Roadmaps / CISSP — Certified Information Systems Security Professional
🎖️
advanced Roadmap #16

CISSP — Certified Information Systems Security Professional

This roadmap prepares you for the (ISC)2 CISSP exam by teaching the eight CBK domains in a deliberately non-linear sequence: it opens with the Domain 1 conceptual spine (risk, governance, the CIA triad) that every other domain leans on, then bridges through Identity & Access Management, Network Security, and Security Operations — the domains where hands-on infrastructure and incident-response experience converts fastest into CBK vocabulary — before closing with Security Architecture/Cryptography and Secure Software Development, the two domains a hands-on practitioner is least likely to have absorbed by osmosis. Every lesson ends by contrasting the CISSP 'best answer for the organization' mindset against the instinctive 'technician who fixes it' reflex, because that reframe — not raw technical knowledge — is what the exam actually tests. Exam preparation only — CISSP certification is issued exclusively by (ISC)2, never by VigilForge.

📚 20 lessons ⏱ ~220h 📊 advanced

Create a free account to track your progress and unlock all features.

Get Started Free Sign In
Security & Risk Management Asset Security Security Architecture & Engineering Network Security Identity & Access Management Security Assessment & Testing Security Operations Software Development Security

📋 Lessons by Domain (20 total — click a domain, no need to scroll through all of them)

D1

Security & Risk Management

16% of exam 4 lessons
🎖️

Not Domain Order 1→8

This roadmap opens with the Domain 1 spine, bridges through the domains where operational experience converts fastest (IAM, network, SecOps), and closes with the real cold-start gaps (crypto/architecture, secure SDLC). Lesson order reflects that path, not the exam outline's numbering.

Exam Prep Only

CISSP certification is issued exclusively by (ISC)², following its own exam and endorsement process — never by VigilForge.

Recommended Before

Complete earlier roadmaps in the sequence for best results.

View all roadmaps →

What You'll Learn

  • Reason through scenario questions the way CISSP grades them — the best answer for the organization, not the fastest technical fix
  • Convert hands-on IAM, network, and incident-response experience directly into CBK vocabulary
  • Cover the two genuine cold-start gaps for an operations-heavy background: cryptography/security architecture and secure SDLC theory
  • Practice scenario-based, distractor-explained questions across all eight CBK domains