|
About the (ISC)² CISSP® CBK® Review Seminar
Request Enrollment |
Details | Schedule
The (ISC)² CISSP® CBK® Review Seminar is the most
comprehensive review seminar discussing information systems security
industry best practices, known as the (ISC)² CBK®. The review seminar
helps you review the 10 domains of the information security practice. It
also serves as a strong learning tool for mastering concepts and topics
related to all aspects of information systems security.
This CISSP CBK Review Seminar is
the only CBK review seminar endorsed by (ISC)².
The (ISC)² CISSP 5-day seminar includes:
The Review Seminar Details:
- Offers a high-level review of the main topics.
- Identifies areas students need to study.
- Provides an overview of the scope of the field.
The course material, covering the 10 CISSP domains of the CBK, is
redesigned and updated for every Review Seminar to reflect the latest
information system security issues, concerns, and countermeasures. The
following domains are covered in the seminar modules.
For additional details on the
CBK, download a copy of the free
CISSP Study
Guide.
Access Control - Access Controls are a
collection of mechanisms that work together to create a security
architecture to protect the assets of the information system.
Application Security - This domain addresses the important
security concepts that apply to application software development. It
outlines the environment where software is designed and developed and
explains the critical role software plays in providing information
system security.
Business Continuity and Disaster Recovery Planning - This domain
addresses the preservation and recovery of business operations in the
event of outages.
Cryptography - The Cryptography domain addresses the principles,
means, and methods of disguising information to ensure its integrity,
confidentiality and authenticity.
Information Security and Risk Management - Security Management
entails the identification of an organization's information assets and
the development, documentation, and implementation of policies,
standards, procedures, and guidelines. Management tools such as data
classification and risk assessment/analysis are used to identify
threats, classify assets, and to rate system vulnerabilities so that
effective controls can be implemented.
Legal, Regulations, Compliance, and Investigation - This domain
addresses:
Computer crime laws and regulations
The measures and technologies used to investigate computer crime
incidents
Operations Security - Operations Security is used to identify the
controls over hardware, media, and the operators and administrators with
access privileges to any of these resources. Audit and monitoring are
the mechanisms, tools, and facilities that permit the identification of
security events and subsequent actions to identify the key elements and
report the pertinent information to the appropriate individual, group,
or process.
Physical (Environmental) Security - The Physical (Environmental)
Security domain provides protection techniques for the entire facility,
from the outside perimeter to the inside office space, including all of
the information system resources.
Security Architecture and Design - The Security Architecture and
Design domain contains the concepts, principles, structures, and
standards used to design, monitor, and secure operating systems,
equipment, networks, applications and those controls used to enforce
various levels of availability, integrity, and confidentiality.
Telecommunications and Network Security - The Telecommunications
and Network Security domain discusses the:
-
Network structures
-
Transmission methods
-
Transport formats
-
Security measures used to provide
availability, integrity, and confidentiality
-
Authentication for transmissions over private
and public communications networks and media
Schedule
March 10, 2008 - March 14, 2008
8:30 am - 4:30 pm
Top |