Build cybersecurity governance skills without a coding background. Learn how to assess risk, evaluate controls, identify compliance gaps, and create a NIST Cybersecurity Framework gap analysis you can discuss with employers.
Course Snapshot
| Format | Tuition | Access Begins | Schedule | Focus |
|---|---|---|---|---|
| On-Demand Optional Mentored Office Hour Online Capstone Presentation |
$2,190 | August 17, 2026 | August 17 - October 16, 2026 | Cybersecurity risk, controls, compliance, NIST CSF gap analysis, and risk reporting |
Course Overview
Infosec GRC Analyst Training prepares learners for cybersecurity governance, risk, and compliance roles. You will learn how professionals assess controls, evaluate compliance gaps, and turn findings into business recommendations.
The course focuses on the governance side of cybersecurity. You do not need coding experience to begin. You will practice the language, frameworks, and analysis skills that help organizations understand and reduce risk.
Each participant completes a NIST Cybersecurity Framework v2 gap assessment and produces a professional cybersecurity risk analysis report.
Skills You'll Gain
By the end of this course, you will be able to:
- Conduct structured cybersecurity risk assessments.
- Evaluate organizational security controls.
- Identify compliance gaps and recommend practical remediation steps.
- Communicate cybersecurity risk to technical and non-technical stakeholders.
- Differentiate among information security frameworks, standards, and regulations.
- Use common information security terminology to explain risk.
- Conduct a NIST Cybersecurity Framework v2 gap assessment.
Tools and Details
Tools You'll Use
- NIST Cybersecurity Framework v2.
- Gap assessment process.
- Cybersecurity risk assessment report structure.
- Control evaluation methods.
- Governance, risk, and compliance terminology.
- AI and Zero Trust Architecture concepts.
Topics You'll Cover
- Information security fundamentals.
- CIA triad: confidentiality, integrity, and availability.
- Information security frameworks, standards, and regulations.
- Security controls and compliance gaps.
- Cybersecurity risk communication.
- Roles and responsibilities of information security stakeholders.
- NIST Cybersecurity Framework v2 gap assessment.
What You'll Walk Away With
- A completed NIST Cybersecurity Framework gap analysis.
- A professional cybersecurity risk analysis report.
- Documented evidence of applied governance work.
- Language and artifacts you can present in interviews.
- Stronger confidence explaining cybersecurity risk in business terms.
Who Should Enroll
- Professionals interested in cybersecurity governance, risk, and compliance.
- Career changers exploring cybersecurity roles that do not require coding.
- Working professionals who want applied, employer-aligned cybersecurity training.
- Learners who want to assess controls, document findings, and communicate risk.
The USF Difference
No coding background required
The course teaches cybersecurity context and governance responsibilities without requiring programming experience.
Applied GRC portfolio work
Learners complete a NIST CSF gap analysis and a professional risk assessment report.
Business-focused cybersecurity training
The course helps learners translate technical findings into recommendations that leaders can use.
Participant and Client Feedback

Employees at companies like these have trusted USF Corporate Training & Professional Education with their skills training and career advancement.
Learn more about training for your team, organization, or company


