Customizable

Cybersecurity Evaluation Tool (CSET®) Training

Format
Course
Location type
Virtual/Online

Description

The Cyber Security Evaluation Tool (CSET®) provides a systematic, disciplined, and repeatable approach for evaluating an organization’s security posture. This training provides an overview of CSET® helping users navigate and utilize key features to successfully perform assessments.

You will learn how to: 

  • Identify the steps to download and install CSET®.
  • Recognize the function of the top CSET® Navigation Bar.
  • Recognize the basic layout and assessments found within the CSET® "New Assessment" and "My Assessment" tabs.
  • Identify steps to create an assessment in CSET®.
  • Identify the steps to generate and export a report in CSET®.

Note that completion of this course does NOT authorize participants to perform assessments on behalf of CISA.

System Requirements

The CSET® Assessment Training is a web-based and self-paced training. Speakers or headphones are recommended to use for videos shown throughout the course (closed captioning provided). High-speed Internet is required.

The Cyber Security Evaluation Tool (CSET®) is required for course exercises. You can download CSET® at https://github.com/cisagov/cset*Note: CISA and DHS users can download CSET® from the DHS Company Portal. 

It is recommended users meet the minimum system hardware and software requirements prior to installing CSET®. This includes:

  • Pentium dual core 2.2 GHz processor (Intel x86 compatible)
  • 6 GB free disk space
  • 4 GB of RAM
  • Microsoft Windows 10 or higher
  • Microsoft .NET Core 5.0 Runtime (included in CSET® installation)
  • SQL Server 2019 Express LocalDB (included in CSET® installation)

Note: For all platforms, it is recommended the user upgrade to the latest Windows Service Pack and install critical updates available from the Windows Update website to ensure the best compatibility and security.

 

Assessment Tool Cyber Security Evaluation Tool (CSET®) Training
Purpose The Cyber Security Evaluation Tool (CSET®) provides a systematic, disciplined, and repeatable approach for evaluating an organization’s security posture. CSET® includes over 50 assessments, with more being added each year. 
Objectives
  • CSET® is a free software tool that guides users through a step-by-step process to collect facility-specific information addressing topics such as hardware, software, administrative policies, and user obligations.
  • It then compares that information to relevant security standards and regulations, assesses overall compliance, and provides appropriate recommendations for improving cybersecurity posture. The tool pulls its recommendations from a collection of the best available cybersecurity standards, guidelines, and practices. Where appropriate, recommendations are linked to a set of actions that can be applied to enhance cybersecurity controls.
  • CSET provides the following:
    • A framework for analyzing cybersecurity vulnerabilities associated with an organization’s overall industrial control system (ICS) and information technology (IT) architecture.
    • A consistent and technically sound methodology to identify, analyze, and communicate to security professionals the various vulnerabilities and consequences that may be exploited by cyber means.
    • The means for the user to document a process for identifying cybersecurity vulnerabilities.
    • Suggested methods to evaluate options for improvement based on existing standards and recommended practices.
Course Length Two hours 
Course Mode Virtual/Online
Course Agenda

Learning Objective (LO)

  • LO1: Identify the steps to download and install CSET®.
  • LO2: Recognize the function of the top CSET® Navigation Bar.
  • LO3: Recognize the basic layout and assessments found within the CSET® "New Assessment" and "My Assessment" tabs.
  • LO4: Identify steps to create an assessment in CSET®.
  • LO5: Identify the steps to generate and export a report in CSET®.

 

Contact

If you encounter any issues, please contact aestraining@mail.cisa.dhs.gov for assistance.