Security Domains CISSP Flashcards
1 - Security and Risk Management
defining security goals and objectives, risk mitigation, compliance, business continuity, and the law
2 - Asset Security
securing digital and physical assets
3 - Architecture and engineering
optimizing data security by ensuring effective tools, systems, and processes are in place
4 - Communication and network security
managing and securing physical networks and wireless communications
5 - Identity and access management,
Identity and access management focuses on keeping data secure, by ensuring users follow established policies to control and manage physical assets, like office spaces, and logical assets, such as networks and applications
6 - Security assessment and testing,
conducting security control testing, collecting and analyzing data, and conducting security audits to monitor for risks, threats, and vulnerabilities
7 - Security operations, and software development security.
investigations and implementing preventative measures
8 - Software development security.
Secure coding practices, which are a set of recommended guidelines that are used to create secure applications and services.