Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.
Security has a wide base that touches on several different areas. The developers of the CISSP exam had the vision to understand this and to demand that an individual who claims to be a security expert and wants to achieve this certification must also show that his expertise does not just lie in one area of security. Many areas of security affect each other. Physical security is interrelated with information security, database security lies on top of operating system security, operations security affects how computer systems are used, disaster recovery deals with systems in emergency situations, and almost every instance has some type of legal or liability issue tied to it. Technology, hardware, people, and procedures are woven together as a security fabric, as illustrated in Figure 2-2. When it is time to identify and resolve a specific problem, several strands of the security fabric may need to be unraveled and scrutinized so the best and most effective solution can be provided.