Cybersecurity Architecture: Five Principles to Follow (and One to Avoid)

  Переглядів 270,167

IBM Technology

IBM Technology

День тому

IBM Security QRadar EDR : ibm.biz/Bdyd7k
IBM Security X-Force Threat Intelligence Index 2023: ibm.biz/Bdyd76
This ten part video series is based on a 400 level class on Enterprise Cybersecurity Architecture taught by Jeff "the Security Guy" Crume at a local university. He'll begin by explaining the foundational principles of cybersecurity - five that are best practices and one that's just the opposite. The subsequent episodes will look at the various domains that apply to a well-designed security architecture. Be sure to subscribe so you'll get notified of the next video!
Get started for free on IBM Cloud → ibm.biz/ibm-cloud-sign-up
Subscribe to see more videos like this in the future → ibm.biz/subscribe-now
#AI #Software #ITModernization #Cybersecurity #QRadar #JeffCrume #ibm
Chapters
00:00 Principles Introduction
01:05 Defense in Depth
04:20 Least Privilege
07:55 Separation of Duties
09:50 Secure by Design
12:15 Keep It Simple, Stupid (KISS)
14:43 Security by Obscurity

КОМЕНТАРІ: 162
@Dalai33
@Dalai33 5 місяців тому
This channel is so underrated
@jeffcrume
@jeffcrume 5 місяців тому
I’m glad you are finding value in it!
@kudakwashekucherera1889
@kudakwashekucherera1889 3 місяці тому
I like the clarity in these lectures this is the best
@kurttaguba17
@kurttaguba17 3 місяці тому
Learned a lot from them.
@manassahyoung8218
@manassahyoung8218 3 місяці тому
Highly underrated
@initialized
@initialized 3 місяці тому
10 / 10 conceptually, but I wish they would dive into some code every once in a while
@berniereid4200
@berniereid4200 9 місяців тому
You do a great job of explaining these fundamental concepts.
@umeyrsekban4721
@umeyrsekban4721 5 місяців тому
I completed IBM's Cybersecurity Analyst course and got my certificate, I'm here to refine my knowledge before applying a CS architect job
@jeffcrume
@jeffcrume 3 місяці тому
Excellent! Good luck to you in your learning journey!
@funkykong9001
@funkykong9001 11 місяців тому
Thank you for this. Looking forward to more in the future!
@BSC2CGYM
@BSC2CGYM 3 місяці тому
I highly recommend this for anyone who is pursuing Cybersecurity at a total beginner level like myself. I’m watching these along with my IBM Cybersecurity Analyst Cert course, and it’s really helped me understand concepts that were so over my head at first. Really appreciate it!
@jeffcrume
@jeffcrume 2 місяці тому
I appreciate your watching and giving such great feedback!
@ishwaryanarayan1010
@ishwaryanarayan1010 Місяць тому
Thank you :)
@sushantkumardevata5925
@sushantkumardevata5925 7 місяців тому
Super stuff and thanks for the great presentation. Simple and concise.
@khurramwzd
@khurramwzd 11 місяців тому
Really Thank you for sharing the knowledge.
@jubrilamodu6699
@jubrilamodu6699 8 місяців тому
Great series, learned a lot. Thank you.
@user-nh4mi5ed7q
@user-nh4mi5ed7q 7 місяців тому
I learned a lot from the cybersecurity 10 videos series, I was always fascinated with security and this serie was water-satisfying... Particulary a value among many values that I learned is these fundamentals from the first video, that we should put multiple lines of defense and not rely on one defense to avoid the one single point of failure, another one is that complexity is the enemy of security, that one was very intresting to me... All the practices that you noted we should avoid and best practices that you propone are very valuable. Thank you very much!!
@jeffcrume
@jeffcrume 7 місяців тому
You learned the lessons well!
@sebasmen
@sebasmen 11 місяців тому
Great video! Very clear explanation, thank you :)
@AshishGupta-xn5yj
@AshishGupta-xn5yj 11 місяців тому
Thank you won't be enough to show our gratitude for the content ❤ Looking forward to the next video in this series
@jeffcrume
@jeffcrume 11 місяців тому
Your kind comments are more than enough! Thank you!
