Domain 1: Security and Risk Management

In this domain, Security and Risk Management, you should broaden your knowledge of the following topics:

1- Professional ethics.

2- Security concepts.

3- Security governance principles.

4- Legal, regulatory, and compliance requirements.

5- Requirements for investigation types.

6- Policy, standards, procedures, and guidelines.

7- Business Continuity requirements.

8- Personnel security policies and procedures.

9- Risk management concepts.

10- Threat modeling concepts and methodologies.

11- Supply Chain Risk Management concepts.

12- Security awareness, education, and training programs.