Home
0
Home
Use Landscape to see Search/Filter
Item Types:
Field of Study:
Authors:
CPE Hours:
Keyword:
Course Details

Cybercrime and Cybersecurity (Course Id 2685)

QAS / Registry
  Add to Cart 

Author:

Jae K. Shim, Ph.D., CPA

Course Length:

Pages: 91 ||| Word Count: 47,759 ||| Review Questions: 34 ||| Final Exam Questions: 40

CPE Credits:

8.0

IRS Credits:

0

Price:

$71.95

Passing Score:

70%

Course Type:

Text
Cybercrime and Cybersecurity - CPE course for CPAs

Technical Designation:

NonTechnical

Field Of Study:

Computer Software & Applications

Approved Audience:

NASBA QAS - NASBA Registry

Key Takeaways:

This course educates participants on emerging cybersecurity challenges, attacker tactics, legal frameworks, and strategies to protect data and networks from cybercrime.

  • Covers attacker tactics and legal frameworks relevant to defending against cybercrime.
  • Explains how to implement security measures that align with established cybersecurity frameworks and federal laws.
  • Teaches how to respond to data breaches and reduce vulnerabilities created by increasing interconnectivity.
  • Worth 8.0 CPE credits in Computer Software and Applications as a self study text course on cybercrime and cybersecurity, requiring a 40 question final exam preceded by 34 review questions and a 70% passing score.

Frequently Asked Questions:

The Cybercrime and Cybersecurity course covers the key components of the MITRE ATT&CK framework.

This course identifies the NIST Cybersecurity Framework core functions.

This course recognizes the target of digital skimming and protection measures.

This course identifies DDoS attack methods and mitigation techniques.

This course is a NonTechnical, self study text course worth 8.0 CPE credits in Computer Software and Applications, requiring a 40 question final exam preceded by 34 review questions (optional), with a 70% passing score. CPEthink is approved by NASBA as a CPE sponsor and lists this course on the NASBA site as a courtesy for CPAs to search https://nasba.org.

Description:

Technological advances change how we live, work, and relate to one another. Remote presence and the interconnectivity of people, devices, and organizations open a whole new playing field of vulnerabilities and access points that cybercriminals can exploit. While the pace of technology innovation is increasing, cyberattacks are becoming more destructive globally.  Security incidents continue to rise and will continue to be a top-of-mind item for businesses, governments, and industry regulators. Cybersecurity is not just an IT responsibility. To effectively prevent attacks and build robust defenses, everyone within an organization needs to stay aware of emerging threats, technologies, and practices. This course is designed to help both individuals and organizations adopt a security-centric mindset and habits that safeguard data and networks from potential cyberattacks and theft. It is divided into four parts: 
    Part I explains how the evolution of technology has transformed society, connected people in ways never imagined, and changed the face of computer and Internet fraud. It addresses the concern of IoT adoption, the danger of the interdependent nature of critical infrastructure sectors, security challenges of cloud-based solutions, and the rise of AI-enabled cybercrime.
    Part II identifies the causes of individuals in the performance of cybercriminal behavior and threat actor profiles to help organizations understand and anticipate attacker behavior. It also introduces the MITRE ATT&CK framework, a global knowledge base of real-world adversary tactics and techniques, to help organizations prevent, detect, and respond to attacks more effectively.  Finally, it discusses how attackers prey on human emotions to achieve their goals. 
    Part III explains how cyberattacks manifest in different forms and includes security measures that protect both individuals and organizations from a wide range of malicious online activities. It explains how to recognize and avoid phishing attacks and business email compromise schemes. It also discusses security strategies for both ransomware and DDoS attacks, encompassing protection and recovery. Finally, it describes common digital skimming methods and mitigation strategies for businesses and individuals.
    Part IV highlights key federal laws that govern the nation’s cybersecurity and computer-based fraud. Industry-specific federal laws regulating the privacy and security of data are also discussed. Finally, it identifies widely recognized cybersecurity frameworks, such as the NIST Cybersecurity Framework and ISO/IEC 27001:2022 and describes how they help organizations communicate, manage, and reduce cybersecurity risk to protect their cyber environment. Real-world examples are included as well.
The enclosed case study, “Change Healthcare Cyberattack”,  demonstrated how vulnerabilities in cybersecurity practices led to a significant breach. Real-world examples are incorporated throughout courses to enhance understanding. The course also includes checklists that guide you through the recovery process after losing personal information and help businesses to make smart, sound decision of responding to a data breach, as well as cybersecurity tips for small businesses that protect the business, customers, and data from growing threats.

