Certified Information Systems Security Professional (CISSP)

Jump to dates

Duration

5 Days

This course is intended for

This course is intended for experienced IT security-related practitioners, auditors, consultants, investigators, or instructors, including network or security analysts and engineers, network administrators, information security specialists, and risk management professionals, who are pursuing CISSP training and certification to acquire the credibility and mobility to advance within their current computer security careers or to migrate to a related career. Through the study of all eight CISSP CBK domains, students will validate their knowledge by meeting the necessary preparation requirements to qualify to sit for the CISSP certification exam. Additional CISSP certification requirements include a minimum of five years of direct professional work experience in two or more fields related to the eight CBK security domains, or a college degree and four years of experience.

Overview

In this course, you will identify and reinforce the major security subjects from the eight domains of the (ISC)2 CISSP CBK.


You will:


Analyze components of the Security and Risk Management domain.


Analyze components of the Asset Security domain.


Analyze components of the Security Architecture and Engineering domain.


Analyze components of the Communication and Network Security domain.


Analyze components of the Identity and Access Management domain.


Analyze components of the Security Assessment and Testing domain.


Analyze components of the Security Operations domain.


Analyze components of the Software Development Security domain

Description

Welcome to Certified Information Systems Security Professional (CISSP®): With your completion of the prerequisites and necessary years of experience, you are firmly grounded in the knowledge requirements of today’s security professional. This course will expand upon your knowledge by addressing the essential elements of the eight domains that comprise a Common Body of Knowledge (CBK®) for information systems security professionals. The course offers a job-related approach to the security process, while providing a framework to prepare for CISSP certification.CISSP is the premier certification for today’s information systems security professional. It remains the premier certification because the sponsoring organization, the International Information Systems Security Certification Consortium, Inc. (ISC)2 ®, regularly updates the test by using subject matter experts (SMEs) to make sure the material and the questions are relevant in today’s security environment. By defining eight security domains that comprise a CBK, industry standards for the information systems security professional have been established. The skills and knowledge you gain in this course will help you master the eight CISSP domains and ensure your credibility and success within the information systems security field.This course may earn a Credly Badge.

Security and Risk Management
  • Topic A: Security Concepts
  • Topic B: Security Governance Principles
  • Topic C: Compliance
  • Topic D: Professional Ethics
  • Topic E: Security Documentation
  • Topic F: Risk Management
  • Topic G: Threat Modeling
  • Topic H: Risk Response
  • Topic I: Business Continuity Plan Fundamentals
  • Topic J: Acquisition Strategy and Practice
  • Topic K: Personnel Security Policies
  • Topic L: Security Awareness and Training
Asset Security
  • Topic A: Asset Classification
  • Topic B: Secure Data Handling
  • Topic C: Resource Provisioning and Protection
  • Topic D: Manage Data Lifecycle
  • Topic E: Asset Retention
  • Topic F: Data Security Control
Security Architecture and Engineering
  • Topic A: Security in the Engineering Lifecycle
  • Topic B: System Component Security
  • Topic C: Security Models
  • Topic D: Controls and Countermeasures in Enterprise Security
  • Topic E: Information System Security Capabilities
  • Topic F: Design and Architecture Vulnerability Mitigation
  • Topic G: Vulnerability Mitigation in Emerging Technologies
  • Topic H: Cryptography Concepts
  • Topic I: Cryptography Techniques
  • Topic J: Cryptanalytic Attacks
  • Topic K: Site and Facility Design for Physical Security
  • Topic L: Physical Security Implementation in Sites and Facilities
Communication and Network Security
  • Topic A: Network Protocol Security
  • Topic B: Network Components Security
  • Topic C: Communication Channel Security
  • Topic D: Network Attack Mitigation
Identity and Access Management
  • Topic A: Physical and Logical Access Control
  • Topic B: Identification and Authentication
  • Topic C: Identity as a Service
  • Topic D: Authorization Mechanisms
  • Topic E: Access Control Attack Mitigation
Security Assessment and Testing
  • Topic A: System Security Control Testing
  • Topic B: Software Security Control Testing
  • Topic C: Security Process Data Collection
  • Topic D: Audits
Security Operations
  • Topic A: Security Operations Concepts
  • Topic B: Change Management
  • Topic C: Physical Security
  • Topic D: Personnel Security
  • Topic E: Detective and Preventive Measures
  • Topic F: Patch and Vulnerability Management
  • Topic G: Logging and Monitoring
  • Topic H: Incident Response
  • Topic I: Investigations
  • Topic J: Disaster Recovery Planning
  • Topic K: Disaster Recovery Strategies
  • Topic L: Disaster Recovery Implementation
Software Development Security
  • Topic A: Security Principles in the System Lifecycle
  • Topic B: Security Principles in the Software Development Lifecycle
  • Topic C: Security Controls in the Development Environment
  • Topic D: Database Security in Software Development
  • Topic E: Software Security Effectiveness Assessment

