View and download the latest PDF version of the ISSEP Certification Exam Outline
ISSEP – English
About ISSEP
The Information Systems Security Engineering Professional (ISSEP) is a security leader who specializes in the practical application of systems engineering principles and processes to develop secure systems. An ISSEP analyzes organizational needs, defines security requirements, designs security architectures, develops secure designs, implements system security, and supports system security assessment and authorization for government and industry.
The broad spectrum of topics included in the ISSEP Exam Outline ensure its relevancy across all disciplines in the field of security engineering. Successful candidates are competent in the following five domains:
- Systems Security Engineering Foundations
- Risk Management
- Security Planning and Engineering
- Systems Security Implementation, Verification and Validation
- Secure Operations, Change Management and Disposal
Experience Requirements
Candidates must be a CISSP in good standing and have two years’ cumulative, full-time experience in one or more of the five domains of the current ISSEP outline.
Or
Candidates must have a minimum of seven years’ cumulative, full-time experience in two or more of the domains of the current ISSEP Exam Outline. Earning a post-secondary degree (bachelor’s or master’s) in computer science, information technology (IT) or related fields or an additional credential from the ISC2 approved list may satisfy one year of the required experience. Only one year of experience can be waived. Part-time work and internships may also count towards the experience requirement.
Accreditation
The ISSEP is in compliance with the stringent requirements of the ANSI National Accreditation Board (ANAB) ISO/IEC Standard 17024.
Job Task Analysis (JTA)
ISC2 has an obligation to its membership to maintain the relevancy of the ISSEP. Conducted at regular intervals, the Job Task Analysis (JTA) is a methodical and critical process of determining the tasks that are performed by security professionals who are engaged in the profession defined by the ISSEP. The results of the JTA are used to update the examination. This process ensures that candidates are tested on the topic areas relevant to the roles and responsibilities of today’s practicing information security professionals.
ISSEP Examination Information
| Length of exam |
3 hours |
| Number of items |
125 |
| Item format |
Multiple choice and advanced item types |
| Passing grade |
700 out of 1000 points |
| Exam language availability |
English |
| Testing center |
Pearson VUE Testing Center |
ISSEP Examination Weights Domains
| Domains
| Average Weight
|
| 1. Systems Security Engineering Foundations |
24% |
| 2. Risk Management |
20% |
| 3. Security Planning and Engineering |
22% |
| 4. Systems Security Implementation, Verification, and Validation |
20% |
| 5. Secure Operations, Change Management and Disposal |
14% |
| Total |
100% |