Third-party products and services, including course instructors have helped many candidates to close knowledge and skill gaps. Lunarline does not endorse any particular provider and encourages candidates to use a variety of tools and resources that will enhance their understanding of relevant principles and the exam’s concentration area.
Certification Description
Successful completion of this exam will demonstrate a candidates ability to implement security and privacy controls for federal information systems and other organizations. The candidate will be able to implement system-level security principles in the design, development, and operation of an information system. The candidate will be able to demonstrate their knowledge in systems security engineering discipline and the fundamental security principles, concepts, and terminology.
The candidate will be able to demonstrate the relationship between the System Development Life Cycle and other IT disciplines. They will be able to demonstrate their ability to implement security into each phase of the Information System Development Life Cycle.
Authoritative Sources
- NIST SP 800-160 Systems Security Engineering: An Integrated Approach to Building Trustworthy Resilient Systems
- NIST SP 800-64 Rev. 2 – Security Considerations in the System Development Life Cycle
- NIST SP 800-37 Rev. 1 – Guide for Applying the Risk Management Framework to Federal Information Systems: A Security Life Cycle Approach
- NIST SP 800-27 Rev. A – Engineering Principles for Information Technology Security (A Baseline for Achieving Security
- NIST SP 800-53 Rev. 4 – Security and Privacy Controls for Federal Information Systems and Organizations
Requirements
Candidates must possess at least 5 years relevant experience in security engineering in order to obtain the expert level credential. The associate level credential will be awarded to those who pass the exam, but do not have the required experience. The credential can be elevated to expert level upon attaining the required experience. Simply email [email protected] to start the experience verification process.
Mapping to the NICE Framework
NICE Work Role Name:
Research & Development Specialist
NICE Work Role Description:
Conducts software and systems engineering and software systems research to develop new capabilities, ensuring cybersecurity is fully integrated. Conducts comprehensive technology research to evaluate potential vulnerabilities in cyberspace systems.
Lunarline Training Courses:
Continuing Education: The Lunarline SCS Training Program and other third-party vendors offer activities, products and services across the country that qualify as Professional Development Credits (PDCs) that target the same NICE category, specialty area, work role, and/or authoritative sources as our certifications. We encourage candidates to use a variety of tools and resources that will enhance their understanding of relevant principles and reflect their learning styles and needs.
- Research & Development Specialist (SP302-RBT)