Certified Information Systems Security Professional (CISSP)

Jump to dates

Duration

5 Days

This course is intended for

This course is intended for experienced IT security-related practitioners, auditors, consultants, investigators, or instructors, including network or security analysts and engineers, network administrators, information security specialists, and risk management professionals, who are pursuing CISSP training and certification to acquire the credibility and mobility to advance within their current computer security careers or to migrate to a related career. Through the study of all eight CISSP CBK domains, students will validate their knowledge by meeting the necessary preparation requirements to qualify to sit for the CISSP certification exam. Additional CISSP certification requirements include a minimum of five years of direct professional work experience in two or more fields related to the eight CBK security domains, or a college degree and four years of experience.

Overview

In this course, you will identify and reinforce the major security subjects from the eight domains of the (ISC)2 CISSP CBK.


You will:


Analyze components of the Security and Risk Management domain.


Analyze components of the Asset Security domain.


Analyze components of the Security Architecture and Engineering domain.


Analyze components of the Communication and Network Security domain.


Analyze components of the Identity and Access Management domain.


Analyze components of the Security Assessment and Testing domain.


Analyze components of the Security Operations domain.


Analyze components of the Software Development Security domain

Description

Welcome to Certified Information Systems Security Professional (CISSP®): With your completion of the prerequisites and necessary years of experience, you are firmly grounded in the knowledge requirements of today’s security professional. This course will expand upon your knowledge by addressing the essential elements of the eight domains that comprise a Common Body of Knowledge (CBK®) for information systems security professionals. The course offers a job-related approach to the security process, while providing a framework to prepare for CISSP certification.CISSP is the premier certification for today’s information systems security professional. It remains the premier certification because the sponsoring organization, the International Information Systems Security Certification Consortium, Inc. (ISC)2 ®, regularly updates the test by using subject matter experts (SMEs) to make sure the material and the questions are relevant in today’s security environment. By defining eight security domains that comprise a CBK, industry standards for the information systems security professional have been established. The skills and knowledge you gain in this course will help you master the eight CISSP domains and ensure your credibility and success within the information systems security field.This course may earn a Credly Badge.

Security and Risk Management
  • Topic A: Security Concepts
  • Topic B: Security Governance Principles
  • Topic C: Compliance
  • Topic D: Professional Ethics
  • Topic E: Security Documentation
  • Topic F: Risk Management
  • Topic G: Threat Modeling
  • Topic H: Risk Response
  • Topic I: Business Continuity Plan Fundamentals
  • Topic J: Acquisition Strategy and Practice
  • Topic K: Personnel Security Policies
  • Topic L: Security Awareness and Training
Asset Security
  • Topic A: Asset Classification
  • Topic B: Secure Data Handling
  • Topic C: Resource Provisioning and Protection
  • Topic D: Manage Data Lifecycle
  • Topic E: Asset Retention
  • Topic F: Data Security Control
Security Architecture and Engineering
  • Topic A: Security in the Engineering Lifecycle
  • Topic B: System Component Security
  • Topic C: Security Models
  • Topic D: Controls and Countermeasures in Enterprise Security
  • Topic E: Information System Security Capabilities
  • Topic F: Design and Architecture Vulnerability Mitigation
  • Topic G: Vulnerability Mitigation in Emerging Technologies
  • Topic H: Cryptography Concepts
  • Topic I: Cryptography Techniques
  • Topic J: Cryptanalytic Attacks
  • Topic K: Site and Facility Design for Physical Security
  • Topic L: Physical Security Implementation in Sites and Facilities
Communication and Network Security
  • Topic A: Network Protocol Security
  • Topic B: Network Components Security
  • Topic C: Communication Channel Security
  • Topic D: Network Attack Mitigation
Identity and Access Management
  • Topic A: Physical and Logical Access Control
  • Topic B: Identification and Authentication
  • Topic C: Identity as a Service
  • Topic D: Authorization Mechanisms
  • Topic E: Access Control Attack Mitigation
Security Assessment and Testing
  • Topic A: System Security Control Testing
  • Topic B: Software Security Control Testing
  • Topic C: Security Process Data Collection
  • Topic D: Audits
Security Operations
  • Topic A: Security Operations Concepts
  • Topic B: Change Management
  • Topic C: Physical Security
  • Topic D: Personnel Security
  • Topic E: Detective and Preventive Measures
  • Topic F: Patch and Vulnerability Management
  • Topic G: Logging and Monitoring
  • Topic H: Incident Response
  • Topic I: Investigations
  • Topic J: Disaster Recovery Planning
  • Topic K: Disaster Recovery Strategies
  • Topic L: Disaster Recovery Implementation
Software Development Security
  • Topic A: Security Principles in the System Lifecycle
  • Topic B: Security Principles in the Software Development Lifecycle
  • Topic C: Security Controls in the Development Environment
  • Topic D: Database Security in Software Development
  • Topic E: Software Security Effectiveness Assessment