@PinkYellowGreen2023
@PinkYellowGreen2023 7 місяців тому
God bless you for sharing this!!
@mehdisoussi9141
@mehdisoussi9141 10 місяців тому
This is gold, thank you very much! looking forward for the rest of the series!!
@jeffcrume
@jeffcrume 10 місяців тому
Thanks for the encouraging feedback!
@edwinrosales6322
@edwinrosales6322 6 місяців тому
Great video, very comprehensive
@sasathishkumar5791
@sasathishkumar5791 6 місяців тому
Excellent content and neat, simple and clearly presented
@janno04
@janno04 11 місяців тому
Cheers, summarised and ppted in 5 seconds.
@Keteerfio
@Keteerfio 15 днів тому
Thank you Jeff, IBM for giving me this topic free.
@jeffcrume
@jeffcrume 2 дні тому
You are most welcome!
@oscarjim3
@oscarjim3 7 місяців тому
Totally enjoyed this primer on Cybersecurity. The explanation and use of visuals were informative.
@jeffcrume
@jeffcrume 6 місяців тому
Thanks so much!
@RC19786
@RC19786 2 місяці тому
I have to say, this has gotta be one of the best cybersec vdos out there when it comes to architecture plays, very few vendors like Cisco, Palo Alto and IBM can actually boast an end-to-end cybersec strategy and Jeff you have done a fantastic job laying it out, keep those vdos coming!
@jeffcrume
@jeffcrume 2 місяці тому
Thank you so very much for all the kind words! I really appreciate it!
@baruchben-david4196
@baruchben-david4196 27 днів тому
I remember someone who was so confident of his security arrangement that he posted his Social Security Number on billboards. It didn't end well...
@jeffcrume
@jeffcrume 2 дні тому
A predictable outcome 😂
@liquidatmosphere5528
@liquidatmosphere5528 6 місяців тому
Thanks for thoose basics delivery. Will continue on with other Subjs of Your track in further videos. Shaking Your hand 🤝
@jeffcrume
@jeffcrume 6 місяців тому
Thanks for the virtual handshake! 🤝
@aladdinaldhmary7188
@aladdinaldhmary7188 3 місяці тому
I have been searching for this for a long time. You just said what I was looking for. Thank you very much!
@jeffcrume
@jeffcrume 3 місяці тому
I love it! Glad I could help
@dirkl9652
@dirkl9652 11 місяців тому
Good stuff. Thanks
@meribipucejera
@meribipucejera 3 місяці тому
Man-in-the-middle attack! A wise man once said, learn something everyday, even if its something small. Thank you for teaching me something today...I just considered getting my certificate in cyber security and i'm starting this journey very soon!!! GREAT VIDEO
@jeffcrume
@jeffcrume 2 місяці тому
That’s great advice about learning something new every day! Glad I could help
@FuzzerHash
@FuzzerHash 11 місяців тому
IBM having many great learning videos, thanks.
@jervahnmorgan
@jervahnmorgan 10 місяців тому
Great video.
@pdillip1
@pdillip1 28 днів тому
The best masterclass on overall security. Crystal clear concept and razor sharp analysis.. I enjoyed and learned a lot.
@billlee5679
@billlee5679 15 днів тому
can agree no more. It's so great that you've got all my words when I was just about to text the Professor some same positive comments and attributes as token of personal thanks... My immediate impression on him is naturally simple: he is really a good teacher!!!
@jeffcrume
@jeffcrume 2 дні тому
I can’t tell you how much feedback like this means to me!
@ryancammer
@ryancammer 5 місяців тому
Excellent!
@seetsamolapo5600
@seetsamolapo5600 10 місяців тому
Hey Jeff, given the high demand for cybersecurity would you be so kind to give a roadmap of how to get into cybersecurity - the certifications etc from beginner to master. I'm definitely gonna hop on this series as the videos come out.
