CISSP

acronym

securitygovernance & risk

Stands for: Certified Information Systems Security Professional ((ISC)2)

The management-level security certification - (ISC)2's flagship since 1994: eight domains, a mile wide, and the credential security leadership job posts ask for by name.

The CISSP covers the Common Body of Knowledge's eight domains - from security and risk management through architecture, network security, IAM, testing, and operations - at deliberately managerial altitude: the running joke 'a mile wide and an inch deep' is also the design. Five years of paid experience is required (candidates who pass early hold Associate status until they earn it), plus endorsement and continuing education. It signals breadth and governance fluency rather than hands-on depth - which is exactly why CISOs' job descriptions ask for it and why hands-on practitioners pair it with technical certs rather than replacing them.

Also known as: cissp, cbk, eight domains, isc2 certification

All glossary entries