Certified Information Systems Security Professional (CISSP)

Jump to dates

Duration

365 Days

Overview

The ISC2 CISSP certification is a highly acknowledged cybersecurity credential. This certification is ideal for professionals who are looking to demonstrate their knowledge across different security practices and principles. By earning this credential you will be able to implement, design, and effectively manage a cybersecurity program. This certification provides information security professionals with an objective to measure competence and a globally recognized standard of achievement

Description

Start your prep for the ISC2 Certified Information Systems Security Professional certification with the uCertify course and labs. Lab simulates real-world, hardware, software, and command-line interface environments and can be mapped to any textbook, course, or training. The Information Systems Security certification course and lab cover exam objectives thoroughly and teach the principles of effective system security. Lessons and TestPrep will further prepare candidates for this certification exam with interactive item types.

Introduction
  • Overview of the CISSP Exam
    The Elements of This Study Guide
    Interactive Online Learning Environment and TestBank
    Study Guide Exam Objectives
    Objective Map
Security Governance Through Principles and Policies
  • Security 101
    Understand and Apply Security Concepts
    Security Boundaries
    Evaluate and Apply Security Governance Principles
    Manage the Security Function
    Security Policy, Standards, Procedures, and Guidelines
    Threat Modeling
    Supply Chain Risk Management
    Summary
    Exam Essentials
    Written Lab
Personnel Security and Risk Management Concepts
  • Personnel Security Policies and Procedures
    Understand and Apply Risk Management Concepts
    Social Engineering
    Establish and Maintain a Security Awareness, Education, and Training Program
    Summary
    Exam Essentials
    Written Lab
Business Continuity Planning
  • Planning for Business Continuity
    Project Scope and Planning
    Business Impact Analysis
    Continuity Planning
    Plan Approval and Implementation
    Summary
    Exam Essentials
    Written Lab
Laws, Regulations, and Compliance
  • Categories of Laws
    Laws
    State Privacy Laws
    Compliance
    Contracting and Procurement
    Summary
    Exam Essentials
    Written Lab
Protecting Security of Assets
  • Identifying and Classifying Information and Assets
    Establishing Information and Asset Handling Requirements
    Data Protection Methods
    Understanding Data Roles
    Using Security Baselines
    Summary
    Exam Essentials
    Written Lab
Cryptography and Symmetric Key Algorithms
  • Cryptographic Foundations
    Modern Cryptography
    Symmetric Cryptography
    Cryptographic Lifecycle
    Summary
    Exam Essentials
    Written Lab
PKI and Cryptographic Applications
  • Asymmetric Cryptography
    Hash Functions
    Digital Signatures
    Public Key Infrastructure
    Asymmetric Key Management
    Hybrid Cryptography
    Applied Cryptography
    Cryptographic Attacks
    Summary
    Exam Essentials
    Written Lab
Principles of Security Models, Design, and Capabilities
  • Secure Design Principles
    Techniques for Ensuring CIA
    Understand the Fundamental Concepts of Security Models
    Select Controls Based on Systems Security Requirements
    Understand Security Capabilities of Information Systems
    Summary
    Exam Essentials
    Written Lab
Security Vulnerabilities, Threats, and Countermeasures
  • Shared Responsibility
    'Assess and Mitigate the Vulnerabilities of Security Architectures, Designs, and Solution
    Elements'
    Client-Based Systems
    Server-Based Systems
    Industrial Control Systems
    Distributed Systems
    High-Performance Computing (HPC) Systems
    Internet of Things
    Edge and Fog Computing
    Embedded Devices and Cyber-Physical Systems
    Specialized Devices
    Microservices
    Infrastructure as Code
    Virtualized Systems
    Containerization
