ISC2 - CISSP-ISSEP Information Systems Security Engineering Professional

Varaktighet

Varaktighet:

Bara 5 dagar

Metod

Metod:

Klassrum / Uppkopplad / Hybrid

Nästa datum

Nästa datum:

24/6/2024 (Måndag)

Overview

Official ISC2 Training Provider

The accelerated Information Systems Security Engineering Professional (ISSEP) is a CISSP who specializes in the practical application of systems engineering principles and processes to develop secure systems. An ISSEP analyzes organizational needs, defines security requirements, designs security architectures, develops secure designs, implements system security, and supports system security assessment and authorization for government and industry.

The broad spectrum of topics included in the ISSEP Common Body of Knowledge (CBK®) ensure its relevancy across all disciplines in the field of security engineering. Successful candidates are competent in the following five domains: • Systems Security Engineering Foundations • Risk Management • Security Planning and Design • Systems Implementation, Verification and Validation • Secure Operations, Change Management and Disposal.

The CISSP-ISSEP is an ideal credential for proving you know how to incorporate security into all facets of business operations. This security engineering certification recognizes your keen ability to practically apply systems engineering principles and processes to develop secure systems. You have the knowledge and skills to incorporate security into projects, applications, business processes and all information systems.

At the end of this course, you’ll achieve your CISSP-ISSEP Information Systems Security Engineering Professional certification.

Through Firebrand’s Lecture | Lab | Review methodology you’ll certify at twice the speed of traditional training and get access to courseware, learn from certified instructors, and train in a distraction-free environment.

40% faster

Distraction-free environment

Audience

The CISSP-ISSEP is ideal for those working in roles such as:

  • Senior systems engineer
  • Information assurance systems engineer
  • Information assurance officer
  • Information assurance analyst
  • Senior security analyst

Sju anledningar till varför du bör välja din kurs med Firebrand Training

  1. Två utbildningsalternativ. Välj mellan boende på plats med klassrumsundervisning eller onlinekurser
  2. Du blir certifierad snabbt. Hos oss blir du utbildad rekordsnabbt
  3. Vår kurs är heltäckande. En engångsavgift täcker alla kursmaterial, examina**, boende* och måltider*. Inga dolda extra kostnader.
  4. Godkänn första gången eller träna om gratis. Detta är vår garanti. Vi är övertygade om att du kommer klara kursen på första försöket. Men om inte, kom tillbaka inom ett år och betala endast för boende, examina och tillkommande kostnader
  5. Du kommer lära dig mer. En dag med en traditionell utbildningsleverantör brukar generellt pågå från kl. 9 till 17, med en lång paus för lunch. Med Firebrand Training får du minst 12 timmar/dag av kvalitativ inlärningstid med din instruktör
  6. Du kommer lära dig snabbare. Sannolikheten är att du har en annan inlärningsstil än de omkring dig. Vi kombinerar visuella, auditiva och taktila stilar för att leverera materialet på ett sätt som säkerställer att du lär dig snabbare och enklare
  7. Du kommer studera med de bästa. Vi har varit med på Training Industrys lista "Top 20 IT Training Companies of the Year" varje år sedan 2010. Förutom många fler utmärkelser har vi utbildat och certifierat över 100 000 yrkesverksamma
  • * Endast för boende på plats. Gäller inte för onlinekurser
  • ** Vissa undantag gäller. Vänligen se Exam Track eller prata med våra experter

Curriculum

CISSP-ISSEP Information Systems Security Engineering Professional

Domain 1: Systems Security Engineering Foundations

1.1 Apply systems security engineering fundamentals

1.2 Execute systems security engineering processes

1.3 Integrate with applicable system development methodology

1.4 Perform technical management

1.5 Participate in the acquisition process

1.6 Design Trusted Systems and Networks (TSN)

  • Understand systems security engineering trust concepts and hierarchies
  • Identify the relationships between systems and security engineering processes
  • Apply structural security design principles
  • Integrate security tasks and activities
  • Verify security requirements throughout the process
  • Integrate software assurance methods
  • Perform project planning processes
  • Perform project assessment and control processes
  • Perform decision management processes
  • Perform risk management processes
  • Perform configuration management processes
  • Perform information management processes
  • Perform measurement processes
  • Perform Quality Assurance (QA) processes
  • Identify opportunities for security process automation
  • Identify organizational security authority
  • Identify system security policy elements
  • Integrate design concepts (e.g., open, proprietary, modular)
  • Prepare security requirements for acquisitions
  • Participate in selection process
  • Participate in Supply Chain Risk Management (SCRM)
  • Participate in the development and review of contractual documentation

Domain 2: Risk Management

2.1 Apply security risk management principles

2.2 Address risk to system

2.3 Manage risk to operations

  • Establish risk context
  • Identify system security risks
  • Perform risk analysis
  • Perform risk evaluation
  • Recommend risk treatment options
  • Document risk findings and decisions
  • Determine stakeholder risk tolerance
  • Identify remediation needs and other system changes
  • Determine risk treatment options
  • Assess proposed risk treatment options
  • Recommend risk treatment options

Analyze organizational and operational environment

3.2 Apply system security principles

3.3 Develop system requirements

3.4 Create system security architecture and design

Domain 3: Security Planning and Design

  • Capture stakeholder requirements
  • Identify relevant constraints and assumptions
  • Assess and document threats
  • Determine system protection needs
  • Develop Security Test Plans (STP)
  • Incorporate resiliency methods to address threats
  • Apply defense-in-depth concepts
  • Identify fail-safe defaults
  • Reduce Single Points of Failure (SPOF)
  • Incorporate least privilege concept
  • Understand economy of mechanism
  • Understand Separation of Duties (SoD) concept
  • Develop system security context
  • Identify functions within the system and security Concept of Operations (CONOPS)
  • Document system security requirements baseline
  • Analyze system security requirements
  • Develop functional analysis and allocation
  • Maintain traceability between specified design and system requirements
  • Develop system security design components
  • Perform trade-off studies
  • Assess protection effectiveness

