Contact Sales
Contact Sales

LDR433: Managing Human Risk

LDR433Cybersecurity Leadership
  • 3 Days (Instructor-Led)
  • 18 Hours (Self-Paced)
Course authored by:
Lance Spitzner
Lance Spitzner
LDR433: Managing Human Risk
Course authored by:
Lance Spitzner
Lance Spitzner
  • SANS Security Awareness Professional (SSAP)
  • 18 CPEs

    Apply your credits to renew your certifications

  • In-Person, Virtual or Self-Paced

    Attend a live, instructor-led class at a location near you or remotely, or train on your time over 4 months

  • Beginner Level

    Course content applicable to people with limited or no cyber security experience

  • 6 Hands-On Lab(s)

    Apply what you learn with hands-on exercises and labs

This intensive three-day course prepares you to build a mature awareness program, providing you with the roadmap, skills, and lessons learned on how to effectively manage and measure your organization’s human risk.

Course Overview

LDR433 provides security professionals with a structured roadmap to build, manage, and measure human risk by changing and securing their workforce's behaviors. The course offers a step-by-step strategy for engaging and securing your workforce, including six interactive team labs and a Digital Download Package. Students will learn how to assess and prioritize top human risks and the behaviors that manage those risks, how to engage and train their workforce, how to build a strong security culture, and how to measure the impact of these changes. This is the only SANS short course that provides the industry-recognized SANS Security Awareness Professional (SSAP) credential. The course content draws from lessons learned across hundreds of global programs, offering both instructor guidance and extensive peer interaction.

What You'll Learn

  • Benchmark and advance your program's maturity level
  • Identify and prioritize human risks
  • Understand the sciences behind adult learning theory, cognitive biases, and behavior change
  • Gain actionable strategies to engage and change security behaviors
  • Employ techniques to engage and build credibility with leadership and your security team
  • Implement approaches to measure and communicate your program's value
  • Leverage AI to accelerate and amplify your impact

Business Takeaways

  • Align security awareness with strategic security priorities
  • Identify and manage your organization's top human risks
  • Integrate human risk management with broader risk management efforts
  • Build sustainable programs that foster a strong security culture
  • Demonstrate program value to leadership in business terms
  • Implement effective learning and behavioral change models
  • Leverage AI to maximize program impact and efficiency

Course Syllabus

Explore the course syllabus below to view the full range of topics covered in LDR433: Managing Human Risk. .

Section 1Fundamentals and Identifying / Prioritizing Human Risk

Section 1 covers the fundamentals of human risk management, beginning with benchmarking your program's maturity and providing a roadmap for improvement. It addresses critical foundations including leadership support, program charter, and strategic partnerships, then covers risk management principles and how to identify and prioritize your top human risks.

Topics covered

  • Security Awareness Maturity Model stages
  • Risk management fundamentals
  • Cyber Threat Intelligence and attacker methods
  • Gaining leadership support and developing strategic partnerships
  • Human risk assessments and prioritization, and role-based risks

Labs

  • Benchmark your program maturity against peers
  • Case Study: Identify and prioritize top human risks

Section 2Identifying and Changing Behavior

Section 2 begins with identifying the key behaviors that most effectively manage your greatest human risks. We then cover organization level behavior change, to include engagement fundamentals motivation and training. You will develop an overall strategy for your program, to include how to adapt your program across demographics, cultures, and regions, then concluding with operationalizing specific training methods and modalities.

Topics covered

  • Behavior identification and prioritization
  • Engagement strategies using marketing models
  • Training approaches using ADDIE framework
  • Operationalize different training methods and modalities, to include how to leverage AI

Labs

  • Identify and prioritize key behaviors
  • Apply the AIDA Model to promote MFA adoption

Section 3Security Culture and Measuring Change

Section 3 focuses on organizational culture, security culture and embedding security in your organization's overall culture. We then cover metrics, starting with strategic applications, then exploring how to measure behavior and culture change. Students will learn to communicate program value to leadership and finish the class by creating an actionable implementation plan.

Topics covered

  • Career development for awareness professionals
  • Define and align with organizational culture
  • Security culture indicators and development
  • Incentive programs for sustainable behavior, and ambassador program implementation
  • Metrics and create a strategic metrics framework and a final action plan

Labs

  • Analyze and align with organizational culture
  • Create a comprehensive action plan

Things You Need To Know

Relevant Job Roles

Cybersecurity Curriculum Development (OPM 711)

NICE: Oversight and Governance

Responsible for developing, planning, coordinating, and evaluating cybersecurity awareness, training, or education content, methods, and techniques based on instructional needs and requirements.

Explore learning path

Security Manager Training, Salary, and Career Path

Cybersecurity Leadership

Daily focus is on the leadership of technical teams. Includes titles such as Manager, Information Security Specialist, and Program/Project Leader.

Explore learning path

Course Schedule & Pricing

Looking for Group Purchase Options?Contact Us
Showing 8 of 8

Benefits of Learning with SANS

Bryan Simon: Teacher Standing Next to Smartboard and Explaining Concept

Get feedback from the world’s best cybersecurity experts and instructors

OnDemand Mobile App

Choose how you want to learn - online, on demand, or at our live in-person training events

Close Up of Woman Holding a Pen and Documents

Get access to our range of industry-leading courses and resources