Cybersecurity Leadership and CISSP Exam Preparation

CISSP Course in Oman for Experienced Security Professionals

Prepare for the Certified Information Systems Security Professional® (CISSP®) exam through 40+ guided live hours, structured teaching across all eight domains, 3,000+ CISSP practice questions, multiple CAT-style simulations, recordings and an advanced learning system.

4.6/5 CISSP course ratingfrom 200+ CISSP learner reviews

EduDelphi provides independent CISSP preparation and candidate support. ISC2 controls the official examination, experience review, endorsement, certification and maintenance requirements.

View CISSP Syllabus

CISSP Course Snapshot

  • 40+ guided live training hours
  • Muscat classroom, live online, hybrid, private, self-paced and corporate routes
  • Flexible weekday, evening, weekend and fast-track batches
  • 3,000+ CISSP practice questions and extensive revision resources
  • Multiple timed CISSP exam simulations with no-backtracking practice, mixed-domain questions, pacing review and CAT-format strategy
  • Recordings, notes, mind maps, flashcards and structured study plans
  • Individual doubt support, mock analysis and weak-area review
  • Exam, experience, endorsement, career and job-search support
40+guided live hours
8current CISSP domains
3,000+practice questions
100–150CAT exam items
3 hoursmaximum exam time
CISSP Course Fees, Current Batches and Delivery

Choose a CISSP Learning Route That Fits Your Role

Course tuition is enquiry-led because the selected live, classroom, hybrid, private, self-paced or corporate route changes the package. Official ISC2 exam and maintenance charges remain separate.

EduDelphi CISSP Course Fee

  • Request the current Oman training fee
  • Compare weekday, evening, weekend and fast-track batches
  • Review active instalment and early-bird options
  • Receive the complete written inclusion list
  • Discuss voucher or retake-support options for the selected package
Official ISC2 cost or requirement Current Oman/Middle East reference
CISSP exam US$749
Exam rescheduling US$50
Exam cancellation US$100
Retake New exam registration or applicable official product
CISSP annual maintenance fee US$135/year
Associate of ISC2 annual maintenance fee US$50/year
Full CISSP CPE requirement 120 CPE credits over three years
Associate CPE requirement 15 CPE credits/year

Official-fee reference checked in September 2026 against ISC2 exam pricing. Taxes, location and current terms can change the final amount. Always verify the live ISC2 checkout before paying.

CISSP course participants discussing enterprise security risks in a modern Muscat office
Flexible CISSP Training Across Oman

Join from Muscat or Learn Live Online Anywhere in Oman

Prepare without reducing course depth around a demanding security, IT, risk or governance role. Choose Muscat classroom sessions, live online classes, hybrid learning, one-to-one preparation, a complete self-paced route or an employer cohort.

  • Weekday, evening, weekend and fast-track choices
  • Complete recordings and structured LMS reinforcement
  • Private and one-to-one teaching where required
  • Repeat-session and later revision-batch support
  • Live online access from Muscat, Sohar, Salalah, Nizwa, Sur, Duqm and elsewhere
  • Private onsite and virtual corporate programmes
Credential and Training Distinction

What Is CISSP Certification?

CISSP is a senior cybersecurity credential that validates broad technical and managerial knowledge across governance, risk, architecture, networks, identity, assessment, operations and software security.

EduDelphi CISSP Course

Independent live training, extensive practice questions, CAT-style simulations, learning resources, faculty support and certification-path guidance.

ISC2 CISSP Exam

A three-hour Computerized Adaptive Test containing 100–150 items across the eight current domains.

CISSP Certification

Awarded by ISC2 after the examination, qualifying experience, certification application, endorsement, ethics and maintenance requirements are satisfied.

Passing the exam is not the same as becoming CISSP-certified.

A candidate who passes without the required experience can apply for Associate of ISC2 status. Associates are not CISSP-certified and should not use the CISSP designation until the certification requirements are completed.

Complete CISSP Preparation System

What Is Included in the EduDelphi CISSP Course?

