
Prioritize ethics over merely passing exams, following ISC Square’s commitment to prevent unethical use of knowledge. See how ethics shape trust, cooperation, workplace conversations, and public speeches, and avoid harm.
Apply defense in depth by layering safeguards tailored to the attack and assets, and avoid obscurity, ensuring information assets stay protected even if security mechanisms are known.
Explore how authenticity relies on proper authentication to confirm that something is genuine, and how non-repudiation uses traceability to prevent denying actions.
Learn how organizational structures and governance shape information processing, contrast governance with compliance, and explore management systems and frameworks that ensure rules are followed.
Align security functions with the organization's business strategy, goals, and audience, balancing protection with innovation and service quality. Governance and management guide decisions to support strategic objectives and stakeholder trust.
Discover security management frameworks like ISO-IEC 27001, 27002, NIST SP 800-37, COBIT, FedRAMP, COSO, PCI DSS, and ITIL, and how risk assessment informs information security management and governance.
Establish governance and internal control to foster trust and ensure implementation of organizational operations. Align due diligence with due care by creating rules and acting responsibly to secure the enterprise.
Discover cross-border data flow under GDPR, compare with DPD, and apply rights of access, erasure, and data portability, plus adequacy certification and 72-hour breach notification.
Protect personal information by clarifying use scope and obtaining consent before disclosures, covering PII and PHI. Examine HIPAA and HITECH distinctions, COPPA for children, and patient rights in privacy governance.
Explore the categories and rules governing evidence, including real, direct, circumstantial, corroborative, hearsay, and secondary evidence, the best and parole evidence rules, and chain of custody.
Organize security methods around the company's goals and document them in a clear, hierarchical structure to ensure security measures protect assets and align actions with objectives.
Identify and prioritize the most critical functions to restore quickly after disasters, estimate recovery time, and allocate resources to support the disaster recovery plan and reassure stakeholders.
Human beings introduce vulnerabilities, but with proper training and motivation they become invaluable security assets, viewing people as a vital component of any security initiative.
Use a vendor management system to assess cost, financial stability, staffing, and ISO-aligned structures, then select, monitor, and survey vendors to prevent monopolies and safeguard data.
Continuously monitor risks in real-time to stay informed about the current risk landscape across industries and act immediately to prevent money laundering, protect patient data, and address product quality.
Course Overview
CISSP (Certified Information Systems Security Professional) is a globally recognized certification in the field of information security.
This course covers the following categories in CISSP CBK Domain 1.
The CISSP exam emphasizes the ability to think in accordance with principles that can be applied in any situation. You may find the explanations in the course to be a little brief, but this will help you to grasp the whole picture smoothly.
Course Content
Study Videos by Domain
Downloadable PDF slides
CISSP Exam Preparation
Multiple Choice Practice Questions
Notes
This is not an official training course provided by (ISC)².
The exam content may have changed since the course was created.
This course covers the certification for CISSP Domain 1. Other domains are not covered in this course.
The content of this course is the same as the English version of the “【日本語】初心者から学べるCISSP講座:CBK Domain 1” course.
Trademarks
(ISC)2 and CISSP® appearing in this video content and accompanying text are registered trademarks of their respective companies.
The names of servers, software, and products appearing in this video content and accompanying text are the trademarks or registered trademarks of their respective developers. The names of products, organizations, and groups are listed solely for the purpose of creating this course, and the author has no intention of infringing on any of these trademarks.