Microsoft Security-101: Open-Source curriculum
github.com
github.com
If you’re looking for a genuinely awesome introduction to the topic I’d recommend this lecture series https://youtube.com/@securityengineering1350?feature=shared
Which accompanies this book https://www.cl.cam.ac.uk/~rja14/book.html
This book is the one I always recommended for someone getting started in security.
Non technical management.
If you have basic knowledge on security and topics listed there - it is waste of time. If not then not.
Basic cybersecurity concepts (CIA triad, risks, threats, etc.)
Understanding security controls and their forms
Zero trust and its importance in modern cybersecurity
Key concepts and themes across identity, networking, security operations, infrastructure, and data security
Examples of tools for implementing security controls.
For explanation, see:
https://news.ycombinator.com/item?id=39572941
For big companies like Microsoft it is normal to have both some employees who may be security experts and also thousands of others who not only are ignorant about security but they also do not seek the advice of those who may be more knowledgeable.
So without other information, the fact that some document about security comes from Microsoft cannot be used to guess anything about whether it is valuable or not.
https://www.theverge.com/2024/1/26/24051708/microsoft-hack-r...
However, I don’t think I ever heard of Microsoft engaged in espionage against the US. Elaborate?