The course follows a deliberate learning loop: diagnose knowledge, understand each domain, apply security judgement, practise questions, analyse errors, complete CAT-style simulations and retest weak areas.

40+ Guided Hours

Faculty-led teaching across every current CISSP domain, supported by practical enterprise cases.

3,000+ Questions

Topic drills, domain sets, mixed scenarios, timed practice and detailed answer review.

Timed CAT-Format Practice

Mixed-domain simulations, no-backtracking discipline, three-hour pacing and readiness review.

Advanced LMS

Recordings, learning resources, practice history, progress visibility and organised revision support.

Revision Resources

Notes, domain maps, flashcards, quick-reference sheets, study plans and visual summaries.

Individual Support

One-to-one doubt clarification, mock debriefs, error diagnosis and targeted weak-area review.

Repeat and Reinforce

Repeat relevant sessions and join later revision batches where appropriate.

End-to-End Guidance

Support with exam planning, official costs, experience mapping, Associate status, endorsement and professional positioning.

Study Platform and Readiness Resources

EduDelphi CISSP LMS and Exam-Readiness System

The platform helps working professionals convert learning activity into measurable domain readiness rather than simply storing recorded lectures.

Complete RecordingsRevisit detailed explanations and enterprise-security cases.
Domain ProgressTrack preparation across all eight current domains.
Question AnalyticsReview accuracy, pace and recurring decision errors.
Mock HistoryCompare timed attempts and readiness trends.
Maps and FlashcardsStrengthen fast recall before tests and simulations.
Study PlansOrganise weekly coverage around work commitments.
Quick ReferencesConsolidate frameworks, security models and decision logic.
Personal RevisionPrioritise weak domains before retesting.
CISSP security architecture and risk workshop for professionals in Oman
Question Practice and CAT Exam Technique

From Domain Diagnostics to Full CISSP Exam Simulation

CISSP questions frequently contain several technically plausible choices. Learners practise identifying the response that best reflects risk, ownership, sequencing, business impact and senior security judgement.

Initial Diagnostic

Identify where professional experience transfers—and where the exam requires broader domain knowledge.

Domain Drills

Build core concepts through focused sets before integrating them into cross-domain cases.

Mixed Scenarios

Recognise the domain, business objective, accountable owner and decision the question is testing.

Timed Tests

Build interpretation speed and concentration without sacrificing judgement.

CAT-Format Practice

Practise the behaviours that matter in CISSP CAT—committing to each answer, managing three-hour pacing, handling mixed-domain questions and maintaining judgement under uncertainty.

Answer Debriefs

Understand why the most appropriate response is stronger than close alternatives.

Error Diagnosis

Classify errors by knowledge, scope, ownership, sequencing, evidence or technical bias.

Targeted Retesting

Revisit weaker domains and compare performance before sitting the examination.

More than a large question bank

The system combines 3,000+ CISSP practice questions with diagnostics, explanations, mixed cases, timed tests, multiple CAT-style simulations, faculty debriefs, individual weak-area review and targeted retesting.

Current CISSP Syllabus

Eight CISSP Domains and Current Exam Weightings

The current official outline took effect on 15 April 2024. If a provider or question source shows different weights, verify that it matches the active ISC2 outline before relying on it.

16%Risk
10%Assets
13%Architecture
13%Networks
13%IAM
12%Testing
13%Operations
10%Software
1. Security and Risk Management — 16%

Ethics, governance, security concepts, legal and regulatory context, policy, business continuity, personnel security, risk management, threat modelling, supply-chain risk and awareness.

Teaching emphasis: connect security decisions with organisational objectives, ownership, risk appetite and due care.

2. Asset Security — 10%

Information and asset classification, secure handling, ownership, lifecycle, retention, destruction, data states and protection methods.

3. Security Architecture and Engineering — 13%

Secure design principles, security models, cryptography, system vulnerabilities, cloud and distributed environments, physical security, resilience and lifecycle decisions.

4. Communication and Network Security — 13%

Secure network architecture, protocols, segmentation, communications, remote access, wireless, third-party connectivity and monitoring.

