Udemy: CISSP certification domain 1 & 2

Description

This certification was part of a course called Professional Skils 3, which was meant to extend our knowledge and become a professional in preparation for graduation. As i have had experience for 1.5 year in information security at the largest HR partner in the world, Randstad Group, this was a logical step to take. The more i dive deeper into the topic of info sec, the more it starts to interest me. Considering we're dealing with technologies such as AI and Quantum Computing, we must secure information better than ever before. Some of my learning points included:

  • CIA(NA): Confidentiality, Integrity, Availability, Non-repudiation and Authentication

  • The opposite of CIA: DAD - Disclosure, Alteration and Destruction

  • Security governance principles - frameworks, ISO series, legal accountability (Due Dilligence and Due Care, for example), privacy and regulations

  • Risk analysis methodology - risk analysis matrix, risk register, quantitative risk analysis vs qualitative risk analysis

  • Business Continuity, Business Impact Analysis (BIA)

  • Data classification, user roles and ownership

  • Data protection, destruction and data remanence