|
via Udemy |
Go to Course: https://www.udemy.com/course/cissp-certification-domains-1-2-3-4/
Certainly! Here is a comprehensive review and recommendation for the CISSP Domain 1-4 video training course available on Coursera: --- **Course Review: CISSP Domain 1-4 Video Training Course** If you're aspiring to become a Certified Information Systems Security Professional (CISSP), this course offers a well-structured and insightful pathway to prepare for the exam. Covering Domains 1 through 4, it provides a broad yet detailed overview of critical security concepts essential for passing the CISSP certification. **Content and Structure** The course comprises a total of 13 sections and 61 videos, segmented by each domain: - Domain 1 (Security and Risk Management): 13 sections, 31 videos - Domain 2 (Asset Security): 5 sections, 9 videos - Domain 3 (Security Architecture and Engineering): 11 sections, 16 videos - Domain 4 (Communication and Network Security): 3 sections, 7 videos Additionally, the course includes 40 practice questions, offering practical assessment opportunities to gauge your understanding. One of the standout features is the instructor's incorporation of over 18 years of real-world experience, translating complex CISSP requirements into tangible examples. This experiential perspective ensures the training isn't just theoretical but grounded in practical applications. **Curriculum and Relevance** The course aligns with the most current CISSP exam (as of April 2021), with considerations for the upcoming 2023 curriculum updates. It thoroughly covers exam objectives, including security governance, legal considerations, risk management, asset classification, secure system design, cryptography, network security, and more. **Strengths** - Extensive domain coverage, ensuring a comprehensive grasp of CISSP topics. - Practical insights from experienced instructor, clarifying complex concepts. - Emphasis on understanding real-world scenarios and decision-making processes. - Focus on exam strategies, including keyword spotting and contextual analysis. - Compatibility with the exam's format, including focus on the Computerized Adaptive Testing (CAT) model. **Considerations** While the course provides a robust foundation, successful CISSP preparation benefits from supplementary resources like practice tests, updated study guides, and diverse media sources. The instructor wisely recommends leveraging multiple study aids for well-rounded readiness. --- **Recommendation** This CISSP training course on Coursera is highly recommended for security professionals seeking a thorough, experience-based understanding of the exam content. It is suitable for: - Security practitioners preparing for the CISSP exam - Cybersecurity students seeking in-depth domain knowledge - IT managers and risk professionals needing a comprehensive security overview **Why Choose This Course?** - Practical insights from an industry veteran - Structured, modular approach covering essential domains - Focus on understanding concepts from managerial and technical perspectives - Updated content aligned with current exam requirements **Final Verdict** Investing time in this course will deepen your understanding of critical security concepts, improve your exam readiness, and enhance your ability to apply security principles in real-world scenarios. Remember, passing the CISSP exam requires not only theoretical knowledge but also experience and judgment—this course equips you with the foundational understanding to succeed. --- If you're committed to achieving CISSP certification, this course on Coursera is definitely a worthwhile addition to your study plan. Happy learning and best of luck on your certification journey!
In this CISSP Domain 1, 2, 3, and 4 video training course, I will provide you the knowledge, experience and practical skills you need to pass the CISSP certification. In addition, you will get my years of experience (Over 18 years) as I translate CISSP training requirements into real-world examples.Included in this course:CISSP Domain 1 Videos13 Sections - 31 Videos10 CISSP practice questionsCISSP Domain 2 Videos5 Sections - 9 Videos10 CISSP practice questionsCISSP Domain 3 Videos11 Sections - 16 Videos10 CISSP practice questionsCISSP Domain 4 Videos3 Sections - 7 Videos10 CISSP practice questionsThe curriculum in this course covers the content that will be on the most current CISSP exam (April 2021). Each objective that is required for the CISSP exam will be covered in varying degrees of complexity and competency. The next upgrade to the CISSP curriculum/exam will occur in 2023.In Domain 1 we will cover:IntroductionIntroductionPurposeISC2Understand and apply concepts of confidentiality, integrity and availabilityConfidentialityIntegrityAvailabilityEvaluate and apply security governance principlesAlignment of security function to business strategy, goals, mission, and objectivesOrganizational processes (e.g., acquisitions, divestitures, governance committeesOrganizational roles and responsibilitiesSecurity control frameworksDue care/due diligenceDetermine compliance requirementsContractual, legal, industry standards, and regulatory requirementsPrivacy requirementsUnderstand legal and regulatory issues that pertain to information security in a global contextCyber crimes