The UNIX and Linux Forums  
Hello and Welcome from United States to the UNIX and Linux Forums! Thank You for Visiting and Joining Our Global Community.

Go Back   The UNIX and Linux Forums > Special Forums > Security > IT Security RSS
.
google unix.com



More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
Add "human factors"? No. iBot IT Security RSS 0 08-11-2009 06:45 AM
Should the CISSP CBK be expanded to cover "human factors" in security? iBot IT Security RSS 0 08-10-2009 06:15 AM
Human Redundancy iBot IT Security RSS 0 12-17-2008 07:20 AM
CISSP mythology iBot IT Security RSS 0 05-27-2008 12:00 PM
script to convert epoch into human-readable snoman1 Shell Programming and Scripting 3 04-18-2008 03:59 PM

Reply
English Japanese Spanish French German Portuguese Italian Dutch Swedish Russian Norwegian Hungarian Hebrew Danish Bulgarian Greek Powered by Powered by Google
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
  #1 (permalink)  
Old 08-22-2009
iBot's Avatar
iBot iBot is offline
Forum Robot Girl
  
 

Join Date: Sep 2000
Posts: 22,191
Should the CISSP CBK be improved to place greater emphasis on “human factors” in info

Shouldthe CISSP CBK be expanded to cover "human factors" in security? [1]


Add “HumanFactors” No.[2]





Clearly,human factors are a major component to information security and Gary Hinson presentseffective arguments that they should be established as an additionaldomain.  On the other hand, Rob Slademakes an effective argument that the human factors are a significant componentof each of the current ten domains primarily based on his experience teachingthe CBK® to CISSP® aspirants for (ISC)˛®. In full disclosure, I also teach the CBK® to CISSP® aspirants, but notfor (ISC)˛®, but at a local college.

 I foundthe discussion interesting in that I have, from the very beginning, found thathuman factors are a significant component to all aspects of security and teachsame when preparing my students for the CISSP® exam.  However, almost to a student, I am challengedas to why the emphasis when the varying study materials, place little if anyemphasis upon human factors.  As aninstructor Rob and I do not have access to the exam materials and cannot writeexam questions unless we give up our teaching; an understandable restriction by(ISC)˛®.

 None-the-less,the human factor is significant and the materials made available by (ISC)˛®make no mention of them.  As I examineeach of the ten domains, there is no mention, or even a hint that I can detectin them, of human factors to include their sub-topics as articulated in thedescription for the “Official(ISC)˛® Guide to the CISSP® CBK®”; which, by the way, is the only locationthat I can find the secondary level mentioned in public.  Yes, I know that if I fill out a questionnaireand submit it, that I will get much more; but that is deceitful as I am not acandidate.  What is a dedicatedconstituent to do, speculate?

 Whileanyone can effectively argue that the “Information Security and Risk Management”domain contains numerous indirect references to the human factor I find itdifficult to infer same in any of the other nine. 

 It is my position that each of theten CBK® domains should make it clear at the secondary level that “humanfactors” are a significant component.





[1] Gary Hinson, 9 August 2009


[2] Rob Slade, 10 August 2009






More...
Reply

Bookmarks

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT -4. The time now is 04:38 PM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited. Language Translations Powered by .
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
The UNIX and Linux Forums Content Copyright ©1993-2009. All Rights Reserved.Ad Management by RedTyger

Content Relevant URLs by vBSEO 3.2.0