Introduction to the CERT Resilience Management Model

This three-day course introduces a model-based process improvement approach to managing operational resilience using the CERT® Resilience Management Model (CERT-RMM) v1.1.

CERT-RMM is a maturity model that promotes the convergence of security, business continuity, and IT operations activities to help organizations actively direct, control, and manage operational resilience and risk. By improving operational resilience processes (such as vulnerability analysis, incident management, and service continuity), an organization can use the model to improve and sustain the resilience of mission-critical assets and services. Because organizations can't plan for every disruption, the maturity model feature of CERT-RMM can be used to measure and improve the consistency and predictability of performance under times of stress. As a process improvement model, CERT-RMM also can be used by organizations to chart a structured improvement path by setting improvement targets, measuring current capabilities, and developing improvement plans-all focused on making mission-critical assets and services more resilient. And CERT-RMM is designed to make more efficient and effective use of domain-specific practices that an organization already uses today rather than replace them.

The course is composed of lectures and class exercises with ample opportunity for participant questions and discussions. After attending the course, participants will understand the fundamental concepts of operational resilience and operational resilience management, have a working knowledge of CERT-RMM process areas, and be able to begin process improvement efforts in their organization. Using CERT-RMM as a guide, participants will also be able to evaluate their current security, business continuity, and IT operations practices and make effective decisions about which practices are working and which need to be replaced.

Who should attend?

  • Security and business continuity professionals
  • Process improvement professionals, particularly those looking to extend process improvement approaches into the operations phase of the lifecycle
  • Enterprise and operational risk management professionals
  • Anyone interested in applying a maturity model approach to managing operational resilience

Topics

  • Introduction to operational risk, resilience, and resilience management
  • Introduction to model-based process improvement
  • Overview of CERT-RMM model components
  • High-level review of the CERT-RMM process areas
  • Adopting, initiating, and sponsoring a process improvement approach

Objectives

Successful completion of this course will enable participants to

  • Understand the challenges of managing operational resilience
  • Have a working knowledge of key operational resilience, operational risk, and resilience management concepts and their relationships
  • Understand the CERT-RMM model structure and how to use it
  • Apply a process improvement and maturity model approach to managing operational resilience
  • Have a working knowledge of the 26 CERT-RMM process areas
  • Understand how CERT-RMM is used to appraise an organization's capability for managing operational resilience
  • Begin planning for a process improvement effort in their organization

Prerequisites

There are no prerequisites for this course.

Materials

Participants will receive a course notebook containing the course materials.

  • Course notebook containing the course slides
  • Various supplementary handouts and exercises
  • Copy of Addison-Wesley publication CERT® Resilience Management Model, which contains V1.1 of the model as well as additional supporting material
  • CD containing the latest version of the CERT-RMM Code of Practice Crosswalk and PDF copies of the course slides and exercises

Schedule

This three-day course meets at the following times:
Days 1-3: 8:30 a.m.-4:30 p.m.

Course Details

Course Fees [USD]

U.S. Industry: $2500

U.S. Government/Academic: $2000

International: $3750

Please select a course offering then click REGISTER.
 

Dates

November 18 - 20, 2014 (SEI, Arlington, VA)
April 21 - 23, 2015 (SEI, Arlington, VA)

 
This course may be offered by special arrangement at customer sites.

For More Information

E-mail: course-info@sei.cmu.edu
Phone: 412-268-7622


Help us improve

Visitor feedback helps us continually improve our site.

Please tell us what you
think with this short
(< 5 minute) survey.