and data breachesLicensing and intellectual property requirementsImport/export controlsTrans-border data flowPrivacyUnderstand, adhere to, and promote professional ethics(ISC)² Code of Professional EthicsOrganizational code of ethicsDevelop, document, and implement security policy, standards, procedures, and guidelinesIdentify, analyze, and prioritize Business Continuity (BC) requirementDevelop and document scope and planBusiness Impact Analysis (BIA)Contribute to and enforce personnel security policies and proceduresCandidate screening and hiringEmployment agreements and policiesOnboarding and termination processesVendor, consultant, and contractor agreements and controlsCompliance policy requirementsPrivacy policy requirementsUnderstand and apply risk management conceptsIdentify threats and vulnerabilitiesRisk assessment/analysisRisk responseCountermeasure selection and implementationApplicable types of controls (e.g., preventive, detective, corrective)Security Control Assessment (SCA)Monitoring and measurementAsset valuationReportingContinuous improvementRisk frameworksUnderstand and apply threat modeling concepts and methodologiesThreat modeling methodologiesThreat modeling conceptsApply risk-based management concepts to the supply chainRisks associated with hardware, software, and servicesThird-party assessment and monitoringMinimum security requirementsService-level requirementsEstablish and maintain a security awareness, education, and training programMethods and techniques to present awareness and trainingPeriodic content reviewsProgram effectiveness evaluationIn Domain 2 we will cover:Identify and classify information and assetsData ClassificationAsset ClassificationDetermine and maintain information and asset ownershipProtect privacyData ownersData processorsData remanenceCollection limitationEnsure appropriate asset retentionDetermine data security controlsUnderstand data statesScoping and tailoringStandards selectionData protection methodsEstablish information and asset handling requirementsIn Domain 3 we will cover:Implementation and management of engineering processes using secure design principlesAsset RetentionConfinementUnderstanding of the fundamental concepts of security modelsSelection of controls based upon systems security requirementsSecurity capabilities of information systemsAssessment and mitigation of vulnerabilities within a security architectureClient-based systemsServer-based systemsDatabase systemsCryptographic systemsIndustrial Control Systems (ICS)Cloud-based systemsDistributed systemsInternet of Things (IoT)Assessment and mitigation in web-based systemsAssessment and mitigation in mobile-based systemsAssessment and mitigation in embedded devicesApply cryptographic methodsCryptographic life-cycleCryptographic methodsPublic Key InfrastructureKey management practicesDigital SignaturesNon-repudiationIntegrity (e.g. Hashing)Cryptographic attacksDigital Rights Management (DRM)Application of security principles to sites and facility designImplementation of site and facility security controlsWiring closets/intermediate distribution facilitiesServer rooms/data centersMedia storage facilitiesEvidence storageRestricted and work area securityUtilities and Heating, Ventilation, and Air Conditioning (HVAC)Environmental issuesFire prevention, detection, and suppressionIn Domain 4 we will cover:Implement secure design principles in network architecturesOpen System Interconnection (OSI) and Transmission Control Protocol/Internet Protocol (TCP/IP) modelsInternet Protocol (IP) networkingImplications of multil-ayer protocolsConverged protocolsSoftware-defined networksWireless networksSecure network componentsOperation of hardwareTransmission mediaNetwork Access Control (NAC) devicesEndpoint securityContent-distribution networksImplement secure communication channels according to designVoiceMultimedia collaborationRemote accessData communicationsVirtualized networksNotes / Disclaimers:In order for you to pass the CISSP test you need to have the substantial knowledge through experience and knowledge.The test was originally written in English, but there are other language versions availableAnswering the questions you need to consider the "perfect world" scenario and that work around options may be technically correct, but they may not meet (ISC)2 point of viewYou need to be able to spot the keywords (DR, BCP, Policy, Standards, etc.) as well as the indicators (First, Best, Last, Least, Most)Understand and answer every question from the Manager, CISO, or Risk Advisers Point of View (PoV). Answering the questions from a CIO or technical perspective will place your thinking too high or down in the weeds too far.Understand that you are to answer the questions based on being proactive within your environment. Enable a Vulnerability Management Program before you have vulnerability issues.The English version of the CISSP exam, utilizes the Computerized Adaptive Testing (CAT) format and is 3 hours long with 100-150 questionsMost people studying for CISSP certification will various media sources, test banks, and various books to enhance their test taking experience.Don't rely on one source to teach you all that you need to know for the CISSP….Invest in multiple training opportunities. The future payoff is worth the time and energy.