems support attacks.

08Cloaking and alternate data streams7m

Describes techniques attackers use to hide payloads and evade detection mechanisms.

09Hiding using processes5m 15s

Covers process-based concealment techniques and indicators defenders can monitor.

10Controlling the target through a rootkit6m 18s

Outlines how rootkits provide persistent control and the defensive challenges they pose.

11Phishing and watering holes4m 31s

Reviews social-engineering vectors and site‑based compromise techniques used to dupe targets.

12Understanding advanced persistent threats7m 6s

Defines APT actors, their motivations, and how long‑term campaigns are conducted.

13Ransomware: A modern form of extortion5m 13s

Explains ransomware tactics, business impact, and common attacker workflows.

14Cryptomining1m 39s

Briefly describes illicit cryptomining and how it manifests on compromised systems.

15Hardware implants and other cyber FUD3m 25s

Discusses hardware threats and separates real risks from exaggerated or misleading claims.

16The Orange Book: Early concepts in computer security4m 23s

Introduces historical foundations that influenced modern security thinking and policy.

17Understanding the NIST Cybersecurity Framework2m 53s

Explains the core functions and structure of the NIST CSF.

18Adopting the NIST Cybersecurity Framework2m 51s

Covers practical steps and considerations when mapping controls to the NIST framework.

19Understanding the basics of cyber risk4m

Defines risk terms and how to interpret likelihood and impact in a cybersecurity context.

20Analyzing cyber threats and controls1m 59s

Shows how to map threats to appropriate technical and organisational controls.

21Recording, reporting, and the risk context3m 32s

Covers how to document and communicate risk findings for stakeholders and compliance.

22An advanced risk framework5m 32s

Introduces a more sophisticated model for contextualizing cyber risk across the enterprise.

23Managing security with COBIT3m 47s

Explains COBIT’s governance focus and how it complements technical controls.

24COBIT for operational security5m 43s

Discusses applying COBIT practices to day‑to‑day security operations and accountability.

25Introduction to cybersecurity controls2m 35s

Offers a taxonomy of common controls used to reduce cyber risk.

26Cybersecurity control framework4m 27s

Explores how control frameworks are structured and applied across environments.

27Cybersecurity standards of good practice3m 3s

Summarises widely accepted standards and the behaviours they encourage.

28Architecting for security5m 9s

Discusses design principles and patterns used to reduce attack surface and improve manageability.

29Protecting payment card data8m 47s

Covers approaches and considerations for securing payment card information and compliance drivers.

30Clouding the issues3m 5s

Looks at cloud-specific security trade-offs and common misconfigurations to watch for.

31Securing things on the internet4m 12s

Addresses security patterns for internet-exposed devices and services.

32Affordable cybersecurity4m 34s

Explores cost-effective measures and prioritisation for organisations with limited budgets.

33Ensuring security is effective2m 46s

Covers validation, testing, and metrics used to assess control effectiveness.

34Protecting privacy with cybersecurity3m 31s

Discusses how security measures can support privacy objectives and regulatory compliance.

35Understanding the zero trust approach to network access3m 36s

Introduces zero‑trust principles for access control and segmentation strategies.

36Resilience as an emerging approach5m 59s

Explores organisational resilience concepts and how they apply to cyber incidents.

37Ensuring supply chain security through SBOMs3m 38s

Explains software bill of materials (SBOMs) and their role in managing third‑party risk.

38Incident management basics6m 27s

Introduces principles, roles, and processes for handling security incidents.

39Measuring incident management maturity4m 56s

Describes maturity models and metrics to evaluate incident-response capabilities.

40Detecting an attack5m 2s

Covers detection signals, telemetry sources, and practical monitoring approaches.

41Hunting for threats2m

Introduces proactive threat-hunting concepts and simple techniques to find anomalies.

42Responding to an incident2m 39s

Outlines immediate response actions and coordination steps during an active incident.

43Communications plan and notification5m 26s

Covers stakeholder communication, legal considerations, and notification best practices.

44Intoduction to AI security4m 38s

Introduces the intersection of AI systems and security concerns at a conceptual level.

45Understand the AI threats8m 6s

Examines specific threats to and from AI, including data‑poisoning and misuse risks.

46AI application guardrails1m 54s

Describes practical constraints and controls to reduce AI-related operational risk.

47ISO42001 AI Management System3m 19s

Provides a brief overview of emerging standards for AI management and governance.

48Cybersecurity goes global4m 11s

Discusses how geopolitical and cross-border issues shape cyber policy and practice.

49Understanding cyber norms5m 13s

Explains norms, voluntary agreements, and expectations that govern state behaviour in cyberspace.

50Cybil and the Global Forum on Cyber Expertise1m 54s

Introduces international initiatives and organisations that support capacity building and best practice sharing.

51The Traffic Light Protocol2m 10s

Describes the Traffic Light Protocol as a mechanism for graded information sharing among stakeholders.

52What’s next1m 6s

Suggests follow-up steps, further learning paths, and ways to apply the course material professionally.

Audience & Requirements

Cybersecurity Foundations is aimed at beginners, early-career IT staff, and non-technical professionals who need a practical introduction to core cybersecurity concepts and governance.

It is best for learners seeking a compact, career‑oriented overview to support upskilling, role changes, or managerial awareness rather than deep technical certification prep.

Who It’s For
  • IT generalists and help‑desk staff taking on security responsibilities.
  • Managers and risk owners who must understand cyber risk and policy implications.
  • Career changers exploring entry roles in cybersecurity.
  • Students or non‑technical professionals seeking baseline cybersecurity literacy.
What You’ll Need
  • No special prerequisites; course is pitched at beginners.
  • Familiarity with general IT concepts (helpful but not required).
  • A LinkedIn Learning account and signed‑in access to download exercise files and obtain the certificate.

Note: Although labelled for beginners, the course covers a wide range of topics in a relatively short timeframe, so learners seeking deep technical skill should plan follow‑up study or hands‑on practice.

Final Verdict

Cybersecurity Foundations is a compact, well-organised introduction that delivers practical conceptual grounding suitable for beginners and for professionals who need a clear overview of cyber risk, controls, and incident handling.

Given its favourable platform rating, the availability of a shareable completion certificate, and inclusion with a subscription access model, the course represents good value for learners seeking a credible, time‑efficient primer.

It is recommended for managers, IT generalists, and career‑starters who want to gain confidence in security concepts quickly; those pursuing hands‑on technical roles should treat it as a first step and plan follow‑up study or practical labs to build operational skills.

Course Details

Platform LinkedIn Learning
Rating (4.6)
Duration 3h 31m
Level Beginner
Language English
Price Included with subscription
View on LinkedIn Learning