Course Content
Domain 1: Security and Risk Management
You don't currently have access to this content
10 Topics
1 Quiz
Topic 1: CIA Triad and DAD
You don't currently have access to this content
Topic 2: Security Governance
You don't currently have access to this content
Topic 3: Compliance & Legal Frameworks (GDPR, HIPAA, PCI-DSS)
You don't currently have access to this content
Topic 4: Security Policy Hierarchy (Policies, Standards, Procedures, Guidelines)
You don't currently have access to this content
Topic 5: Business Continuity (BCP) & Disaster Recovery (DR) Planning
You don't currently have access to this content
Topic 6: Risk Management Frameworks (NIST RMF, ISO 31000)
You don't currently have access to this content
Topic 7: Risk Treatment Options (Mitigate, Transfer, Accept, Avoid)
You don't currently have access to this content
Topic 8: Third-Party Risk Management (TPRM)
You don't currently have access to this content
Topic 9: Security Awareness & Training
You don't currently have access to this content
Topic 10: Professional Ethics ((ISC)² Code)
You don't currently have access to this content
Domain 1: Security and Risk Management
You don't currently have access to this content
Domain 2: Asset Security
You don't currently have access to this content
10 Topics
1 Quiz
Topic 1: Information Lifecycle Management
You don't currently have access to this content
Topic 2: Data Classification Models (Government vs. Commercial)
You don't currently have access to this content
Topic 3: Data Ownership Roles (Owner, Steward, Custodian, User)
You don't currently have access to this content
Topic 4: Data Security Controls (At-Rest, In-Transit, In-Use)
You don't currently have access to this content
Topic 5: Data Loss Prevention (DLP)
You don't currently have access to this content
Topic 6: Data Sovereignty & Residency
You don't currently have access to this content
Topic 7: Privacy Principles (OECD, FIPPs)
You don't currently have access to this content
Topic 8: Secure Data Disposal (Degaussing, Shredding, Erasure)
You don't currently have access to this content
Topic 9: Asset Classification & Labeling
You don't currently have access to this content
Topic 10: Cloud Asset Management (Shared Responsibility Model)
You don't currently have access to this content
Domain 2: Asset Security
You don't currently have access to this content
Domain 3: Security Architecture and Engineering
You don't currently have access to this content
10 Topics
1 Quiz
Topic 1: Secure Design Principles (Least Privilege, Defense-in-Depth, Zero Trust)
You don't currently have access to this content
Topic 2: Enterprise Security Architecture Frameworks (SABSA, TOGAF, Zachman)
You don't currently have access to this content
Topic 3: Cryptography Basics (Symmetric vs. Asymmetric)
You don't currently have access to this content
Topic 4: Hashing & Digital Signatures (PKI)
You don't currently have access to this content
Topic 5: Cryptographic Key Management
You don't currently have access to this content
Topic 6: Site & Facility Security (CCTV, Mantraps, HVAC)
You don't currently have access to this content
Topic 7: Hardware Security Modules (HSM) & TPM
You don't currently have access to this content
Topic 8: Security Capabilities of Systems (Virtualization, Containers, Microservices)
You don't currently have access to this content
Topic 9: Security Models (Bell-LaPadula, Biba, Clark-Wilson)
You don't currently have access to this content
Topic 10: IoT & Embedded Systems Security (SCADA/ICS)
You don't currently have access to this content
Domain 3: Security Architecture and Engineering
You don't currently have access to this content
Domain 4: Communication and Network Security
You don't currently have access to this content
10 Topics
1 Quiz
Topic 1: OSI Model & TCP/IP Deep Dive
You don't currently have access to this content
Topic 2: Secure Network Protocols (IPSec, TLS/SSL, SSH, HTTPS)
You don't currently have access to this content
Topic 3: Network Attack Vectors (DoS/DDoS, Spoofing, Sniffing)
You don't currently have access to this content
Topic 4: Network Segmentation & Segregation (VLANs, Subnetting)
You don't currently have access to this content
Topic 5: Wireless Network Security (WPA3, EAP-TLS)
You don't currently have access to this content
Topic 6: Network Access Control (NAC)
You don't currently have access to this content
Topic 7: Firewall Architectures (Stateless, Stateful, Proxy, WAF, NGFW)
You don't currently have access to this content
Topic 8: Virtual Private Networks (VPNs)
You don't currently have access to this content
Topic 9: Secure Routing & Switching (BGP, STP)
You don't currently have access to this content
Topic 10: Software-Defined Networking (SDN) & SASE
You don't currently have access to this content
Domain 4: Communication and Network Security
You don't currently have access to this content
