Choose your language
CISSP Prep Course
More than 2 million students worldwide

CISSP Prep Course

The CISSP Prep Course delivers comprehensive, domain-by-domain preparation for one of the most respected certifications in information security. You will master all eight CISSP domains, from security governance and cryptography to incident response and secure software development. Built for working security professionals, this course sharpens both the technical depth and managerial mindset the adaptive exam demands.

Dedika for businesses

What you will learn:

This course covers every domain tested on the CISSP exam, including asset security, security architecture, network security, identity and access management, and security operations. You will learn how to build and evaluate enterprise security programs, apply risk management frameworks, and design secure network architectures using zero-trust principles. The curriculum also addresses cloud security controls, threat intelligence, penetration testing methodology, and regulatory compliance obligations. Exam strategy modules teach you how to approach adaptive testing, manage your time, and eliminate distractors with confidence. By the end, you will have the knowledge and critical-thinking skills required to pass the CISSP exam and advance your security career.

How you study in practice CISSP Prep Course

How you practise CISSP Prep Course

For companies looking to train their teams

With Dedika for businesses, the course includes exercises and examples tailored to your company and its specific needs.

Click here

Course content

8 Chapters • 38 LessonsDuration between 4 and 360 hours (you decide)

Chapter 1See details

CISSP Exam and Security Foundations

  • Lesson 1 • Security Governance Fundamentals

    Explains how policies, standards, procedures, and guidelines form a governance hierarchy. Grounds candidates in organisational accountability structures.

  • Lesson 2 • Risk Management Basics

    Defines threat, vulnerability, and risk, then introduces qualitative and quantitative analysis. Prepares candidates for deeper risk topics in later chapters.

  • Lesson 3 • Core Security Concepts

    Introduces confidentiality, integrity, and availability as the CIA triad. Connects foundational vocabulary to real-world security decisions.

  • Lesson 4 • CISSP Credential Overview

    Covers exam eligibility, endorsement process, and (ISC)² code of ethics. Sets the professional context for the entire course.

Chapter 2See details

Asset Security and Data Classification

  • Lesson 1 • Privacy and Data Protection Principles

    Covers privacy-by-design, data minimisation, and regulatory privacy concepts. Connects asset protection to organisational compliance obligations.

  • Lesson 2 • Data Lifecycle Management

    Traces data from creation through destruction and maps controls to each phase. Reinforces governance concepts introduced in Chapter 1.

  • Lesson 3 • Asset Handling and Media Controls

    Addresses physical and logical controls for media containing sensitive data. Extends classification into operational handling procedures.

  • Lesson 4 • Information Classification Schemes

    Compares government and commercial classification levels and their handling requirements. Anchors data protection decisions to classification labels.

Chapter 3See details

Security Architecture and Engineering

  • Lesson 1 • Security Models and Frameworks

    Examines Bell-LaPadula, Biba, Clark-Wilson, and other formal models. Connects theoretical models to real access-control implementations.

  • Lesson 2 • Physical Security in Architecture

    Addresses site selection, perimeter controls, and environmental threats to infrastructure. Integrates physical protection into the overall security architecture.

  • Lesson 3 • Cryptography Fundamentals

    Covers symmetric, asymmetric, and hashing algorithms along with key management. Provides the cryptographic knowledge needed for network and identity chapters.

  • Lesson 4 • Secure Design Principles

    Introduces fail-safe defaults, open design, and separation of privilege as foundational engineering principles. Builds the design mindset required for architecture evaluation.

  • Lesson 5 • Vulnerabilities in System Components

    Identifies weaknesses in hardware, firmware, and virtualised environments. Prepares candidates to assess architecture risks in complex systems.

Chapter 4See details

Communication and Network Security

  • Lesson 1 • Network Attacks and Countermeasures

    Analyses DoS, man-in-the-middle, and spoofing attacks with corresponding mitigations. Prepares candidates to identify and counter common network threats.

  • Lesson 2 • Secure Network Architecture Design

    Examines segmentation, DMZ design, and network zoning strategies. Applies defence-in-depth from Chapter 1 to network topology decisions.

  • Lesson 3 • Network Models and Protocols

    Reviews OSI and TCP/IP models and maps security controls to each layer. Establishes the protocol knowledge base for all network security topics.

  • Lesson 4 • Secure Communication Channels

    Addresses VPN technologies, TLS/SSL, and secure remote access methods. Builds on cryptography from Chapter 3 to secure data in transit.

  • Lesson 5 • Network Security Devices and Controls

    Covers firewalls, IDS/IPS, proxies, and content filters as layered controls. Connects device selection to the architecture principles from Chapter 3.

Chapter 5See details

Identity and Access Management

  • Lesson 1 • Privileged Access and Accountability

    Addresses privileged account management, session monitoring, and audit trails. Reinforces least privilege and accountability principles from Chapter 1.

  • Lesson 2 • Identity Management Concepts

    Defines identity proofing, provisioning, and the identity lifecycle. Grounds IAM in the governance and asset concepts from earlier chapters.