@jeffcrume
@jeffcrume 10 місяців тому
Hi Seetsa. Here's an attempt at that: ukposts.info/have/v-deo/bHOmjISqbYmT0Ik.html
@geekengr
@geekengr 7 місяців тому
Loved the video. SImple, but quite insightful. Please keep making videos on Cyber security.
@jeffcrume
@jeffcrume 7 місяців тому
Thanks for saying so!
@mohsenjebelli155
@mohsenjebelli155 3 місяці тому
many thanks of IBM for great information sharing. this series were fantastic too.
@jeffcrume
@jeffcrume 3 місяці тому
Many thanks to you for watching!
@mudasirmalikawan4769
@mudasirmalikawan4769 7 місяців тому
Sir. I must salute you in a standing position. I mean I don't have words to praise you. Just watched your first video and I subscribed. Now watch the second video. Your way of communicating cyber security is so simple and easy to understand that this is as it should be.
@jeffcrume
@jeffcrume 7 місяців тому
You’re very kind to say so! I love making these videos and the payoff is reading comments like yours that make the effort all worthwhile!
@aruizsilva
@aruizsilva 4 місяці тому
Great explanation, wonderful summarization, and perfect delivery. Your work here is very appreciated sir. Thank you very much.
@jeffcrume
@jeffcrume 3 місяці тому
Thanks so much for saying! And your viewing is very much appreciated as well!
@valentinussofa4135
@valentinussofa4135 5 місяців тому
Great lecture series. Thank you so much. 🙏👏👏👏
@jeffcrume
@jeffcrume 3 місяці тому
Thank you for watching!
@abuwilliams7228
@abuwilliams7228 7 місяців тому
I love ❤️❤️❤️ these Videos. Thank you so much IBM. Please keep them coming.
@jeffcrume
@jeffcrume 7 місяців тому
@abuwilliams7228 thanks so much for watching and for the great feedback!
@babakmahmoodizadeh172
@babakmahmoodizadeh172 4 місяці тому
Pretty clear explanations and examples. love it!
@jeffcrume
@jeffcrume 3 місяці тому
so glad to hear it!
@jagatkrishna1543
@jagatkrishna1543 3 місяці тому
Thanks ❤
@markfitz8315
@markfitz8315 2 місяці тому
I've watched all 10 videos - very good - lots of pointers for following up on. Thank you.
@jeffcrume
@jeffcrume 2 місяці тому
Thank you for watching!
@olubunmiboladale6293
@olubunmiboladale6293 3 місяці тому
Thank you so much for these 10-part series. I included the videos as study materials for my ISC2 Certified in Cybersecurity exam (I'm a newbie in Cybersecurity), and I'm glad to say i passed. Your explanations made the topics and concepts so easy to understand. Thank you!!!!
@jeffcrume
@jeffcrume 3 місяці тому
Wow! Congratulations on that! I’m so glad to hear that these videos helped!
@soremiolude225
@soremiolude225 Місяць тому
Same here. I'm currently listening to it while preparing for my ISC2 exam.
@samsos7210
@samsos7210 Місяць тому
Thanks for making it easy to understand the main principles of security solutions and technologies we sell to our customers.
@jeffcrume
@jeffcrume Місяць тому
You’re very welcome and thank you for watching!
@ronaldchua2210
@ronaldchua2210 Місяць тому
found your lecture very easy to follow and digest the concepts and ideas
@jeffcrume
@jeffcrume Місяць тому
I’m so glad to hear that!
@kr_international_8608
@kr_international_8608 3 місяці тому
IBM and Google are my most favourites.
@jne9479
@jne9479 3 місяці тому
Thank you for the great presentation and knowledge sharing.
@jeffcrume
@jeffcrume 3 місяці тому
Thank you for watching!
@Work_inprogress
@Work_inprogress Місяць тому
Thanks a lot for these lessons. They really make things quite clear fundamentally. Thanks a lot.
@jeffcrume
@jeffcrume Місяць тому
You are most welcome!
@kareemelfetiany2042
@kareemelfetiany2042 6 місяців тому
Thanks a lot.
