|
The
Examination
Questions are not grouped by
domain; i.e., they are not sorted. Questions
cover a broad range of the CBK and are non
specific in regard to systems or software.
The objective is to give the one correct answer
based on commonly accepted security principles.
Completion of a CBK Review course is not a
pre-requisite for sitting for the exam.
CISSP
Exam Requirements
In order to become a CISSP, you must have
four years of direct work experience in one
or more of the
ten domains of the information systems security
Common Body of Knowledge (CBK). If you
possess an post-secondary degree, the four-year
requirement is reduced to three years. Your
direct work experience qualifies you to sit
for the rigorous, six-hour examination, which
tests your knowledge of the ten domains.
Preparation
Many candidates will find the
examination difficult without a serious review
of less familiar topics. There are two approaches
for preparation for the exam available. There
is self-study and there is the (ISC)²
CISSP CBK Review Seminar. (ISC)2 provides
a self-study guide that will help you prepare
for the exam. It outlines the ten domains
and provides insight into the subject matter
areas within each domain. It also provides
students with the opportunity to familiarize
themselves with the format of questions that
will be on the Certification Examination.
(ISC)2 also conducts CISSP,
CBK Review Seminars that consist of significant
review and instruction in the ten subject
domains. The CBK Review Seminar is an in-depth,
conceptual, and generic focus on the subjects.
It is not technical or functional training,
but a general presentation of the subjects.
It is intended to provide the student with
an understanding of the subject areas they
must know in order to succeed on the examination.
It is the individual responsibility of the
student to utilize this framework to guide
them in gaining the detailed knowledge of
the subject areas through personal study.
TOP
Benefits
for Information System Security Professionals
The benefits of the CISSP Common
Body of Knowledge seminar to a IT Security
Professional is to provide an understanding
of the diverse areas involved in Information
Security and the CISSP exam. The expansion
of knowledge can be achieved even if an individual
chooses not to sit for the Certification Exam.
Many IT Professionals have an extreme depth
of knowledge in selected security areas, and
have focused their attention on specific aspects
of Information Security. The CISSP CBK review
seminar can provide an understanding of knowledge
into those areas where a potential exam taker
has not had an opportunity to work. For example;
for those who have dealt mainly with the security
management areas, the program can develop
a greater understanding of the technical areas.
For those who have focused their attention
on the technical fields, they will have an
opportunity to gain additional insight into
the management areas. To those whose experience
covers the broad spectrum of topics, the training
can serve as a refresher or to provide additional
depth of understanding.
If an individual chooses to
sit for the Certification Exam and is successful,
they have the assurance that they have demonstrated
knowledge and competence in the Information
Security profession and will possess an internationally
recognized credential in the ITS arena.
TOP
Audience
This program is designed to
develop a properly trained IT professional
staff. The program focuses on Information
Security professionals and the participants
should be those whose responsibilities include
security management and security planning
functions. Typical participants would be ITS
Managers and their staff, network security
managers, and those who perform security management
functions.
TOP
Important
Points
- The CBK Review available from (ISC)2 is
provided by CISSP certified professionals
who are then selected and trained by (ISC)2
as instructors. (ISC)2 provides all course
materials and arranges for travel and lodging
for the instructors. This applies even if
a training contractor arranges the training
through (ISC)2.
- The exam is carefully controlled and proctored
by (ISC)2.
- Course content for instructors provided
by (ISC)2 is established by (ISC)2. There
are no "customizations" for any
particular customer group. The course material
has been developed based on practices within
the Information Security profession including
sound business practice and includes international
considerations. It is neither a government
nor any business sector -focused training
program.
- The CBK training offerings from independent
training organizations that use their own
instructors may or may not cover the same
subject areas as the training provided by
(ISC)2. The course materials and instructors
will not be the same as those used by (ISC)2
even if the subject matter is the same.
However, some training vendors provide the
training through an agreement with (ISC)2.
In this case, both (ISC)2 instructors and
material are used.
- NO CBK REVIEW CAN GUARANTEE SUCCESS
ON THE EXAM. Success can only be
attained if an individual has properly prepared
by developing an understanding of the principles
and concepts in the ten domains covered
by the exam. In some cases additional self-study
or formal training may be required.
TOP |