NMI Senior Instructors have at least five years of professional experience in security, governance, risk management, compliance ("SGRC") as well as information technology and softwarea engineering. Each NMI Senior Instructor also has one or more industry-standard certifications.

What is SGRC?

SGRC is an abbreviation for Security, Governance, Risk Management, and Compliance. These four disciplines taken together are essential for the survival and effective operation of any business in the Internet world.

Quiz

Take the NMI LLC SGRC Quiz and find your Martial Art of SGRC style!

Guerilla Security

Download a portable document format (PDF) copy of Andrew T. Robinson's classic 1999 introduction to information security, Guerilla Securityr

NMI founder Andrew T. Robinson combines over 20 years of SGRC expertise with over a decade of martials arts experince into The Martial Art of Security, Governance, Risk Management, and Compliance (TMA/SGRC). TMA/SGRC provides the most extensive and flexible SGRC curriculum in the industry.

SGRC Situational Awareness & Self-Defense Training

  • TMA/SGRC applies the principles of martial arts training (constant improvement through successive approximation) to develop security, governance, risk management, and compliance awareness and skills. These skills lead to increased understanding, safety, and soundness in a potential hostile electronic world.

  • TMA/SGRC offers over forty (40) courses that may combined and targeted for your specific SGRC needs and requirements.

  • TMA/SGRC is designed to be customized for your organization's unique security, governance, risk management, compliance, information technology, and business environment. This includes customization for your specific SGRC program, and your legal and regulatory enviornment.

  • All courses are taught by NMI Senior Instructors with at least five years of experience with the course material and one or more industry-standard certifications.

SGRC Awareness Quiz

For thousands of years, martial artists have studied animals in order to refine their techniques. Following in this tradition, Andrew T. Robinson has created the SGRC Quiz. Find out which of the five SGRC Animals most typifies your own behavior and attitudes regarding SGRC.

Curriculum

The following table lists TMA/SGRC course titles. Consistent with the martial art analogy, these courses are presented at multiple levels reflecting the current and desired skill levels of individuals taking the courses. Existing courses may be combined into targeted training programs that address your specific needs, and courses specifically designed for your needs may be adpated from the existing courses.

Professional Certification Preparation

PCP-301 CISSP Basic Training
PCP-502 CISSP Examination Review
PCP-303 CISA Basic Training

Basic Security & SGRC Awareness

BSA-104 Safe Surfing & Information Security Principles for Users
BSA-205 User Rights and Responsibilities in Regulated Industries
BSA-106 Working with Your SGRC Team (End Users)
BSA-207 Working with Your SGRC Team (System Managers)

SGRC Management Skills

SMS-208 Principles of SGRC
SMS-209 SGRC Standards and Practices
SMS-310 The SGRC Life Cycle
SMS-211 Developing an SGRC Program
SMS-212 Business Impact Assessment & Business Continuity Planning
SMS-213 Principles of Effective Documentation

Technical Security Skills

TSS-214 Basic Networking
TSS-315 Advanced Networking
TSS-316 Operating Systems Architecture

Building Secure Information Systems

BSI-317 Designing Secure Information Systems
BSI-318 Host Security (Hardening)
BSI-319 Hardening Windows Systems
BSI-320 Hardening Unix Systems
BSI-521 Hardening Applications
BSI-222 Encryption
BSI-123 Defensive Technologies
BSI-224 Identification & Authentication Mechanisms
BSI-225 Authorization Mechanisms
BSI-326 Firewall Technologies & Implementation
BSI-327 Cisco PIX Configuration & Management
BSI-328 Intrusion Detection & Prevention Systems
BSI-229 Virtual Private Networks

Assessing Security & Risk

ASR-230 Information Security & Risk Assessment Strategies
ASR-331 Documenting Security Assessments
ASR-332 Vulnerability Analysis & Penetration Testing
ASR-333 Intelligence Gathering Tools & Techniques
ASR-434 Vulnerabilities & Exploits
ASR-535 Exploiting Vulnerabilities in Windows Systems
ASR-536 Exploiting Vulnerabilities in Unix Systems
ASR-537 Exploiting Vulnerabilities in Web Applications
ASR-238 Malicious Software
ASR-439 Wireless Network Analysis (Wardriving)
ASR-540 Social Engineering

Law, Ethics & Investigation

LEI-241 Ethical Standards for SGRC Professionals
LEI-242 Ethical Scenarios & Role Playing
LEI-242 Privacy
LEI-244 SGRC Laws & Regulations
LEI-345 Defending Against Computer Crimes
LEI-446 Investigating Computer Crime

For more information, please contact NMI.


The Martial Art of Information Security (TMA/IS) and The Martial Art of Security, Governance, Risk Management, and Compliance (TMA/SGRC) are trademarks of NMI LLC.