
Begin your CISSP prep journey with a beginner-friendly introduction to information security, designed to be accessible for everyone and guided every step of the way.
Explore the CISSP certification and its eight domains, focusing on domain four communications and network security, with a multiple choice question to assess understanding.
Discover how network defense extends beyond encryption, using multi-layered security with malware detection by network devices and antivirus, plus patches and user education to safeguard the ecosystem.
Explore how networks connect devices and organizations, from pan to global area networks. Understand internet versus intranet, simplex to full-duplex, and VPNs along with size-based network classifications.
Explore network topologies, nodes, fault tolerance, and configurations—bus, tree, ring, star, and mesh—and note how switches use cut-through or store-and-forward methods, and how DDoS attacks threaten availability.
Explore traffic flow in data centers, distinguishing east west intra-data-center traffic from north south external traffic, and learn how encryption secures both directions, including southbound and northbound data.
Implement micro-segmentation to limit access within internal networks and support zero-trust principles. Distinguish physical segmentation with air gaps from logical segmentation via software configuration to balance security and cost.
Discover how network protocol defines procedures and conventions for transmitting and receiving data, establishing computer communication standards. See how format and method vary by medium, requiring agreed data handling rules.
Explore the OSI reference model and the TCP/IP model, detailing seven layers from physical to application, encapsulation with headers, and how data is packaged and transmitted across networks.
Explore how MAC addresses and IP addresses route data from a LAN to the internet, covering IPv4 and IPv6, NAT variants, and ARP/RARP for address resolution.
Explore how ICMP operates at the network layer, enabling ping checks and troubleshooting without guaranteed delivery, and examine UDP and TCP, including the three-way handshake and Smurf attack concepts.
Examine how IPsec secures data at the network layer with tunnels and security associations. Contrast SSL/TLS, which encrypts data at the session or application layer for HTTPS.
Explore converged protocols pairing standard tcp/ip with specialized protocols across industrial reliability, dnp 3.0, storage san like fcoe and iscsi, and memory networking with infiniband, rdma, and cxl.
Analyze routing protocols at the network layer, compare static routing with distance-vector and link-state approaches, and learn how RIP, hello packets, and topology table optimize shortest-path routing and fault recovery.
Explore network devices and the physical layer, demystifying a challenging topic for the CISSP exam. Understand the high-level principles, best practices, and technology enabling instant global data transmission.
Explore how cellular and mobile networks, from base stations to 5G, enable wireless access through ISPs and backhaul, while packet switching underpins the internet’s global data exchange.
Compare baseband and broadband transmissions: baseband sends signals directly as voltage changes using the full bandwidth. Modulate data onto a carrier and use frequency division multiplexing in broadband transmissions.
Compare network cables at the physical layer, including unshielded and shielded twisted pair, coaxial, and fiber optics, highlighting EMI, single-mode fiber, wavelength division multiplexing, and Ethernet CSMA/CD to avoid collisions.
Explore wireless communication technologies including wifi, bluetooth, zigbee, and satellite, and compare ISM bands 2.4 ghz and 5 ghz while covering ssid visibility, mac filtering, and WPA to WPA3 encryption.
Review how physical and data link layer devices—from repeaters and hubs to bridges and switches—segment networks with VLANs and private VLANs; learn port mirroring and routers interconnect LANs.
Implement access controls, firewalls, and intrusion detection systems to protect assets from threats. Enforce authentication and continuous monitoring to block unauthorized access, reduce risk, and improve performance.
Explore the data plane, control plane, and management plane, and explain how each governs data movement, routing decisions, and device monitoring. Use a mail-delivery analogy to simplify network operations.
Discover how software-defined networking centralizes control, displays current network configurations on screen, automatically applies changes, and enables quick, customizable setups with greater network visibility and efficiency for administrators.
Explore how a virtual private cloud creates a logically separated private network inside a public cloud, using private subnets or VLANs, via software control.
Explore how edge networks bring data processing closer to users to reduce latency and save bandwidth for real-time applications like autonomous driving, VR, and IoT, managing ingress and egress securely.
Explore how content delivery networks (CDNs) reduce latency by storing content and routing downloads to the nearest server, leveraging an edge network to deliver images, videos, and web pages quickly.
The lecture covers performance metrics like bandwidth, latency, jitter, throughput, and the impact of signal-to-noise ratio and noise on network performance for data transmission.
Explore observability and monitoring to reveal a system’s internal state and overall behavior, identify hidden patterns, and optimize cross-system traffic with shaping and traffic priorities.
Explain how dial-up authentication evolved from PAP to CHAP, with CHAP's challenge-response hashing, and introduce flexible EAP methods like EAP-MD5 and EAP-TLS for mutual authentication using certificates.
Explore firewall types—from packet filter to stateful and next generation firewalls—and how they enforce access control, inspect content, and segment networks with a DMZ and micro-segmentation.
Explore how load balancers distribute requests across multiple servers to minimize response times, using random, round robin, weighting, connection-based, distance-based methods, plus persistence and active-active vs active-passive configurations.
Explore the application layer of the OSI model, focusing on layer seven protocols and their unique approaches based on the functions you wish to develop for service content.
Evaluate remote meeting apps for authentication, encryption, data management, and auditing to protect content and prevent unauthorized access, while recognizing risks from chat, file sharing, VoIP, and AI voice impersonation.
Explore remote access concepts, including desktop and console screens, VNC, RDP, and SSH, plus jump boxes and VDI, emphasizing secure, centralized processing and data protection.
Explore endpoint security by deploying antivirus software with real-time scanning and firewall features, applying regular updates to detect and remove malware at the execution stage, complementing network defenses.
Learn how well-known ports and the tcp/udp protocols enable secure, efficient communications across services such as telnet, ssh, ftp, scp, tftp, dns, smtp, pop, imap, http, https, and dhcp.
Master the CISSP exam timing and question strategies for the computerized adaptive CAT, with 100–150 questions in three hours, by using five review rounds and process-of-elimination reasoning.
Master CISSP concepts and exam strategy by exploring four dimensions—security to achieve corporate goals, absence of a safe state, money as driver, and organizational decision making.
Develop an interest in information security by reflecting on its importance and forming your own opinions. Build confidence discussing these topics with others.
Course Overview
CISSP (Certified Information Systems Security Professional) is a globally recognized certification in the field of information security.
This course covers the following categories in CISSP CBK Domain 4.
The CISSP exam emphasizes the ability to think in accordance with principles that can be applied in any situation. You may find the explanations in the course to be a little brief, but this will help you to grasp the whole picture smoothly.
Course Content
Study Videos by Domain
Downloadable PDF slides
CISSP Exam Preparation
Multiple Choice Practice Questions
Notes
This is not an official training course provided by (ISC)².
The exam content may have changed since the course was created.
This course covers the certification for CISSP Domain 4. Other domains are not covered in this course.
The content of this course is the same as the English version of the “【日本語】初心者から学べるCISSP講座:CBK Domain 4” course.
Trademarks
(ISC)2 and CISSP® appearing in this video content and accompanying text are registered trademarks of their respective companies.
The names of servers, software, and products appearing in this video content and accompanying text are the trademarks or registered trademarks of their respective developers. The names of products, organizations, and groups are listed solely for the purpose of creating this course, and the author has no intention of infringing on any of these trademarks.