Course Description

The Certified Information Systems Security Professional (CISSP) program is a globally recognized advanced cybersecurity training designed to prepare professionals to design, implement, and manage a best-in-class cybersecurity program. This course is aligned with the (ISC)² CISSP Common Body of Knowledge (CBK) and covers the 8 CISSP domains, including security governance, asset security, cryptography, network security, identity and access management, security operations, and software development security. Participants will gain both technical and managerial cybersecurity expertise and will be prepared to pursue the internationally recognized CISSP certification exam.

Course Objectives

 Upon the successful completion of this course, each participant will be able to:

  • Understand CISSP domains and apply cybersecurity principles across enterprise environments.
  • Implement security governance, policies, and risk management practices.
  • Apply asset security controls and data classification strategies.
  • Understand cryptography fundamentals and secure communications methods.
  • Design secure network architectures and security controls.
  • Implement identity and access management systems effectively.
  • Manage security operations including incident response, monitoring, and business continuity.
  • Apply secure software development and application security principles.

Who Should Attend?

This course is designed for cybersecurity professionals, security managers, IT auditors, network/security engineers, risk professionals, and those preparing for the (ISC)² CISSP certification exam.

Course Agenda

Registration

Welcome & Introduction

Pre-Test

Day 1: CISSP Domain 1 & Domain 2 – Security & Risk Management + Asset Security

  • CISSP overview and exam structure
  • Security governance and organizational security roles
  • Security policies, standards, procedures, and guidelines
  • Risk management principles and methodologies
  • Legal, regulatory, and compliance requirements
  • Security awareness and training programs
  • Data classification and asset management
  • Privacy principles and data handling requirements
  • Workshop: Develop a risk register and data classification model

Day 2: CISSP Domain 3 & Domain 4 – Security Architecture + Communication & Network Security

  • Secure design principles and security model
  • Hardware, software, and system architecture fundamentals
  • Trusted computing base (TCB) and secure system components
  • Cloud security fundamentals and virtualization risks
  • Network architecture and security controls
  • Firewalls, IDS/IPS, VPNs, and segmentation
  • Wireless security and secure remote access
  • Common network attacks and mitigations
  • Lab/Exercise: Network security design case study + attack identification scenarios

Day 3: CISSP Domain 5 & Domain 6 – Identity & Access Management + Security Assessment & Testing

  • Authentication methods and access control model
  • Identity governance and access provisioning lifecycle
  • Privileged access management (PAM)
  • Federation, SSO, and MFA
  • Security assessment methods (audits, scans, penetration testing concepts)
  • Vulnerability management and remediation planning
  • Logging, monitoring, and security metrics
  • Security testing strategies and tools overview
  • Workshop: Create an access control matrix + vulnerability assessment report template

Day 4: CISSP Domain 7 & Domain 8 – Security Operations + Software Development Security

  • Security operations concepts and SOC overview
  • Incident response lifecycle and procedures
  • Digital forensics fundamentals and evidence handling
  • Business continuity planning (BCP) and disaster recovery (DRP)
  • Security operations best practices (patching, change control, monitoring)
  • Secure SDLC models and application security
  • Common software vulnerabilities (OWASP overview)
  • DevSecOps principles and secure coding governance
  • Simulation: Incident response tabletop exercise + post-incident reporting

Day 5: CISSP Integration, Exam Readiness & Capstone

  • Integrating all CISSP domains into enterprise cybersecurity strategy
  • Governance + technical control alignment
  • Risk-based decision making for exam scenarios
  • CISSP exam tips and CAT exam approach (Computer Adaptive Testing)
  • Practice exam (mock test) and review session
  • Final revision: most tested CISSP topics
  • Capstone cybersecurity architecture case study

Post Test

End of the Course

Assessment Methodology

All courses conducted by EdTech will begin with a Pre-evaluation and end with a Post-evaluation. The instructor will evaluate the knowledge and skills of the participants according to the feedback given by participants. This will help to recognize the benefits and the level of knowledge gained by participants through the course.

Training Methodology

Facilitated by a highly qualified specialist, who has extensive knowledge and experience; this program will be conducted using extensively interactive methods, encouraging participants to share their own experiences and apply the program material to real-life work situations in order to stimulate group discussions and improve the efficiency of the subject coverage.

Percentages of the total course hour classification are:

  • ​40% Theoretical lectures, Concepts and approach
  • 20% Motivation to develop individual skill and Techniques
  • 20% Case Studies and Practical Exercises
  • 20% Topic General Discussions and interaction

Course Manual

Participants will be provided with comprehensive presentation material as reference manual. This presentation material is a compilation of core valuable information, references, presentation methods and inspiring reading which will be used as a part of the material guide.

Course Certificate

At the completion of the course, all participants who successfully accomplished the required contact hours will receive an EdTech Training Participation Certificate as a testimony to their commitment to professional development and further education.

Why Edtech ?

  • Industry Experienced; Internationally Qualified Trainers
  • Hands-on Practical Sessions & Assignments
  • Intensive Study materials
  • Flexible Schedules
  • Realistic training methodology
  • High-Quality Training in Affordable Course Fees
  • Achievement Certificate, as approved by the Ministry of Education (Abu Dhabi Center for Technical and Vocational Education Training - ACTVET), HABC, AWS, IAOSHE, SHRM, etc.