The CISSP exam tests your competence in eight domains. Think of the domains as specific knowledge areas you need to know based on your experience and education.

The domains draw from a range of information security topics within the (ISC)² Common Body of Knowledge (CBK).

Here’s a closer look at the CISSP domains and how they’re weighted on the exam:

Domains Weight
Security and Risk Management 16%
Asset Security 10%
Security Engineering 12%
Communication and Network Security 12%
Identity and Access Management 13%
Security Assessment and Testing 11%
Security Operations 16%
Software Development Security 10%
Total 100%

