Course Outline
Security and Risk Management
- Confidentiality, integrity, and availability concepts
- Security governance principles
- Compliance
- Legal and regulatory issues
- Professional ethics
- Security policies, standards, procedures, and guidelines
Asset Security
- Information and asset classification
- Ownership, including data owners and system owners
- Protect privacy
- Appropriate retention
- Data security controls
- Handling requirements including markings, labels, and storage
Security Engineering
- Engineering processes using secure design principles
- Security models fundamental concepts
- Security evaluation models
- Security capabilities of information systems
- Security architectures, designs, and solution elements vulnerabilities
- Web-based systems vulnerabilities
- Mobile systems vulnerabilities
- Embedded devices and cyber-physical systems vulnerabilities
- Cryptography
- Site and facility design secure principles
- Physical security
Communication and Network Security
- Secure network architecture design including IP and non-IP protocols and segmentation
- Secure network components
- Secure communication channels
- Network attacks
Identity and Access Management
- Physical and logical assets control
- Identification and authentication of people and devices
- Identity as a service including cloud identity
- Third-party identity services including on-premise services
- Access control attacks
- Identity and access provisioning lifecycle including provisioning review
Security Assessment and Testing
- Assessment and test strategies
- Security process data including management and operational controls
- Security control testing
- Test outputs including automated and manual testing
- Security architectures vulnerabilities
Security Operations
- Investigations support and requirements
- Logging and monitoring activities
- Provisioning of resources
- Foundational security operations concepts
- Resource protection techniques
- Incident management
- Preventative measures
- Patch and vulnerability management
- Change management processes
- Recovery strategies
- Disaster recovery processes and plans
- Business continuity planning and exercises
- Physical security
- Personnel safety concerns
Software Development Security
- Security in the software development lifecycle
- Development environment security controls
- Software security effectiveness
- Acquired software security impact
Learner Outcomes
After completing this bootcamp, you will be able to:
- Apply technical and managerial security knowledge to design, engineer, implement, and manage an organizational information security program.
- Evaluate security and risk management, asset security, security engineering, network security, identity and access management, security assessment, security operations, and software development security concepts.
- Apply security practices and controls to help protect organizations from increasingly sophisticated cybersecurity threats.
- Prepare for the Certified Information Systems Security Professional (CISSP) certification exam.
CISSP Course Kit
Included in the course fee:
- CISSP Exam Guide and Practice Exams
- Boson Certification Exam Prep
- SLU Workforce Center Slides and Study Tips
Exam Details
- Exam Length: 125 - 175 questions
- Question Types: Multiple-choice and advanced innovative questions
- Exam Time: Up to 4 hours
- Delivery Method: Computer Adaptive Testing (CAT)
- Passing Score: 700 out of 1000
- Continuing Professional Education: 120 CPE credits every three years and pay an annual maintenance fee
We encourage all students to email their official exam results to info@workforcecenter.slu.edu so we can verify and record their pass/fail status in their student portal.
Certification Requirements
CISSP Exam Requirements:
- Candidates must have a minimum of 5 years of cumulative paid full-time work experience in two or more of the 8 domains of the (ISC)² CISSP CBK®.
- A candidate who does not have the required experience to become a CISSP may become an Associate of ISC2 by successfully passing the CISSP examination. The Associate of ISC2 will then have six years to earn the five years of required experience.
OR
- Candidates may receive a one-year experience waiver with a 4-year college degree, regional equivalent, or additional credential from the (ISC)² approved list, requiring four years of direct full-time professional security work experience in two or more of the 8 domains of the CISSP CBK.
Suggested Prerequisites
- Cyber Foundations | SEC150
- Cyber Defense: Hacking, Response, and Forensics | SEC250
- Or equivalent experience
Questions? Speak with our team today—email info@workforcecenter.slu.edu or call 314-977-3226.
Certificate Pathway
Want to Earn the Cyber Credential Professional Certificate?
In addition to Certified Information Systems Security Professional (CISSP) Bootcamp | SEC600, enroll in one of the following:
