1.1 Understand and apply concepts of confidentiality, integrity and availability
1.2 Evaluate and apply security governance principles
- Alignment of security function to business strategy, goals, mission, and objectives 
- Organizational processes (e.g., acquisitions, divestitures, governance 
- committees) 
- Organizational roles and responsibilities 
- Security control frameworks 
- Due care/due diligence 
1.3 Determine compliance requirements
1.4 Understand legal and regulatory issues that pertain to information security
in a global context
- Privacy 
- Import/export controls 
1.5 Understand, adhere to, and promote professional ethics
(ISC)² Code of Professional Ethics
1.6 Develop, document, and implement security policy, standards, procedures, and guidelines
1.7 Identify, analyze, and prioritize Business Continuity (BC) requirements
The CISSP® Online Training is a comprehensive program that covers the eight domains of the CISSP Common Body of Knowledge (CBK). The curriculum is designed to provide professionals with the knowledge and skills necessary to identify, assess, and mitigate security risks and vulnerabilities across a wide range of systems and technologies. The program consists of the following topics: