CISSP Concentrations

Video Activity
Join over 3 million cybersecurity professionals advancing their career
Sign up with
Required fields are marked with an *
or

Already have an account? Sign In »

Time
5 hours 58 minutes
Difficulty
Intermediate
CEU/CPE
6
Video Transcription
00:00
>> Welcome back to Cybrary,
00:00
it's of course, I'm your instructor, Brad Rhodes.
00:00
Let's talk about CISSP Concentrations.
00:00
This video is probably little shorter than others,
00:00
is going to cover specifically
00:00
CISSP concentrations, what they are?
00:00
Where they are? And a little bit about them.
00:00
Then we're going to talk specifically
00:00
about why you would want
00:00
to pursue the ISSEP concentration.
00:00
There are three CISSP,
00:00
Certified Information Systems
00:00
Security Professional concentrations
00:00
and they're listed here.
00:00
You have the ISSAP,
00:00
which is the audit one.
00:00
You have the ISSMP,
00:00
which is management, and then you'd have
00:00
the ISSEP, which is engineering.
00:00
Each one of those has a little bit different flavor.
00:00
When IEC2 created the concentrations,
00:00
they were looking at
00:00
all the different professional certifications
00:00
out there and there's a lot related to these fields.
00:00
They said, "man there isn't
00:00
any that aren't necessarily specifically
00:00
focused on information security, on cybersecurity."
00:00
A great example of that is ISSMP,
00:00
the Information System Security
00:00
Management Professional concentration,
00:00
is a kin to the
00:00
Project Management Professional that you would
00:00
get from the Project Management Institute, PMI.
00:00
Well, I am a PMP.
00:00
I hold that certificate.
00:00
It's a great learning experience to get that one.
00:00
However column, it is
00:00
definitely focused on general project management,
00:00
not information system security and
00:00
so ISSMP provides that focus there.
00:00
ISSMP has direct competitor.
00:00
It's the ISACA CISA,
00:00
Certified Information Security Auditor certificate,
00:00
so that one's got a peer
00:00
if you will. That works really well.
00:00
On ISSEP side of the house,
00:00
the engineering side of the house, there is, of course,
00:00
in cozy set of
00:00
professional certifications on systems engineering,
00:00
but those are general top-level
00:00
systems engineering and they don't get into
00:00
the meat and potatoes of
00:00
information system security engineering
00:00
thus we have ISSEP.
00:00
Each one of these concentrations,
00:00
and I know folks that hold all three of them are
00:00
great demonstrations of subject matter expertise
00:00
in an area of whether it's audit,
00:00
management, engineering
00:00
focused on information system security.
00:00
Why the heck would you get the ISSEP concentration?
00:00
Well, many people get it for advancement.
00:00
They want to move along
00:00
in their jobs and this shows that they have
00:00
the requisite knowledge to be
00:00
a more senior person in
00:00
an organization, which is awesome.
00:00
In this case here,
00:00
I took ISSEP myself to get some specialized skills.
00:00
I really wanted to delve back
00:00
into the systems engineering side
00:00
of the house and it's something that
00:00
I have wave top dabbled in and out of throughout
00:00
my career and I really thought it was time
00:00
to show that I do have some knowledge in that area.
00:00
Show that subject matter expertise knowledge.
00:00
A lot of times you find yourself ISSEP supporting
00:00
government systems and as
00:00
I stated ISS started
00:00
out really in the US federal government,
00:00
but they have since expanded
00:00
because of the complexity of systems today.
00:00
Then of course you have supportive industry system.
00:00
There's a lot of organizations now out there in industry
00:00
that have a growing need
00:00
for systems engineering support that is
00:00
specifically focused on
00:00
the information security and cybersecurity spaces.
00:00
Because frankly, we build incredibly complex systems.
00:00
Your smartphone, for example,
00:00
is a systems engineering marvel
00:00
and we'll do several examples throughout the course of
00:00
those types of things where you might not think of
00:00
your smartphone is having to
00:00
go through a systems engineering process,
00:00
but it absolutely did because
00:00
your smartphone is made
00:00
up of multiple pieces and parts and
00:00
multiple things that make it
00:00
work and it didn't just come together by magic.
00:00
It wasn't just software developers writing something.
00:00
It was systems engineers
00:00
driving the train to put those things together.
00:00
That's where ISS come in
00:00
on the information security side of the house.
00:00
In this lesson, we covered
00:00
a CISSP concentrations what they are,
00:00
where they came from, what we talked about,
00:00
why you should consider pursuing
00:00
the ISSP concentration. Will see you next time.
Up Next