ebook img

CISSP All-in-One Exam Guide PDF

1361 Pages·2021·87.035 MB·English
Save to my drive
Quick download
Download
Most books are stored in the elastic cloud where traffic is expensive. For this reason, we have a limit on daily download.

Preview CISSP All-in-One Exam Guide

All-In-One / CISSP® All-in-One Exam Guide, Ninth Edition / Maymí / 737-6 / Front Matter Blind Folio i Praise for CISSP® All-in-One Exam Guide Fernando’s latest update to the CISSP All-In-One Exam Guide continues the tradition started in past collaborations with Shon Harris of breaking down key concepts and criti- cal skills in a way that prepares the reader for the exam. Once again the material proves to be not only a vital asset to exam preparation but a valued resource reference for use well after the exam has been passed. Stefanie Keuser, CISSP, Chief Information Officer, Military Officers Association of America The CISSP All-in-One Exam Guide is the only book one needs to pass the CISSP exam. Fernando Maymí is not just an author, he is a leader in the cybersecurity industry. His insight, knowledge, and expertise is reflected in the content provided in this book. The book will not only give you what you need to pass the exam, it can also be used to help you further your career in cybersecurity. Marc Coady, CISSP, Compliance Analyst, Costco Wholesale A must-have reference for any cyber security practitioner, this book provides invaluable practical knowledge on the increasingly complex universe of security concepts, controls, and best practices necessary to do business in today’s world. Steve Zalewski, Former Chief Information Security Officer, Levi Strauss & Co. Shon Harris put the CISSP certification on the map with this golden bible of the CISSP. Fernando Maymí carries that legacy forward beautifully with clarity, accuracy, and balance. I am sure that Shon would be proud. David R. Miller, CISSP, CCSP, GIAC GISP GSEC GISF, PCI QSA, LPT, ECSA, CEH, CWNA, CCNA, SME, MCT, MCIT Pro EA, MCSE: Security, CNE, Security+, etc. 00-FM.indd 1 11/09/21 12:40 PM All-In-One / CISSP® All-in-One Exam Guide, Ninth Edition / Maymí / 737-6 / Front Matter Blind Folio ii An excellent reference. Written clearly and concisely, this book is invaluable to students, educators, and practitioners alike. Dr. Joe Adams, Founder and Executive Director, Michigan Cyber Range A lucid, enlightening, and comprehensive tour de force through the breadth of cyber security. Maymí and Harris are masters of the craft. Dr. Greg Conti, Founder, Kopidion LLC I wish I found this book earlier in my career. It certainly was the single tool I used to pass the CISSP exam, but more importantly it has taught me about security from many aspects I did not even comprehend previously. I think the knowledge that I gained from this book is going to help me in many years to come. Terrific book and resource! Janet Robinson, Chief Security Officer 00-FM.indd 2 11/09/21 12:40 PM All-In-One / CISSP® All-in-One Exam Guide, Ninth Edition / Maymí / 737-6 / Front Matter Blind Folio iii ALL IN ONE CISSP® E X A M G U I D E 00-FM.indd 3 11/09/21 12:40 PM All-In-One / CISSP® All-in-One Exam Guide, Ninth Edition / Maymí / 737-6 / Front Matter Blind Folio iv ABOUT THE AUTHORS Fernando Maymí, PhD, CISSP, is a security practitioner with over 25 years’ experience in the field. He is currently Vice President of Training at IronNet Cybersecurity, where, besides develop- ing cyber talent for the company, its partners, and customers, he has led teams providing strategic consultancy, security assess- ments, red teaming, and cybersecurity exercises around the world. Previously, he led advanced research and development projects at the intersection of artificial intelligence and cybersecurity, stood up the U.S. Army’s think tank for strategic cybersecurity issues, and was a West Point faculty member for over 12 years. Fernando worked closely with Shon Harris, advising her on a multitude of projects, including the sixth edition of the CISSP All-in-One Exam Guide. Shon Harris, CISSP, was the founder and CEO of Shon Harris Security LLC and Logical Security LLC, a security consultant, a former engineer in the Air Force’s Infor- mation Warfare unit, an instructor, and an author. Shon owned and ran her own training and consulting companies for 13 years prior to her death in 2014. She consulted with Fortune 100 corporations and government agencies on extensive security issues. She authored three best-selling CISSP books, was a contributing author to Gray Hat Hacking: The Ethical Hacker’s Handbook and Security Information and Event Management (SIEM) Implementation, and a technical editor for Information Security Magazine. About the Contributor/Technical Editor Bobby E. Rogers is an information security engineer working as a contractor for Depart- ment of Defense agencies, helping to secure, certify, and accredit their information sys- tems. His duties include information system security engineering, risk management, and certification and accreditation efforts. He retired after 21 years in the U.S. Air Force, serving as a network security engineer and instructor, and has secured networks all over the world. Bobby has a master’s degree in information assurance (IA) and is pursuing a doctoral degree in cybersecurity from Capitol Technology University in Maryland. His many certifications include CISSP-ISSEP, CEH, and MCSE: Security, as well as the CompTIA A+, Network+, Security+, and Mobility+ certifications. 00-FM.indd 4 11/09/21 12:40 PM All-In-One / CISSP® All-in-One Exam Guide, Ninth Edition / Maymí / 737-6 / Front Matter Blind Folio v ALL IN ONE CISSP® E X A M G U I D E Ninth Edition Fernando Maymí Shon Harris New York Chicago San Francisco Athens London Madrid Mexico City Milan New Delhi Singapore Sydney Toronto McGraw Hill is an independent entity from (ISC)²® and is not affiliated with (ISC)² in any manner. This study/training guide and/or material is not sponsored by, endorsed by, or affiliated with (ISC)2 in any manner. This publication and accompanying media may be used in assisting students to prepare for the CISSP exam. Neither (ISC)² nor McGraw Hill warrants that use of this publication and accompanying media will ensure passing any exam. (ISC)²®, CISSP®, CAP®, ISSAP®, ISSEP®, ISSMP®, SSCP® and CBK® are trademarks or registered trademarks of (ISC)² in the United States and certain other countries. All other trademarks are trademarks of their respective owners. 