Stay updated, sign up for our free newsletter to receive useful tips
Full Name Email Id
Certification CISSP: Common Body of Knowledge
Certification, CISSP is an examination of your concepts prescribes
as a common body of Knowledge. Certification CISSP is to test detailed
knowledge of security designs, measures and vulnerabilities and to
successfully do the following in a network or stand alone environment.
Evaluation
Selection
Deployment
Assessment
Common Body of Knowledge
Security Management Practices
Identification of an organization's information assets
Development and implementation of policies(Management of
security, policies, risk and education)
Standards and procedures (administrative, technical and
physical)
Documentation and guidelines( Roles of personnel and other
security roles)
Management tools for data classification and risk assessment/analysis.
Security Architecture and Models
Rate this Article
Excellent
Good
Average
Bad
Terrible
Current Rating
Concepts of structure (architectural designs from core
to network)
Principle and standards in design
Monitoring the security structures
Secure operating Systems
Enforcing availability, integrity and confidentiality on
various equipment, networks and applications.
Access Control Systems and Methodology
Mechanism to create the security structure (identification,
biometrics etc.)
Mechanism to protect the assets of an information system(authentication,
Access control types, accountability, auditing practices, possible
threats and control)
Application and systems Development Security
Security concepts in systems software( software controls
and implementation, SLCD)
Security concepts in application software (databases, data
warehousing, OOPS, Expert systems and artificial intelligence)
Security in design and development of the application software
Operations Security
Identification of control with access privileges to resources
Audit and monitoring in identifying key elements and individual
or group processes
Physical Security
Protection of the office space from outsiders
Protecting the information resources when the security domain
is outside office perimeter.
Cryptography
Principle and methods of concealing information to protect
its integrity, confidentiality and authenticity (cryptosystems-
symmetric and asymmetric, PKI concepts, Hashing algorithms
Types of attacks on cryptosystems and government policies.
Telecommunications, Network, and Internet Security
Transmission methods (cables and other transport mechanism)
Transport formats (protocols, data transmission types)
Security measures for availability, integrity, and confidentiality
in a network.
Authentication over private and public communications in
networks and different media.
Business Continuity Planning and disaster recovery planning
Preservation and continuation of operations in event of
outages
Planning for contingency and recovery of Information
Law, Investigations, and Ethics
Computer crime ethics, laws and regulations
Investigation of computer crime and methodology
Registration for the Exam
The initial pre requisites for the CISSP examination are any one of
the following.
Four years of direct full time security professional work
experience in any one or more of the ten domains of the common body
of knowledge.
Three years direct full time experience in security work
along with a four year college degree. Experience should be in one
or more areas of the common body of knowledge.
Two years of direct experience in security and a bachelors
plus a masters degree in information security from an approved school
(CAE from the National Center of Academic Excellence)
The above is essential that you possess knowledge in one or more test
domains (above listed concepts) in Security. You then need to subscribe
to the (ISC)2 code of ethics and pass the CISSP examination. You could
refer the isc2.org for further details.
Job and Salary
According to the latest “hot Technical Skill and Certification
Pay Index” released by Foote Partners LLC the overall mean wages
for IT certified skills grew by 4% with bonuses. The highest paying
certifications being security certifications like CISA or CISSP certifications.
Other security certifications that get good pay are CCSP, GSE, GCFA
and GCWN. The average pay of a person possessing CISSP is around US
$ 70,000
Being an information security professional is a tough job and a
rewarding career. It is a constant need of security that contributes
to the pay scale of the job.