    Serverless Architecture
    Mobile Devices
    Essential Security Protection Mechanisms
    Common Security Architecture Flaws and Issues
    Summary
    Exam Essentials
    Written Lab
Physical Security Requirements
  • Apply Security Principles to Site and Facility Design
    Implement Site and Facility Security Controls
    Implement and Manage Physical Security
    Summary
    Exam Essentials
    Written Lab
Secure Network Architecture and Components
  • OSI Model
    TCP/IP Model
    Analyzing Network Traffic
    Common Application Layer Protocols
    Transport Layer Protocols
    Domain Name System
    Internet Protocol (IP) Networking
    ARP Concerns
    Secure Communication Protocols
    Implications of Multilayer Protocols
    Microsegmentation
    Wireless Networks
    Other Communication Protocols
    Cellular Networks
    Content Distribution Networks (CDNs)
    Secure Network Components
    Summary
    Exam Essentials
    Written Lab
Chapter 13: Secure Communications and Network Attacks
  • Protocol Security Mechanisms
  • Secure Voice Communications
  • Remote Access Security Management
  • Multimedia Collaboration
  • Load Balancing
  • Manage Email Security
  • Virtual Private Network
  • Switching and Virtual LANs
  • Network Address Translation
  • Third-Party Connectivity
  • Switching Technologies
  • WAN Technologies
  • Fiber-Optic Links
  • Security Control Characteristics
  • Prevent or Mitigate Network Attacks
  • Summary
  • Exam Essentials
  • Written Lab
Managing Identity and Authentication
  • Controlling Access to Assets
    Managing Identification and Authentication
    Implementing Identity Management
    Managing the Identity and Access Provisioning Lifecycle
    Summary
    Exam Essentials
    Written Lab
Controlling and Monitoring Access
  • Comparing Access Control Models
    Implementing Authentication Systems
    Understanding Access Control Attacks
    Summary
    Exam Essentials
    Written Lab
Security Assessment and Testing
  • Building a Security Assessment and Testing Program
    Performing Vulnerability Assessments
    Testing Your Software
    Implementing Security Management Processes
    Summary
    Exam Essentials
    Written Lab
Managing Security Operations
  • Apply Foundational Security Operations Concepts
    Addressing Personnel Safety and Security
    Provision Resources Securely
    Apply Resource Protection
    Managed Services in the Cloud
    Perform Configuration Management (CM)
    Managing Change
    Managing Patches and Reducing Vulnerabilities
    Summary
    Exam Essentials
    Written Lab
Preventing and Responding to Incidents
  • Conducting Incident Management
    Implementing Detective and Preventive Measures
    Logging and Monitoring
    Automating Incident Response
    Summary
    Exam Essentials
    Written Lab
Disaster Recovery Planning
  • The Nature of Disaster
    Understand System Resilience, High Availability, and Fault Tolerance
    Recovery Strategy
    Recovery Plan Development
    Training, Awareness, and Documentation
    Testing and Maintenance
    Summary
    Exam Essentials
    Written Lab
Investigations and Ethics
  • Investigations
    Major Categories of Computer Crime
    Ethics
    Summary
    Exam Essentials
    Written Lab
Software Development Security
  • Introducing Systems Development Controls
    Establishing Databases and Data Warehousing
    Storage Threats
    Understanding Knowledge-Based Systems
    Summary
    Exam Essentials
    Written Lab
Malicious Code and Application Attacks
  • Malware
    Malware Prevention
    Application Attacks
    Injection Vulnerabilities
    Exploiting Authorization Vulnerabilities
    Exploiting Web Application Vulnerabilities
    Application Security Controls
    Secure Coding Practices
    Summary
    Exam Essentials
    Written Lab

Your Recommended Dates

GTR = Guarenteed to Run

Find out more about this course

Interested in alternative dates? Would like to book a private session of this course for your company? Or for any other queries please simply fill out the form below.