@SweetyPieDiscuss
@SweetyPieDiscuss 4 місяці тому
It's been years since I found learning enjoyable and thank you sir for creating such a great video.
@jeffcrume
@jeffcrume 3 місяці тому
Your comment made my day. Thank you!
@captainwalker94
@captainwalker94 2 місяці тому
Wow! this is so amazing. You have simplified this information so well, especially for someone like me who is pursuing a career in cybersecurity. currently preparing for my ISC2 cc Certification.
@jeffcrume
@jeffcrume 2 місяці тому
I’m so glad you liked it! Best of luck on your certification pursuit!
@igsayi
@igsayi 11 місяців тому
Very good
@unchainedwarriortv
@unchainedwarriortv 7 місяців тому
Amazing job, Prof!
@jeffcrume
@jeffcrume 6 місяців тому
Thanks so much @chiedozieHez!
@fouadmouzoun4724
@fouadmouzoun4724 7 місяців тому
Thanks for sharing this nice demonstration. It is very rich in relevant information . As a beginner, it hepled me to understand good thigs.
@jeffcrume
@jeffcrume 7 місяців тому
You’re very welcome!
@karengomez3143
@karengomez3143 9 місяців тому
Ty!
@user-su2rm7jt3z
@user-su2rm7jt3z 2 місяці тому
really simply explained, I'm impressed
@jeffcrume
@jeffcrume 2 місяці тому
Thank you!
@claudiabucknor7159
@claudiabucknor7159 6 місяців тому
Million dollar knowledge, 🙏
@dewaynebranch776
@dewaynebranch776 11 місяців тому
Greetings Professor, how do see security from a monolithic archicteture as different from a hybrid cloud archicteture? How does do you see DevSecOps and zero trust as necessary cybersecurity skill set for the Enterprise needs?
@themiseducationoftheameric7407
@themiseducationoftheameric7407 2 місяці тому
Outstanding sir. Excellent video brother!
@jeffcrume
@jeffcrume 2 місяці тому
Thanks so much!
@tyrojames9937
@tyrojames9937 11 місяців тому
COOL👍🏾😎
@bantuandproud8456
@bantuandproud8456 4 місяці тому
Thanks a lot, Jeff!
@jeffcrume
@jeffcrume 3 місяці тому
My pleasure!
@galaxycleaningegypt
@galaxycleaningegypt 10 місяців тому
Would you organize the playlist of " Cybersecurity " for easy access
@sasmeetasabat5995
@sasmeetasabat5995 Місяць тому
simply superb
@jeffcrume
@jeffcrume Місяць тому
Thank you!
@MichaelAlexander1967
@MichaelAlexander1967 2 місяці тому
I wore an NC State Wolfpack tee-shirt when I was around 9, 10 and 11. I turned 18 then officially wore the Hokie tee-shirts and sweatshirts 😁 😏, but I still love my Wolfpack tee 😊. Very informative and well explained video. Thanks for posting. 👍🏼👍🏼👌🏽
@jeffcrume
@jeffcrume 2 місяці тому
Go Pack!!! 😊
@iraianbutech1350
@iraianbutech1350 Місяць тому
Great explanation
@jeffcrume
@jeffcrume Місяць тому
Thanks!
@g9udaya
@g9udaya Місяць тому
amazing content
@jeffcrume
@jeffcrume Місяць тому
Thank you!
@sachinmagdum
@sachinmagdum 3 місяці тому
Awesome content perfectly crafted! ❤ And No exams! 😂🎉
@jeffcrume
@jeffcrume 2 місяці тому
No exams for me to have to grade too! Win-win!!! 😊
@sidneyngafei8252
@sidneyngafei8252 10 місяців тому
What about zero trust? Could that be one of the principles?
@balarabetahir7141
@balarabetahir7141 29 днів тому
Thia channel is underrated
@jeffcrume
@jeffcrume 2 дні тому
Thanks for saying so!
