Module 1: Introduction
- Information Security
- The CISSP CBK
- Security Concerns
- The CIA Triad
Module 2: Access Control Systems and Methodology
- Access Control Overview
- Identification and Authentication
- Access Control Techniques
- Access Control Administration
- Monitoring and Intrusion Detection
Module 3: Telecommunications Network and Internet Security
- Security Overview
- Internet Intranet and Extranet Security
- TCP/IP
- LANs WANs and VPNs
- Network Layer Security Protocols
- Transport Layer Security
- Application Layer Security Protocols
Module 4: Security Management Practices
- Security Overview
- Data Classification
- Employment Policies and Practices
- Risk Management
- Roles and Responsibilities
Module 5: Application Development Security
- Application Development Introduction
- Malicious Code
- Methods of Attack
- Databases and Data Warehousing
- Knowledge-Based Systems
- Systems Development Life Cycle
- Security and Protection
Module 6: Cryptography
- Cryptographic Terms and Technologies
- Message Authentication
- Certificate Authority
Module 7: Security Architecture and Models
- Common Computer Architectures and Designs
- Storage Types
- Principles of Common Security Models
- Common Flaws and Security Issues with System Architectures and Designs
- Timing Attacks
Module 8: Operations Security
- Operations Security Overview
- Security Audits
- Violation Analysis
- Auditing
- Monitoring
- Resource Protection
- E-Mail Security
- The Web
- File Transfer
- Anatomy of an Attack
- Separation of Duties and Responsibilities
Module 9: Business Continuity Planning
- Business Continuity Plan Process
- Recovery
- Primary Strategies
- Assurance and Trust
Module 10: Computer Crime
- Types of Computer Crime
- Major Categories of Laws
- Computer Crime-Related Laws
- Due Care
- Investigation and Ethics
Module 11: Physical Security
- Introduction to Physical Security
- The Perimeter
- Inside the Building
- Intrusion Detection Systems
- Compartmentalized Areas
|