Microsoft

Risk and Security Strategy

Ce cours n'est pas disponible en Français (France)

Nous sommes actuellement en train de le traduire dans plus de langues.
Microsoft

Risk and Security Strategy

 Microsoft

Instructeur : Microsoft

Inclus avec Coursera PlusEn savoir plus

Obtenez un aperçu d'un sujet et apprenez les principes fondamentaux.
niveau Intermédiaire

Expérience recommandée

1 semaine à compléter
à 10 heures par semaine
Planning flexible
Apprenez à votre propre rythme
Obtenez un aperçu d'un sujet et apprenez les principes fondamentaux.
niveau Intermédiaire

Expérience recommandée

1 semaine à compléter
à 10 heures par semaine
Planning flexible
Apprenez à votre propre rythme

Ce que vous apprendrez

  • Apply the NIST AI RMF to classify and populate a risk register with data, model, and usage risks.

  • Analyze likelihood-impact scores to prioritize risks and evaluate residual risk after control deployment.

  • Apply FAIR methodology to quantify monetary exposure and analyze cyber-insurance gaps.

  • Apply STRIDE threat modeling to AI inference endpoints and evaluate alignment of the AI security roadmap.

Détails à connaître

Certificat partageable

Ajouter à votre profil LinkedIn

Enseigné en Anglais

Découvrez comment les employés des entreprises prestigieuses maîtrisent des compétences recherchées

 logos de Petrobras, TATA, Danone, Capgemini, P&G et L'Oreal

Élaborez votre expertise en Security

Ce cours fait partie de la Certificat Professionnel Microsoft Enterprise AI Governance, Ethics & Security
Lorsque vous vous inscrivez à ce cours, vous êtes également inscrit(e) à ce Certificat Professionnel.
  • Apprenez de nouveaux concepts auprès d'experts du secteur
  • Acquérez une compréhension de base d'un sujet ou d'un outil
  • Développez des compétences professionnelles avec des projets pratiques
  • Obtenez un certificat professionnel partageable auprès de Microsoft

Il y a 12 modules dans ce cours

This module introduces the NIST AI RMF (National Institute of Standards and Technology Artificial Intelligence Risk Management Framework) and its four functions, a practical working taxonomy (data, model, usage) for fast risk triage, and the crosswalk that maps each working category to its authoritative NIST AI 600-1 category. Learners build the conceptual foundation needed to recognize and classify AI risks before populating a register in the next module.

Inclus

3 vidéos1 lecture1 devoir

This module moves from classification to artifact production. Learners populate an AI risk register for a voice-bot project, assigning categories, owners, and initial scores, and recording the NIST AI 600-1 mapping for each entry, producing a governance artifact (referred to in this course as a portfolio-ready artifact—this is course terminology, not an official NIST designation) aligned to the NIST AI RMF.

Inclus

2 vidéos1 lecture3 devoirs

This module turns a populated risk register into a sequenced treatment plan. Learners analyze Likelihood–Impact scores, factor in qualitative considerations beyond raw scores, and identify the top five AI risks that warrant mitigation workshops. The "top five" is the output of this analysis, not a predefined list.

Inclus

3 vidéos1 lecture2 devoirs

This module addresses the "what now" question after mitigation. Learners rescore risks post-control, evaluate residual exposure against organizational tolerance, and draft a recommendation memo defending acceptance for low-residual items and further treatment for the rest.

Inclus

1 vidéo1 lecture3 devoirs

This module gives learners a working command of FAIR methodology—the variables, the math, and the calculator workflow—to estimate annualized loss expectancy for an AI data-leak scenario and add the figure to the risk register.

Inclus

3 vidéos1 lecture2 devoirs

This module turns cyber-insurance policy wording into a control checklist that AI governance leaders can defend. Learners compare a sample cyber-insurance policy against current AI controls, identify the unmet requirements that could trigger exclusions or void coverage, and produce a gap briefing for the security manager.

Inclus

2 vidéos2 lectures3 devoirs

This module builds the conceptual foundation for AI endpoint threat modeling. Learners map the six STRIDE threat categories to AI inference endpoint attack surfaces—from prompt injection at the API edge to model extraction at the inference layer—building the analytical command they'll need to produce mitigations and an ADR (an Architecture Decision Record, a structured document that captures a significant architectural decision).