00-FM.indd 5 11/09/21 12:40 PM Copyright © 2022 by McGraw Hill. All rights reserved. Except as permitted under the United States Copyright Act of 1976, no part of this publication may be reproduced or distributed in any form or by any means, or stored in a database or retrieval system, without the prior written permission of the publisher. ISBN: 978-1-26-046736-9 MHID: 1-26-046736-8 The material in this eBook also appears in the print version of this title: ISBN: 978-1-26-046737-6, MHID: 1-26-046737-6. eBook conversion by codeMantra Version 1.0 All trademarks are trademarks of their respective owners. Rather than put a trademark symbol after every occurrence of a trademarked name, we use names in an editorial fashion only, and to the benefit of the trademark owner, with no intention of infringement of the trademark. Where such designations appear in this book, they have been printed with initial caps. McGraw-Hill Education eBooks are available at special quantity discounts to use as premiums and sales promotions or for use in corporate training programs. To contact a representative, please visit the Contact Us page at www.mhprofessional.com. Information has been obtained by McGraw Hill from sources believed to be reliable. However, because of the possibility of human or mechanical error by our sources, McGraw Hill, or others, McGraw Hill does not guarantee the accuracy, adequacy, or completeness of any information and is not responsible for any errors or omissions or the results obtained from the use of such information. TERMS OF USE This is a copyrighted work and McGraw-Hill Education and its licensors reserve all rights in and to the work. Use of this work is subject to these terms. Except as permitted under the Copyright Act of 1976 and the right to store and retrieve one copy of the work, you may not decompile, disassemble, reverse engineer, reproduce, modify, create derivative works based upon, transmit, distribute, disseminate, sell, publish or sublicense the work or any part of it without McGraw-Hill Education’s prior consent. You may use the work for your own noncommercial and personal use; any other use of the work is strictly prohibited. Your right to use the work may be terminated if you fail to comply with these terms. THE WORK IS PROVIDED “AS IS.” McGRAW-HILL EDUCATION AND ITS LICENSORS MAKE NO GUARANTEES OR WARRANTIES AS TO THE ACCURACY, ADEQUACY OR COMPLETENESS OF OR RESULTS TO BE OBTAINED FROM USING THE WORK, INCLUDING ANY INFORMATION THAT CAN BE ACCESSED THROUGH THE WORK VIA HYPERLINK OR OTHERWISE, AND EXPRESSLY DISCLAIM ANY WARRANTY, EXPRESS OR IMPLIED, IN- CLUDING BUT NOT LIMITED TO IMPLIED WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PAR- TICULAR PURPOSE. McGraw-Hill Education and its licensors do not warrant or guarantee that the functions contained in the work will meet your requirements or that its operation will be uninterrupted or error free. Neither McGraw-Hill Education nor its licensors shall be liable to you or anyone else for any inaccuracy, error or omission, regardless of cause, in the work or for any damages resulting therefrom. McGraw-Hill Education has no responsibility for the content of any information ac- cessed through the work. Under no circumstances shall McGraw-Hill Education and/or its licensors be liable for any indirect, incidental, special, punitive, consequential or similar damages that result from the use of or inability to use the work, even if any of them has been advised of the possibility of such damages. This limitation of liability shall apply to any claim or cause whatsoever whether such claim or cause arises in contract, tort or otherwise. All-In-One / CISSP® All-in-One Exam Guide, Ninth Edition / Maymí / 737-6 / Front Matter Blind Folio vii We dedicate this book to all those who have served others selflessly. 00-FM.indd 7 11/09/21 12:40 PM Passport_2019 / Mike Meyers’ CompTIA Security+™ Certification Passport / Dunkerley / 795-3 / FM / Blind folio: vi This page intentionally left blank 00-FM.indd 6 09/11/20 6:45 PM All-In-One / CISSP® All-in-One Exam Guide, Ninth Edition / Maymí / 737-6 / Front Matter CONTENTS AT A GLANCE Part I Security and Risk Management Chapter 1 Cybersecurity Governance ................................................ 3 Chapter 2 Risk Management .........................................................53 Chapter 3 Compliance .............................................................. 125 Chapter 4 Frameworks .............................................................. 171 Part II Asset Security Chapter 5 Assets ..................................................................... 213 Chapter 6 Data Security ............................................................. 253 Part III Security Architecture and Engineering Chapter 7 System Architectures .................................................... 283 Chapter 8 Cryptology ............................................................... 317 Chapter 9 Security Architectures................................................... 385 Chapter 10 Site and Facility Security ................................................ 417 Part IV Communication and Network Security Chapter 11 Networking Fundamentals ............................................. 469 Chapter 12 Wireless Networking .................................................... 559 Chapter 13 Securing the Network ................................................... 597 Chapter 14 Network Components .................................................. 643 Chapter 15 Secure Communications Channels .................................... 681 Part V Identity and Access Management Chapter 16 Identity and Access Fundamentals .................................... 715 Chapter 17 Managing Identities and Access ....................................... 765 ix 00-FM.indd 9 11/09/21 12:40 PM

See more

The list of books you might like

Most books are stored in the elastic cloud where traffic is expensive. For this reason, we have a limit on daily download.