Domain 5: Identity and Access Management (IAM)
You don't currently have access to this content
10 Topics
1 Quiz
Topic 1: IAAA Model (Identification, Authentication, Authorization, Accountability)
You don't currently have access to this content
Topic 2: Authentication Factors (Know, Have, Are)
You don't currently have access to this content
Topic 3: Federated Identity Management (SAML, OAuth, OIDC)
You don't currently have access to this content
Topic 4: Directory Services (LDAP, Active Directory, Azure Entra ID)
You don't currently have access to this content
Topic 5: Access Control Models (DAC, MAC, RBAC, ABAC)
You don't currently have access to this content
Topic 6: Single Sign-On (SSO) & Kerberos
You don't currently have access to this content
Topic 7: Privileged Access Management (PAM)
You don't currently have access to this content
Topic 8: Identity Lifecycle Management (Joiner, Mover, Leaver)
You don't currently have access to this content
Topic 9: Biometric Considerations (FAR, FRR, CER)
You don't currently have access to this content
Topic 10: Password Management & Credential Stuffing
You don't currently have access to this content
Domain 5: Identity and Access Management (IAM)
You don't currently have access to this content
Domain 6: Security Assessment and Testing
You don't currently have access to this content
10 Topics
1 Quiz
Topic 1: Vulnerability Management Lifecycle
You don't currently have access to this content
Topic 2: Penetration Testing Frameworks
You don't currently have access to this content
Topic 3: SAST vs. DAST vs. IAST
You don't currently have access to this content
Topic 4: Security Audit & Logging (SIEM)
You don't currently have access to this content
Topic 5: Vulnerability Scanning Tools (Nessus, Burp Suite)
You don't currently have access to this content
Topic 6: Red, Blue, and Purple Team Exercises
You don't currently have access to this content
Topic 7: Business Impact Analysis (BIA) Revisited (MTD, RTO, RPO)
You don't currently have access to this content
Topic 8: Disaster Recovery Testing (Tabletop, Simulation, Full-interruption)
You don't currently have access to this content
Topic 9: SOC 2 Audits (Type 1 vs. Type 2)
You don't currently have access to this content
Topic 10: GDPR & Privacy Audits (DSARs, Right-to-be-forgotten)
You don't currently have access to this content
Domain 6: Security Assessment and Testing
You don't currently have access to this content
Domain 7: Security Operations
You don't currently have access to this content
10 Topics
1 Quiz
Topic 1: Incident Response (IR) Lifecycle
You don't currently have access to this content
Topic 2: Security Operations Center (SOC) Functions
You don't currently have access to this content
Topic 3: Threat Intelligence (IOCs, TTPs, MITRE ATT&CK)
You don't currently have access to this content
Topic 4: Malware Analysis (Static vs. Dynamic)
You don't currently have access to this content
Topic 5: Digital Forensics
You don't currently have access to this content
Topic 6: Disaster Recovery (DR) Execution (Failover, Failback, Hot/Warm/Cold)
You don't currently have access to this content
Topic 7: Endpoint Detection and Response (EDR/XDR)
You don't currently have access to this content
Topic 8: Vulnerability Patch Management
You don't currently have access to this content
Topic 9: Physical Security Operations
You don't currently have access to this content
Topic 10: Continuous Improvement (Post-Incident Reviews, Playbooks)
You don't currently have access to this content
Domain 7: Security Operations
You don't currently have access to this content
Domain 8: Software Development Security
You don't currently have access to this content
10 Topics
1 Quiz
Topic 1: Secure SDLC (Waterfall, Agile, DevOps)
You don't currently have access to this content
Topic 2: DevSecOps & CI/CD Pipeline Security
You don't currently have access to this content
Topic 3: Software Security Maturity Models (OWASP SAMM, BSIMM)
You don't currently have access to this content
Topic 4: OWASP Top 10 (2021)
You don't currently have access to this content
Topic 5: Secure Coding Practices (Input Validation, Output Encoding)
You don't currently have access to this content
Topic 6: Threat Modeling (STRIDE)
You don't currently have access to this content
Topic 7: API Security (REST, SOAP, Rate Limiting)
You don't currently have access to this content
Topic 8: Database Security (SQL Injection)
You don't currently have access to this content
Topic 9: Third-Party Code Management (SBOM)
You don't currently have access to this content
Topic 10: Code Signing & Secrets Management (HashiCorp Vault)
You don't currently have access to this content
Domain 8: Software Development Security
You don't currently have access to this content
Final Quiz
CISSP Final Exam: 50 Questions (All Domains)
You don't currently have access to this content
Virtual (Optional)

