Chapter 4. Security Architecture and Design

The focus of the Security Architecture and Design domain is system architecture. This domain is of critical importance because in many ways the design of a computer system determines its amount of security. Therefore, security professionals should know and understand the underlying technology of computer systems and the various system security guidelines, certifications, and security and assurance ratings that infosec security professionals use. The following list gives you some key areas to focus on:

• Layering, data hiding, and abstraction

• Processors

• Memory: segmentation/rings, types of memory

• Operating systems

• Models

• Assurance: TCSEC, ITSEC, CC

• Architecture problems: covert channels, ...

Get CISSP Practice Questions Exam Cram, Third Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.