• Classroom
  • Online, Instructor-Led
Course Description

The Certified Information Systems Security Professional (CISSP) is the most globally recognized certification in the information security market. CISSP validates an information security professional’s deep technical and managerial knowledge and experience to effectively design, engineer, and manage the overall security posture of an organization. The broad spectrum of topics included in the CISSP Common Body of Knowledge (CBK®) ensure its relevancy across all disciplines in the field of information security.

Learning Objectives

  • Apply concepts of confidentiality, integrity, availability, and security governance principles and compliance.
  • Align overall organizational operational goals with security functions and implementation.
  • Determine how to protect assets of the organization as they go through their lifecycle.
  • Leverage the concepts, principles, structures, and standards used to design, implement, monitor and secure operating systems, equipment, networks, applications etc.
  • Apply security design principles to select appropriate mitigations for vulnerabilities present in common information system types and architecture.
  • Explain the importance of cryptography and the security services it can provide in today’s digital and information age.
  • Evaluate the physical security elements relative to information system needs.
  • Evaluate the elements that comprise communication and network security relative to information security needs.
  • Leverage the concepts and architecture that define the associated technology and implementation systems and protocols.
  • Determine appropriate access control models to meet business security requirements.
  • Apply physical and logical access controls models to meet information security needs.
  • Differentiate between primary methods for designing and validating test and audit strategies that support information security requirements.
  • Apply appropriate security controls and countermeasures to optimize an organization’s operation function and capacity. •Assess information systems risks to an organization’s operational endeavors.
  • Determine appropriate controls to mitigate specific threats and vulnerabilities.
  • Apply information systems security concepts to mitigate the risk of software and systems vulnerabilities through the systems’ lifecycles.

Framework Connections

The materials within this course focus on the NICE Framework Task, Knowledge, and Skill statements identified within the indicated NICE Framework component(s):