|
Session 1
Section A: Introduction
· Why CISSP?
· Requirements
· Required Domains
Section B: The Security Triangle
· Securing the System
· Confidentiality
· Integrity
· Availability
Section C: Security Management Training
· Information Security Governance
· Audit Frameworks for Compliance
· Security Administration
· Organizational
· Physical Risks
· Human Risks
· Risk Management Terms
· Risk Management Options
· Legal Responsibility
· Risk Assessment Methodologies
· Risk Assessment Team
Section D: Risk Assessment
· Overview
· Cost vs. Benefit
· Single Loss Expectancy
· Annual Loss Expectancy
· Calculating Overall Risk
· Pros and Cons
· Qualitative Assessment
· Selecting Controls
Section E: Security Policy
· Overview
· Security Policy Types
· Standards
· Guidelines
· Procedures
Section F: Job Policies and Training
· Hiring Practices
· Termination Practices
· Job Descriptions
· Job Activities
· Security Awareness
· Tailoring Training
· ISO Responsibilities
Section G: Ethics
· Overview
· (ISC)2 Code of Ethics
· Ten Commandments
· RFC 1087
· Ethics Topics
· Common Computer Ethics Fallacies
|