Inclus

3 vidéos1 lecture1 devoir

This module turns identified threats into engineered mitigations and a defensible Architecture Decision Record. Learners pair threats with mitigation choices, weigh trade-offs (cost, performance, completeness), and produce a complete ADR (An Architecture Decision Record is a structured document that captures a significant architectural decision) ready for upload to an architecture repository.

Inclus

2 vidéos1 lecture3 devoirs

This module builds the analytical foundation for roadmap-to-strategy alignment work. Learners study corporate security strategy structure and AI security roadmap structure, then use a provided alignment matrix to map each AI security initiative to one or more strategy pillars, surfacing both misaligned initiatives and coverage gaps.

Inclus

3 vidéos1 lecture2 devoirs

This module moves from alignment analysis to executive-facing recommendation. Learners study course correction options for misaligned initiatives and coverage gaps, then present and defend a recommendation to a CISO-level audience in a Coach Role Play, practicing the upward communication skill that determines whether course corrections actually happen.

Inclus

3 vidéos1 lecture2 devoirs

Lead on GenAI use in AI governance work rather than being surprised by it. This module gives CB3 governance professionals a working command of how generative AI tools accelerate risk register population, STRIDE threat enumeration, and alignment analysis, and the verification patterns that protect against hallucinations, confidentiality leakage, and audit trail gaps. You'll produce a portfolio-ready GenAI-assisted analysis with an annotated evaluation that demonstrates the human-in-the-loop oversight that makes GenAI use defensible at the governance level. Cross-platform applicability: This module teaches GenAI governance using Microsoft's enterprise AI stack (Azure OpenAI, Microsoft Purview, Azure AI Content Safety) because that is the credential's anchor ecosystem and where the enterprise data protection conversation lands most clearly for CB3 learners. Learners working in non-Microsoft environments can map the same concepts to equivalent enterprise stacks—AWS Bedrock + Macie + Guardrails, GCP Vertex AI + Sensitive Data Protection + Model Armor, or comparable—without losing the underlying skill. The Microsoft anchor is the canonical example; the governance pattern transfers.

Inclus

2 vidéos2 lectures2 devoirs

Integrate everything you've built into a single executive-facing AI Risk and Security Strategy Report. You'll produce a portfolio-ready report for a new GenAI initiative that combines a populated risk register, prioritization analysis, a FAIR-quantified exposure scenario, a STRIDE threat model with ADR-documented mitigations, and a roadmap alignment commentary, the kind of integrated deliverable a CB3 AI governance leader is expected to produce ahead of an executive go/no-go decision.

Inclus

1 vidéo2 lectures1 devoir

Obtenez un certificat professionnel

Ajoutez ce titre à votre profil LinkedIn, à votre curriculum vitae ou à votre CV. Partagez-le sur les médias sociaux et dans votre évaluation des performances.

Instructeur

 Microsoft
408 Cours2 743 738 apprenants

Offert par

Microsoft

Pour quelles raisons les étudiants sur Coursera nous choisissent-ils pour leur carrière ?

Felipe M.

Étudiant(e) depuis 2018
’Pouvoir suivre des cours à mon rythme à été une expérience extraordinaire. Je peux apprendre chaque fois que mon emploi du temps me le permet et en fonction de mon humeur.’

Jennifer J.

Étudiant(e) depuis 2020
’J'ai directement appliqué les concepts et les compétences que j'ai appris de mes cours à un nouveau projet passionnant au travail.’

Larry W.

Étudiant(e) depuis 2021
’Lorsque j'ai besoin de cours sur des sujets que mon université ne propose pas, Coursera est l'un des meilleurs endroits où se rendre.’

Chaitanya A.

’Apprendre, ce n'est pas seulement s'améliorer dans son travail : c'est bien plus que cela. Coursera me permet d'apprendre sans limites.’

Foire Aux Questions

¹ Certains travaux de ce cours sont notés par l'IA. Pour ces travaux, vos Données internes seront utilisées conformément à Notification de confidentialité de Coursera.