BCS CISMP Exam Overview:
| Certification Vendor: | BCS, The Chartered Institute for IT |
|---|---|
| Exam Name: | BCS Foundation Certificate in Information Security Management Principles |
| Exam Number: | CISMP |
| Exam Duration: | 60 minutes |
| Exam Price: | £200 (UK, excl. VAT; international pricing varies) |
| Passing Score: | 65% (26/40) |
| Certificate Validity Period: | Valid for life |
| Real Exam Qty: | 40 |
| Available Languages: | English |
| Exam Format: | Multiple choice questions, Closed-book |
| Recommended Training: | BCS Recommended Training Providers |
| Exam Registration: | Pearson VUE Booking BCS Official Registration |
| Exam Way: | Online remote proctored or in-person at Pearson VUE test centres |
| Pre Condition: | No formal prerequisites; basic IT knowledge recommended |
| Official Syllabus URL: | https://www.bcs.org/qualifications-and-certifications/certifications-for-professionals/information-security-and-data-protection-certifications/bcs-foundation-certificate-in-information-security-management-principles/ |
BCS CISMP Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Topic 1: Procedural & People Security Controls | 15% | - Awareness, training and human factors - User access management - Organisational and administrative controls |
| Topic 2: Emerging & Additional Technical Aspects | 5% | - Layered defence concepts - Security for cloud, IoT and AI environments |
| Topic 3: Information Security Management Principles | 10% | - Purpose and benefits of information security - Core concepts: confidentiality, integrity, availability, non-repudiation - Assets, threats, vulnerabilities, risk and controls |
| Topic 4: Technical Security Controls | 25% | - Network and infrastructure security - Cryptography and authentication - Malware protection and endpoint security - Data protection and security architecture |
| Topic 5: Incident Response & Business Continuity | 5% | - Incident management and response - Disaster recovery and continuity planning |
| Topic 6: Security Lifecycle & Operations | 10% | - Security throughout system development - Security policy and management - DevSecOps and secure design |
| Topic 7: Information Security Frameworks & Compliance | 15% | - Legislation and regulations - Governance and compliance - Standards: ISO 27000 series, NIST, Cyber Essentials |
| Topic 8: Physical & Environmental Security Controls | 5% | - Environmental safeguards - Site and facility protection |
| Topic 9: Information Risk | 10% | - Risk assessment and management processes - Risk treatment and mitigation strategies - Threat types and vulnerabilities |
We're so confident of our products that we provide no hassle product exchange.


By Verna

