Skip to content

CISSP Exam Prep

The Best and Most Accurate CISSP Practice Exams

Menu
  • CBK Updates
  • QUICK EXAMS
    • EXAM 1
    • EXAM 2
    • EXAM 3
    • EXAM 4
    • EXAM 5
    • EXAM 6
    • EXAM 7
    • EXAM 8
    • EXAM 9
    • EXAM 10
    • EXAM 11
    • EXAM 12
  • DOMAIN QUIZ
    • Domain 1 Quizzes
      • D1 Q1
      • D1 Q2
      • D1 Q3
      • D1 Q4
      • D1 Q5
      • D1 Q6
      • D1 Q7
      • D1 Q8
      • D1 Q9
      • D1 Q10
    • Domain 2 Quizzes
      • D2 Q1
      • D2 Q2
      • D2 Q3
      • D2 Q4
      • D2 Q5
      • D2 Q6
    • Domain 3 Quizzes
      • D3 Q1
      • D3 Q2
      • D3 Q3
      • D3 Q4
      • D3 Q5
      • D3 Q6
      • D3 Q7
      • D3 Q8
      • D3 Q9
      • D3 Q10
    • Domain 4 Quizzes
      • D4 Q1
      • D4 Q2
      • D4 Q3
      • D4 Q4
      • D4 Q5
      • D4 Q6
      • D4 Q7
      • D4 Q8
      • D4 Q9
    • Domain 5 Quizzes
      • D5 Q1
      • D5 Q2
      • D5 Q3
      • D5 Q4
      • D5 Q5
      • D5 Q6
    • Domain 6 Quizzes
      • D6 Q1
      • D6 Q2
      • D6 Q3
      • D6 Q4
      • D6 Q5
      • D6 Q6
    • Domain 7 Quizzes
      • D7 Q1
      • D7 Q2
      • D7 Q3
      • D7 Q4
      • D7 Q5
      • D7 Q6
      • D7 Q7
      • D7 Q8
    • Domain 8 Quizzes
      • D8 Q1
      • D8 Q2
      • D8 Q3
      • D8 Q4
      • D8 Q5
      • D8 Q6
      • D8 Q7
  • Super Study Guide
    • DOMAIN 1: SECURITY AND RISK MANAGEMENT
    • DOMAIN 2: ASSET SECURITY
    • DOMAIN 3: SECURITY ARCHITECTURE AND ENGINEERING
    • DOMAIN 4: COMMUNICATIONS AND NETWORK SECURITY
    • DOMAIN 5: IDENTITY AND ACCESS MANAGEMENT
    • DOMAIN 6: SECURITY ASSESSMENT AND TESTING
    • DOMAIN 7: SECURITY OPERATIONS
    • DOMAIN 8: SOFTWARE DEVELOPMENT SECURITY
  • Login
  • Your Progress
  • Join
    • Join
    • Lost Password
    • Account

Code of Ethics and the CIA of Information Security

Let’s get this out of the way first, ISC2 wants you to know their code of ethics, which you’ll be required to adhere to as a CISSP, so here it is:

Protect society, the common good, necessary public trust and confidence, and the infrastructure.

Act honorably, honestly, justly, responsibly, and legally.

Provide diligent and competent service to principals.

Advance and protect the profession.

Notice the bolded letters above.  You can remember this by using the acronym “PAPA”: Protect, Act, Provide, and Advance.

You should read the full code of ethics on the ISC2 website.  We won’t paste it here because it may change from time to time, but if you read it once and become familiar with the four tenets, you’re probably good for the exam.

CIA of Information Security

Now let’s talk about the CIA triad.  There are five pillars of information security that include the CIA triad, and everything in the CBK can fall under these:

  • Confidentiality means: only authorized entities have access.
  • Integrity means: the data hasn’t changed.
  • Availability means: making sure it’s available.
  • Authenticity means: the information is authentic and trustworthy.
  • Non-repudiation means: the inability to deny what you created, sent, modified, accessed, or touched… basically the inability to deny any actions performed by you.  Accountability plays a key part of enforcement (within non-repudiation), as does auditing of logs.

As an example, encryption provides confidentiality.  Mirror sites provide availability.  Digital signatures and hashes help provide integrity.  Identity assurances and data validation provide authenticity.  Digital signatures can provide non-repudiation (note there is a difference between providing something and enforcing something).

Recent Posts

  • DOMAIN 8 FULLY UPDATED
  • Domain 7 Fully Updated
  • Domains 5 and 6 Fully Updated
  • Privacy Policy

Contact Us

Study Tips

Copyright © 2025 CISSP Exam Prep
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.Accept Session Cookies (we no longer run 3rd party ads)