8 Certified Information Systems Security Professionals Flashcards
Security and Risk Management
This involves
• setting up what you want to achieve with security
• finding ways to reduce potential problems
• following rules and regulations
• making sure business operations can continue even during challenges
• ensuring everything is done according to the law.
Asset Security
Secures digital and physical assets
Security Architecture and Engineering
This means making data protection better by setting up the right tools, systems, and processes to work well.
Communication and Network Security
Handling and protecting physical networks and wireless communications.
Identity and Access Management
It’s a system that keeps data safe by making sure users follow the set rules to control and manage physical things like office spaces, and virtual things like networks and applications.
Security Assessment and Testing
This involves:
• checking how well security measures work by testing them
• gathering and studying information
• doing security checks to keep an eye out for risks, dangers, and weaknesses.
Security Domain
Involves looking into issues and putting actions in place to stop them from happening.
Software Development Security
Applying safe coding practices, which are a set of suggested rules used to build secure applications and services.