This course is designed for experienced IT security professionals, auditors, consultants, investigators, and instructors, including network and security analysts, engineers, network administrators, information security specialists, and risk management professionals pursuing CISSP training and certification. CISSP certification validates your expertise and enhances your professional credibility, opening pathways for career advancement within cybersecurity or transitions to related specializations.
Through a comprehensive study of all 10 CISSP Common Body of Knowledge (CBK) domains, you will build the knowledge base required to successfully complete the rigorous CISSP certification examination. The exam is intentionally challenging; even candidates with extensive security experience should plan for additional study following the course. Because the domains address diverse security topics, most participants will need to develop expertise in several unfamiliar areas. Additional CISSP certification requirements include a minimum of five years of direct professional experience within one or more CBK security domains, or alternatively, a college degree combined with four years of professional experience.
Prerequisites:
It is strongly recommended that participants possess Network+ or Security+ certification, or equivalent professional experience, prior to beginning CISSP training. Additional beneficial certifications or equivalent industry experience include MCSE, MCTS, MCITP, SCNP, CCNP, RHCE, LCE, CNE, SSCP, GIAC, CISA, or CISM.
Course Objectives:
Upon successful completion of this course, participants will be able to:
- Analyze information systems access control mechanisms and implementation
- Analyze security architecture and design frameworks
- Analyze network security systems and telecommunications infrastructure
- Analyze information security management goals and practices
- Analyze information security classification systems and program development
- Analyze risk management methodologies and ethical codes of conduct
- Analyze software development security practices
- Analyze cryptography characteristics, algorithms, and implementation
- Analyze physical security measures and facility controls
- Analyze operations security practices and controls
- Apply Business Continuity Planning and Disaster Recovery strategies
- Identify legal issues, regulations, compliance standards, and investigation practices related to information systems security
Comprehensive Course Content:
Lesson 1: Information Systems Access Control
- Topic 1A: Data Access Principles
- Topic 1B: System Access and Authentication
- Topic 1C: Attacks and Penetration Tests
Lesson 2: Security Architecture and Design
- Topic 2A: Security Architecture Frameworks and Security Models
- Topic 2B: Security Modes
- Topic 2C: System Assurance
Lesson 3: Network and Telecommunications Security
- Topic 3A: Data Network Design
- Topic 3B: Remote Data Access
- Topic 3C: Data Network Security
- Topic 3D: Data Network Management
Lesson 4: Information Security Management Goals
- Topic 4A: Organizational Security
- Topic 4B: The Application of Security Concepts
Lesson 5: Information Security Classification and Program Development
- Topic 5A: Information Classification
- Topic 5B: Security Program Development
Lesson 6: Risk Management and Ethics
- Topic 6A: Risk Management
- Topic 6B: Ethics
Lesson 7: Software Development Security
- Topic 7A: Software Configuration Management
- Topic 7B: Software Controls
- Topic 7C: Database System Security
Lesson 8: Cryptography
- Topic 8A: Ciphers and Cryptography
- Topic 8B: Symmetric-Key Cryptography
- Topic 8C: Asymmetric-Key Cryptography
- Topic 8D: Hashing and Message Digests
- Topic 8E: Email, Internet, and Wireless Security
- Topic 8F: Cryptographic Weaknesses
Lesson 9: Physical Security
- Topic 9A: Physical Access Control
- Topic 9B: Physical Access Monitoring
- Topic 9C: Physical Security Methods
- Topic 9D: Facilities Security
Lesson 10: Operations Security
- Topic 10A: Operations Security Control
- Topic 10B: Operations Security Auditing and Monitoring
- Topic 10C: Operational Threats and Violations
Lesson 11: Business Continuity and Disaster Recovery Planning
- Topic 11A: Business Continuity Plan Fundamentals
- Topic 11B: Business Continuity Plan Implementation
- Topic 11C: Disaster Recovery Plan Fundamentals
- Topic 11D: Disaster Recovery Plan Implementation
Lesson 12: Legal, Regulations, Compliance, and Investigations
- Topic 12A: Computer Crime Laws and Regulations
- Topic 12B: Computer Crime Incident Response
Appendix A: Mapping CISSP Course Content to the (ISC)2 CISSP Exam Objectives