Usage Rank:

110909

Release:

2025

Version:

1.0

Prerequisites:

None.

Experience Level:

Overview

Additional Contents:

Complete, no additional material needed.

Additional Links:

Advance Preparation:

None.

Delivery Method:

QAS Self Study

Intended Participants:

Anyone needing Continuing Professional Education (CPE).

Revision Date:

15-Oct-2025

NASBA Course Declaration:

Participants must complete the final examination within one year of purchase and with a minimum passing grade of 70% or better to receive CPE credit unless otherwise noted on the Course History page (i.e. California Ethics must score 90% or better). After logging in click on the Course History links on your My Courses page for the Begin date and Expire date for the Final Exam.

Keywords:

Cybercrime and Cybersecurity - CPE course for CPAs

Learning Objectives:

Course Learning Objectives

Upon completion of this course, you should be able to:
    1. Recognize threats driven by emerging technologies
    2. Identify factors contributing to the rise of cybercrime
    3. Recognize the key components of the MITRE ATT&CK framework
    4. Identify common types of cyber threat actors
    5. Recognize phishing attempts and ways to avoid them
    6. Identify ransomware protection and response strategies
    7. Recognize the target of digital skimming and protection measures
    8. Identify DDoS attack methods and mitigation techniques
    9. Recognize the key federal laws that govern data privacy and security
    10. Identify the NIST Cybersecurity Framework core functions
    11. Recognize the key aspects of ISO 27001 and PCI DSS
    12. Recognize the benefit of the CIS controls

Course Contents:

Part I Technology Opportunities and Threats

Advancement and Innovation

Digital Transformation

Life in the Cyber Age

IoT Adoption and Growth

Network of Connected Devices

Security Vulnerabilities

Part I Review Questions - Section 1

Critical Infrastructure Reliance

Backbone of Modern Society

Security Risks

Cloud-Based Solutions

Delivery of Computing Services

Security Challenges

AI Phenomenon

Simulation of Human Intelligence

AI-Powered Scams

Part I Review Questions - Section 2

Part II Cybercrime Theory and Perpetration

Routine Activities Theory

Motivated Offenders

Suitable Targets

Absence of Guardians

Part II Review Questions - Section 1

Types of Threat Actors

Tactical Goals

External Threats

Insider Threats

Psychological Manipulation

Emotional Triggers

Digital Methods

Physical Methods

Part II Review Questions - Section 2

Part III Cyberattacks and Countermeasures

Phishing Campaign

Tactics

Best Practice

Business Email Compromise

Schemes

Preventive Measures


Part III Review Questions - Section 1

Ransomware Attacks

Targets and Methods

Prevention and Response

Digital Skimming

Techniques

Mitigation

DDoS Attacks

Targets and Types

Proactive Defense

Case Study: Change Healthcare Cyberattack

Incident

Impact

Lessons Learned

Part III Review Questions - Section 2

Part IV Cybersecurity Laws and Framework

Nation's Cybersecurity

Federal Information Security Management Act

Cybersecurity Information Sharing Act

IoT Cybersecurity Improvement Act

Cyber Incident Reporting for Critical Infrastructure Act

Computer-Based Fraud Deterrents

Computer Fraud and Abuse

Identity Theft

Unsolicited Messages

Part IV Review Questions - Section 1

Consumer Data Protection

Federal Government

Credit Report Industry

Financial Institutions

Healthcare Industry

State-Level Legislation

Computer Crime

Breach Notification

SEC Cybersecurity Disclosure Rule

Material Cybersecurity Incidents

Cybersecurity Risk Management, Strategy, and Governance

Cybersecurity Framework

NIST Cybersecurity Framework

ISO/IEC 27001:2022

PCI Standard

CIS Critical Security Controls

Part IV Review Questions - Section 2


Appendix A: When Information Is Lost or Exposed

Appendix B: Data Breach Response

Appendix C: 10 Cyber Security Tips for Small Business

Appendix D: Building an Insider Threat Mitigation Program

Glossary

Click to go to: Computer Software & Applications CPE Courses for CPAs
Thank you for taking one of our free courses. We would like to be able to let you know when we add free courses or have special offers and will never spam you or share your address with anyone. If you are Ok with that please reply with "Ok" or if not please reply "No Thanks". Either way enjoy your free CPE course.
  
Exam completed on .

Do you want to add the course again?