5. Identity and Access Management — 13%

Identification, authentication, federation, access-control models, authorisation, privileged access and identity lifecycle management.

6. Security Assessment and Testing — 12%

Assessment strategies, control testing, vulnerability assessment, penetration testing, audit evidence, reporting and remediation.

7. Security Operations — 13%

Investigations, logging, monitoring, configuration, change, incident response, recovery, resilience, continuity and disaster recovery.

8. Software Development Security — 10%

Security in the software lifecycle, development ecosystems, application controls, testing, acquired software, APIs and secure coding.

Source: current ISC2 CISSP Exam Outline. EduDelphi’s preparation methodology and mocks are independent course resources, not additional official CISSP domains.

Original EduDelphi Teaching Demonstration

See How CISSP Connects Security Decisions

An Oman-based critical-infrastructure operator plans to move a customer-facing platform to a cloud environment. A review identifies weak privileged-access recertification, unclear log ownership and a recovery objective that does not match the business dependency. Launch remains commercially important.

What should the security professional do FIRST?

  1. Implement an immediate compensating control and proceed while the long-term remediation is planned.
  2. Conduct a formal risk assessment, clarify business impact and escalate treatment options to the accountable risk owner.
  3. Delay the migration until every architecture component meets the organisation’s security baseline.
  4. Transfer responsibility contractually to the cloud provider and document the residual risk.
Best reasoning: B.

Before selecting, transferring or enforcing a treatment, the professional should establish the exposure, business impact, accountable owner and decision authority. A compensating control may be part of the final response, but it should follow the risk decision rather than replace it.

Cybersecurity professionals completing an incident response simulation during CISSP training

Original EduDelphi scenario for teaching. It is not official, recalled or live ISC2 examination content.

CISSP Experience Requirements

Exam Eligibility, Experience and Full CISSP Certification

Anyone may prepare for and sit the CISSP examination, but full certification normally requires five years of cumulative qualifying professional experience across at least two of the eight CISSP domains. Full-time, qualifying part-time work and documented internships may count under current ISC2 rules.

Experience type Current ISC2 treatment Practical meaning
Full time At least 35 hours/week for four weeks Accrues as one month of qualifying experience.
Part time 20–34 hours/week 1,040 hours equals six months; 2,080 hours equals 12 months.
Internship Paid or unpaid may qualify Acceptable documentation on organisational or registrar letterhead is required.
One-year waiver Qualifying degree or one currently approved credential Only one year can be waived; the degree and credential routes cannot be stacked.
The approved credential waiver list changed on 1 April 2026.

Do not assume an older certification still qualifies. ISC2 revised the list and its inclusion criteria. A qualifying degree or one credential on the current ISC2 waiver list can reduce the requirement by a maximum of one year; the two routes cannot be combined to remove two years.

CISSP Path Without Enough Experience

Passed CISSP Without Five Years? Use the Associate of ISC2 Route

Candidates may sit the CISSP exam before completing the experience requirement. After passing, the correct interim status is Associate of ISC2—not “Associate CISSP.”

Associate item Current position
Exam You may sit CISSP before having five years of experience.
Status after passing Apply as Associate of ISC2, not as a CISSP.
Experience window Up to six years for the CISSP route.
Associate maintenance US$50 AMF and 15 CPE credits annually.
After completing experience Submit the certification application and endorsement before the Associate period expires.
Upgrade The current US$85 AMF difference applies when the year’s Associate AMF has already been paid.
Title rule Do not describe yourself as CISSP until ISC2 awards full certification.

Source: current Associate of ISC2 guidance and member-maintenance rules.

CISSP Exam Format and Retake Rules

How the Current CISSP CAT Exam Works

The adaptive format selects later items partly from earlier responses. Candidates must read carefully and commit to the best available answer because completed items cannot be revisited. The rules below reflect current ISC2 CAT guidance.