  • Lesson 3 • Access Control Models

    Examines DAC, MAC, RBAC, and ABAC models and their appropriate use cases. Extends the formal models introduced in Chapter 3 to operational access decisions.

  • Lesson 4 • Single Sign-On and Federation

    Covers SSO architectures, SAML, OAuth, and OpenID Connect protocols. Builds on cryptography and network knowledge to explain federated trust.

  • Lesson 5 • Authentication Methods and Factors

    Compares passwords, tokens, biometrics, and multi-factor authentication. Connects authentication strength to risk levels established in Chapter 1.

Chapter 6See details

Secure Software Development

  • Lesson 1 • Common Software Vulnerabilities

    Covers injection flaws, broken authentication, and insecure deserialisation from established vulnerability lists. Connects vulnerability classes to secure coding countermeasures.

  • Lesson 2 • Software Supply Chain Security

    Addresses third-party libraries, open-source risks, and software bill of materials (SBOM). Extends asset management from Chapter 2 to software components.

  • Lesson 3 • Secure Development Lifecycle Models

    Compares waterfall, agile, and DevSecOps models with security integration points. Builds on testing concepts from Chapter 6 to embed security earlier in development.

  • Lesson 4 • Secure Coding Practices

    Teaches input validation, error handling, and secure API design as coding standards. Provides actionable controls developers apply to prevent vulnerabilities.

  • Lesson 5 • Database and Storage Security

    Covers database access controls, encryption at rest, and data masking techniques. Connects data classification from Chapter 2 to database protection controls.

Chapter 7See details

Security Assessment and Testing

  • Lesson 1 • Software Testing for Security

    Introduces code review, SAST, DAST, and fuzz testing as software assurance methods. Prepares candidates for the software security domain in Chapter 7.

  • Lesson 2 • Security Assessment Strategies

    Distinguishes vulnerability scans, assessments, and audits by scope and rigour. Frames testing as a continuous validation of controls from all prior chapters.

  • Lesson 3 • Security Audits and Log Review

    Addresses audit types, log management, and evidence collection for compliance. Reinforces accountability mechanisms introduced in Chapter 5.

  • Lesson 4 • Penetration Testing Methodology

    Walks through reconnaissance, exploitation, and reporting phases of a pen test. Applies network and IAM knowledge from Chapters 4 and 5 to offensive scenarios.

  • Lesson 5 • Vulnerability Assessment Techniques

    Covers scanning tools, CVE databases, and remediation prioritisation. Connects identified vulnerabilities to the risk management framework from Chapter 1.

Chapter 8See details

Security Operations and Incident Response

  • Lesson 1 • Incident Response Lifecycle

    Walks through preparation, detection, containment, eradication, and recovery phases. Applies assessment and testing skills from Chapter 6 to real incident scenarios.

  • Lesson 2 • Security Operations Centre Functions

    Defines SOC roles, monitoring workflows, and alert triage processes. Integrates SIEM and log review skills from Chapter 6 into operational practice.

  • Lesson 3 • Operational Security Controls

    Covers change management, configuration management, and patch management as daily controls. Ties together controls from all prior domains into operational practice.

  • Lesson 4 • Business Continuity and Disaster Recovery

    Addresses BIA, RTO/RPO targets, and recovery strategy selection. Connects risk management from Chapter 1 to operational resilience planning.

  • Lesson 5 • Digital Forensics Fundamentals

    Covers evidence acquisition, chain of custody, and forensic analysis techniques. Reinforces evidence handling principles introduced in Chapter 6.

Certification

Your valid completion certificate

This course is for you:

  • Security analyst: ready to validate expertise and move into senior leadership roles.

  • Network engineer: seeking to broaden skills beyond infrastructure into full security governance.

  • IT auditor: aiming to deepen technical security knowledge alongside compliance expertise.

  • Systems administrator: transitioning into a dedicated security career with a recognised credential.

  • Compliance officer: looking to strengthen technical fluency across all major security domains.

  • Military or government IT professional: pursuing civilian security credentials after years of service.

What our students say

Your lessons are perfect. I purchased the one-year package and finally have the opportunity to follow various topics of interest without needing to change platforms... I'm grateful for everything you do, I've already recommended you to other people...
Giulio Carlo
Giulio CarloDigital Marketing Student
I like how the lessons are straight to the point and how I can change chapters and skip content I don't need.
Mariana Ferres
Mariana FerresPhotography Student
I like the content and the way videos are presented and transcribed, which speeds up the process!
Luciana Alvarenga
Luciana AlvarengaNail Design Student
The platform is fast, simple to use. The diversity of content and complementary videos really help with learning.
André Felipe
André FelipePrompt Engineering Student

Top qualifications

FAQ

Who is Dedika?

Is the certificate valid in South Africa?

Are the courses free?

What is the course workload?

What are the courses like?

How do the courses work?

What is the duration of the courses?

What is the cost or price of the courses?

What is an EAD or online course and how does it work?

PDF Course