Domain 4: Systems Implementation, Verification and Validation

4.1 Implement, integrate and deploy security solutions

4.2 Verify and validate security solutions

  • Perform system security implementation and integration
  • Perform system security deployment activities
  • Perform system security verification
  • Perform security validation to demonstrate security controls meet stakeholder security requirements

Domain 5: Secure Operations, Change Management and Disposal

5.1 Develop secure operations strategy

5.2 Participate in secure operations

5.3 Participate in change management

5.4 Participate in the disposal process

  • Specify requirements for personnel conducting operations
  • Contribute to the continuous communication with stakeholders for security relevant aspects of the system
  • Develop continuous monitoring solutions and processes
  • Support the Incident Response (IR) process
  • Develop secure maintenance strategy
  • Participate in change reviews
  • Determine change impact
  • Perform verification and validation of changes
  • Update risk assessment documentation
  • Identify disposal security requirements
  • Develop secure disposal strategy
  • Develop decommissioning and disposal procedures
  • Audit results of the decommissioning and disposal process

Exam Track

At the end of this accelerated course, you’ll sit the following exam at the Firebrand Training centre, covered by your Certification Guarantee:

CISSP-ISSEP Information Systems Security Engineering Professional

CISSP-ISSEP is in compliance with the stringent requirements of ANSI/ISO/IEC Standard 17024.

  • Length of exam: 3 hours
  • Number of items: 125 Multiple choice
  • Passing grade: 700 out of 1000 points

Domains Weight

  • Systems Security Engineering Foundations 25%
  • Risk Management 14%
  • Security Planning and Design 30%
  • Systems Implementation, Verification and Validation 14%
  • Secure Operations, Change Management and Disposal 17%

What's Included

Prerequisites

Before attending this accelerated course, you must be a CISSP in good standing and have two years cumulative paid work experience in one or more of the five domains of the CISSP-ISSEP CBK.

Är du redo för din Firebrand kurs?

Vi intervjuar alla potentiella deltagare om deras bakgrund, utbildning, certifiering och personliga inställning. Om du kommer igenom denna process så har du riktigt goda möjligheter att klara din certifiering.

Firebrand Training erbjuder en ambitiös utbildningsmiljö som förutsätter att du verkligen dedikerar dig till kursen. Ovanstående förkunskaper är endast vägledande, många deltagare med mindre erfarenhet men med en annan bakgrund eller kunskap har framgångsrikt genomfört sin utbildning hos Firebrand Training.

Om du funderar på huruvida du uppfyller rekommenderade förkunskaper vänligen ring oss på (0)8 44 68 27 85 och prata med en av våra utbildningsrådgivare som kan hjälpa dig.

Kundreferenser

Här är Firebrand Training recension avsnittet. Sedan 2001 har vi utbildat exakt 134.561 studenter och proffs och bett dem alla att recensera vår Accelerated Learning. För närvarande har, 96,41% sagt att Firebrand överträffade deras förväntningar.

Läs recensioner från avslutade accelereradekurser nedan eller besök Firebrand Stories för skriftliga och videointervjuer med våra tidigare alumni.


"The best instructor I’ve had in all my training courses, quite knowledgeable, jovial and well planned. Thanks to him, I passed my CISSP exam with flying colours. God bless you!"
Vijendra Kalburgi, Inzinc Consulring Ltd. (11/12/2023 (Måndag) till 16/12/2023 (Lördag))

"Instructor actually cared! He was available constantly."
Paul Martin, COMPUTERCENTER PLC. (11/12/2023 (Måndag) till 16/12/2023 (Lördag))

"It was brilliant to work with our instructor, he is jovial, knowledgable and great sense of humour. If I pass the exam, he would be one of the main reasons."
Vijendra Kalburgi, Self employed. (11/12/2023 (Måndag) till 16/12/2023 (Lördag))

"The course is intensive and very useful, and our instructor did a good job explained everything clearly."
Chi Wai Chan. (11/12/2023 (Måndag) till 16/12/2023 (Lördag))

"I want to call out our instructor specifically - he genuinely cares about his students and he has made sure, all week, that he has done all he can for any of us who have needed him. Never had a classroom experience that wasn't just in-out so this has been refreshing and very welcome."
Anonymous. (11/12/2023 (Måndag) till 16/12/2023 (Lördag))

Kursdatum

Startar

Slutar

Tillgänglighet

Plats

Registrera

19/2/2024 (Måndag)

23/2/2024 (Fredag)

Avslutad - Lämna feedback

-

 

24/6/2024 (Måndag)

28/6/2024 (Fredag)

Väntelista

Rikstäckande

 

5/8/2024 (Måndag)

9/8/2024 (Fredag)

Begränsat antal platser

Rikstäckande

 

16/9/2024 (Måndag)

20/9/2024 (Fredag)

Platser tillgängliga

Rikstäckande

 

28/10/2024 (Måndag)

1/11/2024 (Fredag)

Platser tillgängliga

Rikstäckande

 

9/12/2024 (Måndag)

13/12/2024 (Fredag)

Platser tillgängliga

Rikstäckande

 

Senaste recensioner från våra studenter