Information Systems Security Management Professional is an independent information security certification concentration of the CISSP governed by the International Information Systems Security Certification Consortium (commonly known as (ISC)2).
Contents |
Certification subject matter
This concentration contains deeper managerial elements such as project management, risk management, setting up and delivering a security awareness program, and managing a Business Continuity Planning program. A CISSP-ISSMP establishes, presents, and governs information security policies and procedures that are supportive to overall business goals, rather than a drain on resources. Typically the CISSP-ISSMP certification holder or candidate will be responsible for constructing the framework of the information security department and define the means of supporting the group internally. [1]
ISSMP domains
The major domains of the CBK covered by ISSMP certification are:
- Business Continuity Planning (BCP) and Disaster Recovery Planning (DRP) and Continuity of Operations Planning (COOP)
- Enterprise Security Management Practices
- Enterprise-wide System Development Security
- Law, Investigations, Forensics, and Ethics
- Overseeing Compliance of Operations Security
Requirements
According to the (ISC)2 Information Systems Security Management Professional (ISSMP) Candidate
Information Bulletin, candidates for the ISSMP must meet the following requirements:
- Be a CISSP in good standing
- Demonstrate two years of professional experience in the area of management
- Pass the ISSMP exam
- Adhering to the (ISC)2 Code of Ethics[2].
Specialized concentrations
Passing a concentration examination demonstrates proven capabilities and subject-matter expertise beyond that required for the CISSP credentials. The other two current concentrations for CISSPs include the:
For all concentrations an official (ISC)2 training is available.[3]
See also
References
External links
This entry is from Wikipedia, the leading user-contributed encyclopedia. It may not have been reviewed by professional editors (see full disclaimer)




