Fundamentals of Cybersecurity Risk Management and Governance Section
15% of exam12 questions
15%
This section covers organizational approaches to identifying, assessing, and mitigating cybersecurity risks through governance frameworks and policies. Students need to understand risk assessment methodologies, compliance requirements, security policies, and governance structures. Knowledge of regulatory frameworks, business continuity planning, and risk mitigation strategies is required.
Fundamentals of Cybersecurity Network Security Section
18% of exam8 questions
18%
This section covers securing network infrastructure, protocols, and communications against various threats and attacks. Students need to understand firewalls, intrusion detection/prevention systems, VPNs, network segmentation, and wireless security protocols. Knowledge of network monitoring, secure network design principles, and common network-based attacks is required.
Fundamentals of Cybersecurity Cryptography and Public Key Infrastructure Section
12% of exam5 questions
12%
This section covers encryption methods, digital certificates, and public key infrastructure components used to protect data confidentiality and integrity. Students must understand symmetric and asymmetric encryption, hashing algorithms, digital signatures, and certificate management. Knowledge of PKI components, key management lifecycle, and cryptographic implementation best practices is essential.
Fundamentals of Cybersecurity Application and System Security Section
10% of exam4 questions
10%
This section covers securing applications, operating systems, and computing environments throughout their development and deployment lifecycle. Students need to understand secure coding practices, system hardening techniques, vulnerability management, and patch management processes. Knowledge of application security testing, endpoint protection, and secure configuration management is required.
Fundamentals of Cybersecurity Access Control and Identity Management Section
15% of exam5 questions
15%
This section covers authentication, authorization, and accountability mechanisms used to control user access to systems and resources. Students must understand identity management systems, access control models (DAC, MAC, RBAC), authentication factors, and privileged access management. Knowledge of identity federation, single sign-on, and access provisioning processes is essential.
Fundamentals of Cybersecurity Cybersecurity Fundamentals and Concepts Section
20% of exam15 questions
20%
This section covers foundational cybersecurity principles, terminology, and core concepts essential for understanding information security. Students need to demonstrate knowledge of the CIA triad (confidentiality, integrity, availability), threat landscapes, vulnerability types, and basic security frameworks. Understanding these fundamental concepts provides the foundation for all other cybersecurity domains.
Fundamentals of Cybersecurity Security Operations and Incident Response Section
10% of exam3 questions
10%
This section covers day-to-day security operations, monitoring activities, and structured incident response procedures. Students must understand security information and event management (SIEM), threat hunting, incident handling processes, and forensic principles. Knowledge of security operations center functions, incident classification, and recovery procedures is essential.