Chapter 10. Security Operations

The Security Operations domain examines the items that are used on a day-to-day basis to keep a network up and running in a secure state. Therefore, topics from virus control to personnel management, security auditing, audit trails, and backup are introduced. Some of these items are expanded on within other domains because, in the end, all security topics are interrelated. The following list gives some key areas of knowledge that you need to master for this part of the CISSP exam:

• Change control and configuration management

• Dual control, separation of duties, rotation of duties

• Vulnerability assessment and pen-testing

• Asset management and control from creation to destruction

Practice Questions

1. Attackers ...

Get CISSP Practice Questions Exam Cram, Third Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.