Welcome to Certified Information Systems Security Professional (CISSP®): Seventh Edition. With your completion of the prerequisites and necessary years of experience, you are firmly grounded in the knowledge requirements of today's security professional. This course will expand upon your knowledge by addressing the essential elements of the eight domains that comprise a Common Body of Knowledge (CBK®) for information systems security professionals. The course offers a job-related approach to the security process, while providing a framework to prepare for CISSP certification.
CISSP is the premier certification for today's information systems security professional. It remains the premier certification because the sponsoring organization, the International Information Systems Security Certification Consortium, Inc. (ISC)2®, regularly updates the test by using subject matter experts (SMEs) to make sure the material and the questions are relevant in today's security environment. By defining eight security domains that comprise a CBK, industry standards for the information systems security professional have been established. The skills and knowledge you gain in this course will help you master the eight CISSP domains and ensure your credibility and success within the information systems security field.
This course is intended for experienced IT security-related practitioners, auditors, consultants, investigators, or instructors, including network or security analysts and engineers, network administrators, information security specialists, and risk management professionals, who are pursuing CISSP training and certification to acquire the credibility and mobility to advance within their current computer security careers or to migrate to a related career. Through the study of all eight CISSP CBK domains, students will validate their knowledge by meeting the necessary preparation requirements to qualify to sit for the CISSP certification exam. Additional CISSP certification requirements include a minimum of five years of direct professional work experience in two or more fields related to the eight CBK security domains, or a college degree and four years of experience.
This course targets the 2024 version of the CISSP exam.
In this course, you will identify and reinforce the major security subjects from the eight domains of the (ISC)2 CISSP CBK. You will:
• Analyze components of the Security and Risk Management domain.
• Analyze components of the Asset Security domain.
• Analyze components of the Security Architecture and Engineering domain.
• Analyze components of the Communication and Network Security domain.
• Analyze components of the Identity and Access Management domain.
• Analyze components of the Security Assessment and Testing domain.
• Analyze components of the Security Operations domain.
• Analyze components of the Software Development Security domain
You will need to have the following software installed: Microsoft Windows® and Adobe® Acrobat® Reader or an equivalent PDF viewer. The course setup instructions provided in the first module of the course go into more detail about the hardware and software requirements.
In this course, you will explore a broad range of security concepts and best practices designed to meet the demands of increasingly specialized information systems security. Before you address specific security areas or elements, it is important that you have a plan in place for the overall management of these processes and elements. In this lesson, you will understand what comprises successful security and risk management.
What's included
16 plugins
Show info about module content
16 plugins•Total 460 minutes
Getting Started with This Course•30 minutes
Lesson Introduction•5 minutes
Security Concepts•30 minutes
Security Governance Principles•30 minutes
Compliance•30 minutes
Professional Ethics•30 minutes
Security Documentation•30 minutes
Risk Management•30 minutes
Threat Modeling•30 minutes
Risk Response•30 minutes
Business Continuity Plan Fundamentals•30 minutes
Acquisition Strategy and Practice•30 minutes
Personnel Security Policies•30 minutes
Security Awareness and Training•30 minutes
Mastery Builder: Assessing Security and Risk Management•60 minutes
Lesson Summary•5 minutes
Asset Security
Module 2•3 hours to complete
Module details
In the last lesson, you learned the importance of the CIA triad and risk assessment and management. Because data is such an important asset to an organization, many of these same concepts will need to be applied to it as well. As data needs become more critical and the need to access it even more real time, it has become even more difficult to protect it. Organizations have always needed to protect their physical data assets and now they need to protect their logical data assets as well. Additionally, your users are no longer willing to exclusively work at their desk; they want whenever, wherever access. This means protecting data on more devices in more places than ever before. Companies need to consider all the places they store and transmit data and look for ways to protect it.
In the last lesson, you learned about mitigation against vulnerabilities in system components, multiple architectures, and physical security. Many of those topics are pervasive in the CISSP® material, and you will see many of them throughout the course. Topics like defense in depth, cryptography, and network design will present themselves in regards to communication and network security as well. The network is changing, which means additional security measures are necessary. Voice and video are now delivered across the network, where before those were separate networks. Because the network has become such an important part of the business, protecting it has become critical. In this lesson, you will learn about security for your network systems.