Official current item What candidates should plan for
Delivery Computerized Adaptive Testing at authorised Pearson testing centres.
Items 100–150 multiple-choice and advanced item types, including unscored pretest items that cannot be identified.
Duration Three hours maximum; breaks are included within the examination time.
Review No backtracking after an answer is finalised.
Passing standard 700 out of 1,000 scaled points—not a simple 70% raw score.
Exam purchase window Schedule and sit the exam within 365 days of purchase under current terms.
Result Pass/fail result after completion; eligible unsuccessful candidates receive domain-level diagnostic feedback.
Retakes 30 test-free days after attempt one, 60 after attempt two and 90 after attempt three or later.
Attempt limit Maximum four attempts for the certification in a 12-month period.

No Backtracking

Practise reading the complete scenario before finalising the response.

Breaks Use Time

Build endurance and plan breaks inside the three-hour clock.

Every Attempt Costs Again

Each retake requires a new official exam registration fee.

Understanding CISSP Computerized Adaptive Testing

Why Your CISSP Exam May End at 100, 120 or 150 Questions

CISSP CAT does not give every candidate the same number of items. After the 100-item minimum, the algorithm may continue until it has enough statistical evidence or the 150-item maximum is reached.

What happens What it means
Exam ends after 100 items CAT reached sufficient statistical confidence in the pass/fail decision.
Exam continues after 100 CAT needs more evidence; continuing does not by itself mean pass or fail.
Exam reaches 150 The maximum-length rule applies and the final ability estimate determines the result.
25 pretest items at minimum length They are unscored and cannot be identified, so treat every item as scored.
No backtracking Every submitted answer is final.
The exam feels difficult This is not evidence of failure; CAT adapts item difficulty to the candidate.
Running out of time is different from a normal CAT stop.

ISC2 states that candidates who do not answer at least 75 scored operational items plus 25 pretest items within the three-hour limit automatically fail. Build pacing discipline without rushing the judgement each scenario requires.

After the CISSP Exam

Complete the ISC2 Endorsement and Certification Process

Passing is followed by a separate certification application. Candidates should document experience and plan endorsement promptly rather than treating the result as the final step.

PassComplete the CISSP CAT examination.
ApplySubmit the certification or Associate application within nine months.
DocumentProvide qualifying experience and waiver evidence.
EndorseUse an eligible ISC2 member or request ISC2 assistance.
ReviewAllow for application review and possible audit.
MaintainPay the applicable AMF and complete CPE requirements.
No eligible endorser in your network?

ISC2 currently allows candidates to request endorsement assistance. Proof of employment is required, and ISC2—not EduDelphi—decides whether the experience and application meet its requirements.

Who Should Take CISSP?

Best Aligned to Experienced Security, Technology and Risk Professionals

CISSP is broad and senior-level. It is strongest for professionals who need to connect technical security, architecture, operations, governance and enterprise risk.

Security Professionals

Security engineers, architects, consultants and operations leaders expanding into broader responsibility.

Technology Leaders

IT managers, infrastructure and cloud professionals responsible for enterprise security decisions.

GRC and Risk

Professionals connecting security requirements with governance, assurance, risk and compliance.

Leadership Path

Experienced practitioners progressing toward security management, architecture or programme leadership.

Earlier in your career?

Security+ or SSCP may offer a more appropriate foundation. CISA is more audit-led, CISM is management-led, CRISC centres on IT risk and controls, and CCSP is cloud-security specific.

CISSP Relevance in Oman

Cybersecurity Capability Matters Across Oman’s Digital Economy

Oman’s National Information Safety Centre links cybersecurity capability with Vision 2040 and the growth of the digital economy. The national cybersecurity indicator programme assesses government organisations across legal, technical, organisational, capacity-building and cooperation pillars.

Oman reported 97.02 in the 2024 Global Cybersecurity Index and placement in the top readiness tier. The 2026 Information Technology Crimes Law and Cloud-First policy further strengthen the local relevance of security governance, architecture, cloud controls, data protection, IAM, resilience and incident response.

CISSP knowledge can support professionals working across banking, oil and gas, utilities, telecom, healthcare, government-linked organisations, logistics and critical infrastructure. Employer requirements still depend on the role; the credential does not guarantee employment.

