ISSEP
Information Systems Security Engineering Professional
The Information Systems Security Engineering Professional (ISSEP) is an elite concentration credential for experienced security professionals who apply systems engineering principles to develop secure systems throughout the system development lifecycle. The ISSEP is one of three advanced CISSP concentrations and demonstrates advanced expertise in systems security engineering, risk management frameworks, and secure system development. To earn the ISSEP, candidates must already hold the CISSP certification.
This certification covers five domains: Systems Security Engineering (22%), Risk Management (20%), Security Planning and Design (22%), Systems Implementation and Verification (18%), and Secure Operations and Sustainment (18%). Candidates must demonstrate mastery of security engineering processes based on frameworks such as ISO/IEC 15288 and NIST SP 800-160, implementing security in systems development lifecycles, conducting technical risk assessments, developing security architectures, implementing and validating security controls, and maintaining system security throughout operations.
The ISSEP requires passing a rigorous 125-question exam with a 3-hour time limit. In addition to holding the CISSP, candidates must have two years of additional work experience in one or more of the ISSEP concentration domains. The ISSEP is designed for systems security engineers, security consultants, government security professionals, and defense contractors who engineer secure systems for critical infrastructure and high-assurance environments.
ISSEP Practice Exam 1
Comprehensive 50-question practice exam covering all five ISSEP domains: Systems Security Engineering, Risk Management, Security Planning and Design, Systems Implementation and Verification, and Secure Operations and Sustainment.
ISSEP Practice Exam 2
Comprehensive 50-question practice exam covering all five ISSEP domains: Systems Security Engineering, Risk Management, Security Planning and Design, Systems Implementation and Verification, and Secure Operations and Sustainment.
ISSEP Practice Exam 3
Comprehensive 50-question practice exam covering all five ISSEP domains: Systems Security Engineering, Risk Management, Security Planning and Design, Systems Implementation and Verification, and Secure Operations and Sustainment.
ISSEP Practice Exam 4
Advanced 50-question ISSEP practice exam covering all five domains: Systems Security Engineering, Risk Management, Security Planning and Design, Systems Implementation and Verification, and Secure Operations and Sustainment. Focuses on cross-domain solutions, formal verification methods, and supply chain risk management.
ISSEP Practice Exam 5
Advanced 50-question ISSEP practice exam covering all five domains: Systems Security Engineering, Risk Management, Security Planning and Design, Systems Implementation and Verification, and Secure Operations and Sustainment. Emphasizes security automation, post-quantum cryptography, cloud security engineering, and resilience engineering.
ISSEP Practice Exam 6
Advanced 50-question ISSEP practice exam covering all five domains: Systems Security Engineering, Risk Management, Security Planning and Design, Systems Implementation and Verification, and Secure Operations and Sustainment. Emphasizes AI/ML security, critical infrastructure protection, secure system decommissioning, and advanced threat modeling.
Unlock All Content for ISSEP
6 Practice Test(s) + Flash Cards — 3 months access
or included with Monthly subscription / Content Bundle