官术网_书友最值得收藏!

Chapter 1.  Day 1 – Security and Risk Management - Security, Compliance, and Policies

Information security and risk management are analogous to each other. The security and risk management domain forms the baseline for all information security concepts and practices. This is the first domain in CISSP CBK. Concepts on the key areas explained in this domain are across the next seven domains of CISSP, and will serve as the conceptual foundation for more complicated topics. Hence, a strong foundational knowledge in this domain will help the students in understanding the concepts in the rest of the domains.

A candidate appearing for the CISSP exam is expected to have foundational concepts and knowledge in the following key areas of the security and risk management domain:

  • Asset protection
  • Confidentiality, Integrity, and Availability (CIA)
  • Security governance principles
  • Compliance
  • Legal and regulatory issues that pertain to information security in the global context
  • Professional ethics
  • Personnel security policies
  • Risk management principles
  • Threat modeling
  • Business continuity planning
  • Security risk considerations in acquisition strategy and practice
  • Security education training and awareness

This chapter gives an overview of Security, Compliance, and Policies using a high-level illustration. This is followed with an overview of asset and asset protection. Furthermore, the concepts of Confidentiality, Integrity, and Availability (CIA) are explained with suitable examples. Security governance principles, compliance frameworks, and legal and regulatory issues that can impact on compliance are covered from a global perspective. Management practices that relate to security policies, standards, procedures and guidelines, as well as personnel security policies, are covered toward the end.

主站蜘蛛池模板: 涟源市| 井研县| 璧山县| 安顺市| 开江县| 炉霍县| 临海市| 安宁市| 和龙市| 蒙自县| 建始县| 老河口市| 清苑县| 任丘市| 郯城县| 泸定县| 丹江口市| 南漳县| 阳谷县| 彝良县| 万山特区| 沿河| 西贡区| 宣化县| 农安县| 罗江县| 吉林省| 龙岩市| 米易县| 阳谷县| 连江县| 独山县| 乃东县| 石阡县| 莎车县| 宾川县| 江油市| 巩义市| 烟台市| 辽阳市| 福海县|