@HeatherFaraMS
@HeatherFaraMS 9 місяців тому
How would you modify for a modern “data open by default” stance, where you want to encourage filesharing and collaboration across disciplines (only lock read on data and files internally with privacy rule)? How does read all line up with least privilege?
@jeffcrume
@jeffcrume 9 місяців тому
It all depends upon the value and sensitivity of the data. For some, just ensuring that it isn’t tampered with by making it read only is fine but for others we may need much tighter controls. More on this in the Data Security video later in the series…
@marnick322
@marnick322 9 місяців тому
thanks
@arifulislamleeton
@arifulislamleeton 8 місяців тому
Welcome
@God1293
@God1293 11 місяців тому
❤❤❤
@mountp1391
@mountp1391 3 місяці тому
very good video
@jeffcrume
@jeffcrume 2 місяці тому
Thanks!
@samraalmas
@samraalmas 7 місяців тому
hi i am a CS graduate but have a very little about cybersecurity. I want to start the career but it seems like it's a very vast field with multiple paths. Can anyone please guide me where to start. I am also planning to apply for erasmus mundus scholarship for master program in cybersecurity. What should I have to ace this scholarship?
@ABDUL_Hameed_00
@ABDUL_Hameed_00 10 місяців тому
Hi how can I start my career in cyber security Can anyone please suggest how should I start
@SteveM-io4yn
@SteveM-io4yn Місяць тому
Great information! Thank you. Is there a transcript that can be downloaded?
@jeffcrume
@jeffcrume Місяць тому
Yes, click into the description and scroll down and you will find a link to the transcript. This should be the case for all the videos we do on the channel
@s11-informationatyourservi44
@s11-informationatyourservi44 10 місяців тому
@user-zu2mi7je9d
@user-zu2mi7je9d 4 місяці тому
Thanks for this video. How do you ensure that the public key is unique to the user ? If i change my computer, how retain my private key ? How do you ensure ia cannot find the private key associated with public one, if mathematically associated ?
@jeffcrume
@jeffcrume 3 місяці тому
There are a number of ways to handle this depending on the level of security you need. The easiest is to use an encrypted cloud sync service. Another is to have the keys stored in removable hardware that is tamper resistant. In some cases, you may just decide to have different keys for different devices. All depends on the needs of the particular use case
@juergenm6107
@juergenm6107 3 місяці тому
Hi, nice vid. IMHO one principle was missing. "Secure by default"
@jeffcrume
@jeffcrume 3 місяці тому
Great point!
@jmlfa
@jmlfa Місяць тому
I am a lot more worried about AI "response" poisoning than I am about data poisoning ... Remember Schumer, Schiff and the Department of Truth?
@bobanmilisavljevic7857
@bobanmilisavljevic7857 8 місяців тому
🥳👍
@user-ym3rc7xy2d
@user-ym3rc7xy2d 3 місяці тому
Can verification by other my device be an example duty sep????i mean credit cards verification
@jeffcrume
@jeffcrume 2 місяці тому
Typically we think of SOD as involving multiple people whereas what I think you are describing is more like multi-factor authentication, if I’m understanding your comment
@margota8342
@margota8342 11 місяців тому
Do you need to know a programming language to use cyber security fully?
@jeffcrume
@jeffcrume 11 місяців тому
No. There are plenty of jobs in cybersecurity that don’t involve coding.
@dillip4572
@dillip4572 3 місяці тому
Goodjob sir. Can we use https instead of http :)
@jeffcrume
@jeffcrume 3 місяці тому
Please do!
@amitchandak1526
@amitchandak1526 2 місяці тому
Can someone help me with the tool he's using for creating this video, how is he marking and doing it in front ?
@jeffcrume
@jeffcrume 2 місяці тому
Sure, search the channel for “how we make them” and you’ll see me in a video explaining
@maZumaZungu
@maZumaZungu 9 місяців тому
🙏🙏🙏🙏🙏❤
@nicholastoo858
@nicholastoo858 Місяць тому
Tell IBM to start making laptops.
