CISSP Flashcards
A set ofdomains that encompass various aspects of information security, providing a comprehensive framework for professionals seeking to demonstrate their expertise in the field
CISSP (Certified Information Systems Security Professional)
Defines security goals and objectives, risk mitigation, compliance, business continuity, and the law.
Security and Risk Management
Secures digital and physical assets. It’s also related to the storage, maintenance, retention, and destruction of data.
Asset Security
A domain that optimizes data security by ensuring effective tools, systems, and processes are in place.
Security architecture and engineering
A domain that manages and secures physical networks and wireless communications.
Communication and network security
The domain that seeks to keep data secure, by ensuring users follow established policies to control and manage physical assets, like office spaces and logical assets, such as networks and applications.
Identity and access management
Conducting security control testing, collecting and analyzing data, and conducting security audits to monitor for risks, threats, and vulnerabilities.
Security assessment and testing
Conducting investigations and implementing preventative measures
Security Operations
This domain focuses on using secure coding practices, which are a set of recommended guidelines that are used to create secure applications and services.
Software development security