| |
The following topics are presented during our CISSP Program:
Security Management Practices
Security management entails the identification of an organization's information assets and the development, documentation, and implementation of policies, standards, procedures, and guidelines.
Management tools such as data classification and risk assessment/analysis are used to identify threats, classify assets, and to rate system vulnerabilities so that effective controls can be implemented.
Security Architecture and Models
The Security Architecture and Models domain contains the concepts, principles, structures, and standards used to design, monitor, and secure operating systems, equipment, networks, applications and those controls used to enforce various levels of availability, integrity, and confidentiality.
Access Control Systems and Methodology
Access controls are a collection of mechanisms that work together to create a security architecture to protect the assets of the information system.
Application Development Security
This domain addresses the important security concepts that apply to application software development. It outlines the environment where software is designed and developed and explains the critical role software plays in providing information system security.
Operations Security
Operations Security is used to identify the controls over hardware, media, and the operators and administrators with access privileges to any of these resources. Audit and monitoring are the mechanisms, tools, and facilities that permit the identification of security events and subsequent actions to identify the key elements and report the pertinent information to the appropriate individual, group, or process.
Physical Security
The physical security domain provides protection techniques for the entire facility, from the outside perimeter to the inside office space, including all of the information system resources.
Cryptography
The cryptography domain addresses the principles, means, and methods of disguising information to ensure its integrity, confidentiality and authenticity.
Telecommunications, Network, and Internet Security
The telecommunications, network, and Internet security domain discusses the:
- Network Structures
- Transmission methods
- Transport formats
- Security measures used to provide availability, integrity, and confidentiality
- Authentication for transmissions over private and public communications networks and media.
Business Continuity Planning
The Business Continuity Plan (BCP) domain addresses the preservation and recovery of business operations in the event of outages.
Law, Investigations, and Ethics
The Law, Investigations, and Ethics domain addresses:
- Computer crime laws and regulations
- The measures and technologies used to investigate computer crime incidents
The CISSP Certification examination consists of 250 multiple-choice questions. Candidates have up to 6 hours to complete the examination. Ten CISSP information systems security test domains are covered in the examination pertaining to the Common Body of Knowledge:
- Access Control Systems & Methodology
- Applications & Systems Development
- Business Continuity Planning
- Cryptography
- Law, Investigation & Ethics
- Operations Security
- Physical Security
- Security Architecture & Models
- Security Management Practices
- Telecommunications, Network & Internet Security
Our award-winning seven-day CISSP?? Training Camp??? is the most effective, efficient way for information security professionals to prepare and pass the rigorous six-hour Certified Information Systems Security Professional [CISSP??] examination.
This Camp has an aggressive educational schedule that thoroughly covers all essential elements necessary to become a Certified Information Systems Security Professional [CISSP??].
| Day(s)* |
Domain Description |
?? |
Domain Title |
| 1,6 |
Security management entails the identification of an organization's information assets and the development, documentation, and implementation of policies, standards, procedures, and guidelines.
Management tools such as data classification and risk assessment/analysis are used to identify threats, classify assets, and to rate system vulnerabilities so that effective controls can be implemented. ?? |
?? |
Information Security and Risk Management |
| 1,6 |
The security architecture and design domain contains the concepts, principles, structures, and standards used to design, monitor, and secure operating systems, equipment, networks, applications and those controls used to enforce various levels of availability, integrity, and confidentiality. ?? |
?? |
Security Architecture and Design |
| 2,6 |
Access controls are a collection of mechanisms that work together to create a security architecture to protect the assets of the information system. ?? |
?? |
Access Control |
| 2,6 |
This domain addresses the important security concepts that apply to application software development. It outlines the environment where software is designed and developed and explains the critical role software plays in providing information system security. ?? |
?? |
Application Security |
| 3,6 |
Operations Security is used to identify the controls over hardware, media, and the operators and administrators with access privileges to any of these resources. Audit and monitoring are the mechanisms, tools, and facilities that permit the identification of security events and subsequent actions to identify the key elements and report the pertinent information to the appropriate individual, group, or process. ?? |
?? |
Operations Security |
| 3,6 |
The physical security domain provides protection techniques for the entire facility, from the outside perimeter to the inside office space, including all of the information system resources. ?? |
?? |
Physical (Environmental) Security |
| 4,6 |
The cryptography domain addresses the principles, means, and methods of disguising information to ensure its integrity, confidentiality and authenticity. ?? |
?? |
Cryptography |
| 4,6 |
The telecommunications and network security domain discusses the:
- Network Structures
- Transmission methods
- Transport formats
- Security measures used to provide availability, integrity, and confidentiality
- Authentication for transmissions over private and public communications networks and media.
|
?? |
Telecommunications and??Network Security |
| 5,6 |
The business continuity and disaster recovery planning domain addresses the preservation and recovery of business operations in the event of outages. ?? |
?? |
Business Continuity and Disaster Recovery Planning |
| 5,6 |
The legal, regulations, compliance and investigations??domain addresses:
- Computer crime laws and regulations
- The measures and technologies used to investigate computer crime incidents
|
?? |
Legal, Regulations, Compliance and??Investigations |
| 7 |
CISSP Examination Delivery At Training Camp Facility |
?? |
?? |
Course Materials: Students attending this program will receive a robust set of course materials that cater to each of the three primary individual learning-intake styles (auditory, visual, and kinesthetic-tactual) - critical for a successful accelerated learning experience.
In addition to the official (ISC)2 courseware, slides, and accelerated Training Camp review manual, this program includes the official (ISC)2 practice examination - which boasts 100 retired exam questions to familiarize students with the examination makeup.
|
The CISSP Certification examination consists of 250 multiple-choice questions. Candidates have up to 6 hours to complete the examination. Ten CISSP information systems security test domains are covered in the examination pertaining to the Common Body of Knowledge:
- Access Control.
- Application Security.
- Business Continuity and Disaster Recovery Planning.
- Cryptography.
- Legal, Regulations, Compliance and Investigations.
- Operations Security.
- Physical (Environmental) Security.
- Security Architecture and Design.
- Information Security and Risk Management.
- Telecommunications and??Network Security.
Maintenance Requirements Upon successfully passing your CISSP Certification examination, you will receive your certificate and ID card. You are also eligible to be listed in the CISSP Directory, can elect to participate in the Speakers' Bureau, and you can serve on (ISC)2 committees and participate in annual elections.
Recertification is also required every 3 years, with on-going requirements for maintaining your credentials in good standing. This is primarily accomplished through continuing professional education [CPE] and the earning of 120 CPE credits every three years. More on qualifying for credits will be available upon certification. | |
|