@a4ldev933
@a4ldev933 6 місяців тому
@4;10 you said,, the user is also responsible for security. I beg the difference. The user is NOT responsible for security. It is the job of the designer and implementor. For example: I'm a user who can access to my bank account via a bank portal. No one holds me responsible for security of the website.
@jeffcrume
@jeffcrume 6 місяців тому
I understand you point but would say that you as a user still bear some of the responsibility such as to pick a good password and not share it. Security is the responsibility of everyone to various degrees
@MikeHunt2565
@MikeHunt2565 6 місяців тому
Yeah dont be stupid and make simple passwords or leave all your SPII or PII accessible lol
@rickyswan8216
@rickyswan8216 5 місяців тому
The user is totally responsible for security, In a workplace environment staff must understand their responsibilities to ensure data is protected using a cyber hygiene approach. Since the human is the weakest link in the chain, the end user can be vulnerable therefore annual training should be in place for staff to understand the importance of security and what to be aware of and how they can help defend. Everyone has a part to play to defend.
@Dalai33
@Dalai33 5 місяців тому
This is the type of mindset that would get the whole org in trouble.
@YourDailyR
@YourDailyR 5 місяців тому
Are you drunk? Your bank will never pay you if they hijack your login. Don’t lock your door, the government is responsible for your security. 😂
@mikechickenman
@mikechickenman 2 місяці тому
Showing off those lefty superpowers.
@jeffcrume
@jeffcrume 2 місяці тому
Ha! If only, I could. Search in the channel for the video I did on “how we make them” and you’ll find out I’m actually not a lefty … 😊
@arifulislamleeton
@arifulislamleeton 8 місяців тому
Hi I'm Ariful Islam leeton im software developer and Students connect cyber security
@wolfhunter4jesus118
@wolfhunter4jesus118 6 місяців тому
Why can't my text book explain it like this!
@jeffcrume
@jeffcrume 6 місяців тому
I had the same reaction back in the days when I was a student. Now that I’m teaching, I’m trying to take a different approach
@jann9507
@jann9507 2 місяці тому
The video was a mish mash of best practices, tools, process, some architecture and people responsibility Disappointing
@krishnansekaran6121
@krishnansekaran6121 3 місяці тому
what an idiotic way of teaching cybersecurity. the vast majority do not understand how the OSI model works, they just rely on software to help them find out things. the damn thing is called firewall. using all these acronyms does not make this teacher and other that smart.
@pankajnegi3605
@pankajnegi3605 Місяць тому
You are too Good
@jeffcrume
@jeffcrume Місяць тому
Very kind of you!
@user-dj8oc3gl4m
@user-dj8oc3gl4m 2 місяці тому
I completed IBM's Cybersecurity Analyst course and got my certificate, I'm here to refine my knowledge before applying a CS architect job
@jeffcrume
@jeffcrume 2 місяці тому
Congratulations on completing the course and best of luck to you!
@user-kf5kb3bd4d
@user-kf5kb3bd4d 5 місяців тому
Cybersecurity Architecture: Who Are You? Identity and Access Management
31:15
Анна Трінчер - Бар за баром (Official Music Video)
02:38
Анна Трінчер
Переглядів 1,8 млн
In 10 Minutes This Room Will Explode!
10:00
MrBeast
Переглядів 60 млн
Cybersecurity Architecture: Networks
27:31
IBM Technology
Переглядів 80 тис.
You need to learn AI in 2024! (And here is your roadmap)
45:21
David Bombal
Переглядів 593 тис.
The most important AI trends in 2024
9:35
IBM Technology
Переглядів 164 тис.
FIDO Promises a Life Without Passwords
9:58
IBM Technology
Переглядів 386 тис.
Cybersecurity for Beginners | Google Cybersecurity Certificate
1:14:33
Google Career Certificates
Переглядів 3,8 млн
Cybersecurity Architecture: Application Security
16:36
IBM Technology
Переглядів 43 тис.
Cybersecurity Architecture: Endpoints Are the IT Front Door - Guard Them
14:22
Анна Трінчер - Бар за баром (Official Music Video)
02:38
Анна Трінчер
Переглядів 1,8 млн