Oman examples are used to teach application. The CISSP examination follows the global ISC2 outline and is not an Oman-law examination.

Local Application Themes

  • Cloud transformation and shared responsibility
  • Critical-infrastructure security and resilience
  • Third-party and supply-chain security risk
  • Privileged access and identity governance
  • Incident readiness and recovery priorities
  • Data classification and lifecycle protection
  • Security metrics and executive communication
  • Secure software and technology acquisition
Career and Professional Support

Build a Stronger Enterprise-Security Profile

Course support extends beyond exam study while avoiding employment guarantees. The team helps learners communicate their existing experience and newly strengthened security breadth more effectively.

CV Positioning

Clarify security, architecture, risk, operations and leadership responsibilities.

LinkedIn Optimisation

Improve professional positioning for relevant cyber and technology roles.

Application Support

Plan targeted applications rather than relying on high-volume generic submissions.

Recruiter Outreach

Build concise, role-relevant messages and a practical follow-up approach.

Choose the Right Cybersecurity Route

CISSP vs CISM vs CISA vs CRISC vs CCSP vs Security+

The strongest credential is the one aligned with the responsibility you want to take on next.

Qualification Core focus Best aligned when
CISSP Broad security architecture, engineering, operations, governance and risk You need senior cybersecurity breadth across the enterprise.
CISM Information-security governance, programme, risk and incident management You are progressing toward security-management responsibility.
CISA IT audit, assurance, controls and governance Audit and assurance are central to the role.
CRISC IT risk identification, assessment and control Technology risk and control design are central.
CCSP Cloud security architecture, governance and operations Cloud-security responsibility is the specialist focus.
Security+ Foundational security concepts and operational knowledge You need an earlier-career cybersecurity foundation.

Also compare the ISO/IEC 27001 Lead Auditor course in Oman and ISO/IEC 27001 Lead Implementer course in Oman when your focus is implementing or auditing an information security management system.

CISSP Faculty

Learn the CISSP Mindset with Practical Security Leadership Context

Kashif Akhtar, CISSP faculty for EduDelphi learners in Oman

Kashif Akhtar

CISSP Faculty | CISA | CISM | CRISC | CDPSE | PMP | CSCP | Qualified Engineer

30+ Years in Cybersecurity, Technology Risk & Enterprise Systems | 13+ Years in Professional Certification Training

Kashif brings more than 30 years of practical experience across cybersecurity, enterprise technology, IT risk, governance and large-scale systems, including senior exposure within multinational and complex operating environments.

For CISSP learners in Oman, he connects the eight ISC2 domains with security challenges faced across oil and gas, banking, utilities, telecom, government-linked entities and critical infrastructure. His sessions cover security and risk management, architecture, networks, IAM, security assessment, operations, incident response and software security through realistic enterprise scenarios.

Kashif is particularly strong at teaching the CISSP mindset—how to think as a senior security professional rather than simply select the most technical answer. Candidates learn to approach risk-based decisions, prioritisation, governance, architecture trade-offs and “best, first or most appropriate” questions.

His classes combine concept clarity, real security cases, intensive question practice, mock analysis and targeted revision, building both exam readiness and stronger enterprise-security judgement.

Self-Paced and Reinforcement Options

Use CISSP Recordings and Resources Around a Demanding Schedule

Self-paced CISSP is available as a standalone route and as reinforcement within the live training ecosystem. Learners can revisit domain explanations, repeat practice, use revision resources and prepare around travel or shifting work commitments.

  • Complete domain learning route
  • Recorded lectures and structured resources
  • Practice questions and mock preparation
  • Live and individual support options where selected
  • Repeat and revision access within the applicable package

Not Sure Which Format Fits?

Share your current role, weekly availability, target examination timing and preferred support level. The team will recommend an appropriate live, classroom, hybrid, private, self-paced or corporate route.

Corporate CISSP Training Across Oman

Build Shared Security Knowledge Across Technology and Risk Teams

Private CISSP cohorts are available for cybersecurity, IT, architecture, engineering, cloud, audit, GRC and technology-risk teams. Delivery can be virtual, classroom-based or onsite across Oman.