What's included
7 plugins
Show info about module content
7 plugins•Total 315 minutes
Lesson Introduction•5 minutes
Network Protocol Security•65 minutes
Network Components Security•65 minutes
Communication Channel Security•65 minutes
Network Attack Mitigation•65 minutes
Mastery Builder: Assessing Communications and Network Security•45 minutes
Lesson Summary•5 minutes
Identity and Access Management
Module 5•5 hours to complete
Module details
A large part of maintaining the confidentiality, integrity, and availability of your data and your systems depends on identity and access control. By properly identifying the user or systems that are trying to gain access, you can determine how much, if any, control to grant them. This keeps unwanted entities out of your systems, while ensuring that the proper entities have exactly what they need, and no more. In this lesson, you will learn about identity and access management.
What's included
8 plugins
Show info about module content
8 plugins•Total 280 minutes
Lesson Introduction•5 minutes
Physical and Logical Access Control•45 minutes
Identification and Authentication•45 minutes
Identity as a Service•45 minutes
Authorization Mechanisms•45 minutes
Access Control Attack Mitigation•45 minutes
Mastery Builder: Assessing Identity and Access Management•45 minutes
Lesson Summary•5 minutes
Security Assessment and Testing
Module 6•3 hours to complete
Module details
Now that you have an awareness of the importance of identification and access management, you will learn the importance of security assessments and testing to verify the security of your organization. It is only when you have done a thorough risk assessment of both your physical and logical assets that you can begin the work of protecting the organization. This lesson will delve further into vulnerability assessments, penetration testing, log reviews, all around testing, and validating your security.
What's included
7 plugins
Show info about module content
7 plugins•Total 175 minutes
Lesson Introduction•5 minutes
System Security Control Testing•30 minutes
Software Security Control Testing•30 minutes
Security Process Data Collection•30 minutes
Audits•30 minutes
Mastery Builder: Assessing Security Assessment and Testing•45 minutes
Lesson Summary•5 minutes
Security Operations
Module 7•8 hours to complete
Module details
Security operations is a concept that encompasses two basic ideas: to ensure that day-to-day activities that support the business are protected against risk and to deeply integrate security processes within those activities. Recognizing the importance of both of these ideas is a necessary step in ensuring the organization functions without any impairment. In this lesson, you will learn about the integral link between security and your day-to-day business operations.
In the last lesson, you learned about security operations. Many organizations not only manage their network infrastructure and systems, but also develop software. This can be for in-house use, or to sell to customers. In this final lesson, you will learn about developing software securely.
What's included
8 plugins
Show info about module content
8 plugins•Total 230 minutes
Lesson Introduction•5 minutes
Security Principles in the System Lifecycle•35 minutes
Security Principles in the Software Development Lifecycle•35 minutes
Security Controls in the Development Environment•35 minutes
Database Security in Software Development•35 minutes
Logical Operations is the world's largest general publisher of instructor-led technology curriculum, and a leader in the technical training community for over 40 years. We employ a rigorous, expert-driven authoring process that, for decades, has produced successful results for learners the world over. Our courseware aligns with real-world business needs and objectives, ensuring learners are able to apply their newly developed skills while on the job.
OK
Why people choose Coursera for their career
Felipe M.
Learner since 2018
"To be able to take courses at my own pace and rhythm has been an amazing experience. I can learn whenever it fits my schedule and mood."
Jennifer J.
Learner since 2020
"I directly applied the concepts and skills I learned from my courses to an exciting new project at work."
Larry W.
Learner since 2021
"When I need courses on topics that my university doesn't offer, Coursera is one of the best places to go."
Chaitanya A.
"Learning isn't just about being better at your job: it's so much more than that. Coursera allows me to learn without limits."
When will I have access to the lectures and assignments?
To access the course materials, assignments and to earn a Certificate, you will need to purchase the Certificate experience when you enroll in a course. You can try a Free Trial instead, or apply for Financial Aid. The course may offer 'Full Course, No Certificate' instead. This option lets you see all course materials, submit required assessments, and get a final grade. This also means that you will not be able to purchase a Certificate experience.
What will I get if I purchase the Certificate?
When you purchase a Certificate you get access to all course materials, including graded assignments. Upon completing the course, your electronic Certificate will be added to your Accomplishments page - from there, you can print your Certificate or add it to your LinkedIn profile.
Is financial aid available?
Yes. In select learning programs, you can apply for financial aid or a scholarship if you can’t afford the enrollment fee. If fin aid or scholarship is available for your learning program selection, you’ll find a link to apply on the description page.