ISC2 ISSEP®: Information Systems Security Engineering Professional
Course 2081
5 DAY COURSE

Course Outline

The Information Systems Security Engineering Professional (ISSEP) is a security leader who specializes in the practical application of systems engineering principles and processes to develop secure systems. An ISSEP analyzes organizational needs, defines security requirements, designs security architectures, develops secure designs, implements system security, and supports system security assessment and authorization for government and industry.

ISC2 ISSEP®: Information Systems Security Engineering Professional Benefits

  • Course Benefits

    • Apply systems security engineering fundamentals
    • Participate in the technology procurement management
    • Apply security risk management principles
    • Analyze organizational and operational environment
    • Implement and integrate security solutions
    • Develop secure operations plan

    Prerequisites

    Candidates must meet one of the following:

    • Hold an active CISSP in good standing and have two years of cumulative full-time experience in one or more ISSAP domains
      OR
    • Possess seven years of cumulative full-time experience in two or more ISSAP domains

    Experience Substitution:

    • A relevant bachelor’s or master’s degree or an approved ISC2 credential may substitute for one year of experience
    • Part-time work and internships may count toward experience requirements

ISSEP Security Engineering Certification Outline

Learning Objectives

Domain 1: Systems Security Engineering Foundations

  • Apply systems security engineering fundamentals
  • Execute systems security engineering processes (e.g., hardware, software, data)
  • Integrate with system development methodology
  • Perform technical management
  • Participate in the technology procurement management
  • Resource Analysis (e.g., Cost estimation, personnel costs, probabilities and statistics (Monte Carlo))

    Domain 2: Risk Management

    • Apply security risk management principles
    • Manage risk to system
    • Manage risk to operations

    Domain 3: Security Planning and Engineering

    • Analyze organizational and operational environment
    • Apply system security principles
    • Develop system requirements
    • Create system security design

    Domain 4: Systems Security Implementation, Verification and Validation

    • Implement and integrate security solutions
    • Verify successful implementation
    • Develop system requirements
    • Create system security design

    Domain 5: Secure Operations, Change Management and Disposal

    • Develop secure operations plan
    • Support secure operations
    • Participate in change management
    • Participate in the disposal process
    Course Dates
    Attendance Method
    Note about the Certification Exam

    When you register for the course, you will be prompted to choose Y/N to take the exam. Please select yes, as all HHS CISO employees are required to attempt the exam if one is offered for the course. Please be advised, if your course if funded by DIR, the Certification Organization has agreed to provide DIR the pass/fail status of your exam. DIR will only share this information in an aggregated report to state leadership that reflects total exam pass or fails. No individual names of any students will be included in any reports.

    DIR requires that you submit the request for your exam voucher within one month of the last day of your course. DIR requires that you take your exam within six months of the last day of your course.

    Additional comments or questions (optional)