  • Pre-course diagnostics and role mapping
  • Customised domain emphasis and practical cases
  • Private schedules for working teams
  • Attendance and progress visibility
  • Question checkpoints and mock planning
  • Manager-facing summaries and readiness reporting
  • Capability workshops without mandatory exam registration
Corporate CISSP training for cybersecurity and technology teams in Oman
EduDelphi Oman Course Support

Muscat Office and Oman-Wide CISSP Support

EduDelphi Oman – Muscat

Street 3701, Al Ghubrah South
Postal Code 130, Muscat, Oman

View EduDelphi Oman on Google Maps

Support Across Oman

Use the Muscat office for local course guidance while joining through classroom, live online, hybrid, private or corporate delivery from anywhere in the Sultanate.

CISSP Course FAQs

Common Questions from CISSP Candidates in Oman

What does CISSP stand for?
CISSP stands for Certified Information Systems Security Professional. It is a cybersecurity credential administered by ISC2 and covers eight domains spanning governance, risk, architecture, networks, identity, testing, operations and software security.
Is CISSP recognised in Oman?
CISSP is an international professional cybersecurity credential rather than an Oman-specific occupational licence. Its broad security, architecture, risk and operations coverage is relevant to experienced roles across sectors such as banking, energy, telecom, government, utilities and critical infrastructure. Employer requirements still vary.
Can I take the CISSP exam without five years of experience?
Yes. You can take and pass the exam before completing the full experience requirement. You would then apply for Associate of ISC2 status and work toward the qualifying experience needed for full certification.
What is Associate of ISC2?
Associate of ISC2 is a status for someone who has passed the relevant examination but does not yet meet the experience requirement. For the CISSP route, the current period to earn the required experience is up to six years. An Associate is not CISSP-certified and should not use the CISSP designation.
What work experience is required for CISSP?
Full certification normally requires five years of cumulative qualifying professional experience across at least two current CISSP domains. Full-time work, qualifying part-time work and documented paid or unpaid internships may count under current ISC2 rules.
Can a degree or another credential reduce the experience requirement?
A qualifying degree or one credential on ISC2’s current approved list may waive up to one year. Only one year can be waived; degree and credential waivers cannot be combined to remove two years.
How many questions are on the CISSP exam?
The current CAT exam contains 100–150 items, including unscored pretest items that candidates cannot identify. The exam lasts up to three hours.
Can I take the CISSP exam online from home in Oman?
No, not currently. EduDelphi classes can be taken online, but the official CISSP CAT examination is delivered through eligible Pearson testing centres. Muscat has Pearson VUE test-centre infrastructure, but CISSP appointment availability must be confirmed through the current ISC2/Pearson scheduling route for the selected date.
Can I change an earlier answer in the CISSP CAT exam?
No. Once an answer has been finalised, the adaptive exam does not allow the candidate to go back and change it.
What score is required to pass CISSP?
ISC2 states a passing standard of 700 out of 1,000 scaled points. This is not the same as saying that 70% of questions guarantees a pass.
What happens if I do not pass CISSP?
Current retake waits are 30 test-free days after the first attempt, 60 after the second and 90 after the third and later attempts. A candidate may attempt the certification exam up to four times in 12 months, and each retake requires another official exam registration fee.
What happens after I pass the CISSP exam?
Candidates normally have nine months to submit the certification or Associate application. Full certification requires documented qualifying experience, endorsement, agreement with the Code of Ethics and the applicable Annual Maintenance Fee after approval.
Who can endorse my CISSP application?
An active ISC2-certified member in good standing can endorse the application; the endorser does not need to hold CISSP specifically. If you do not know an eligible member, ISC2 currently allows you to request its endorsement assistance and provide employment evidence.
How do I maintain CISSP?
ISC2 currently requires 120 CPE credits over each three-year cycle and lists a US$135 member Annual Maintenance Fee. Always verify the current maintenance policy directly with ISC2.
How long does CISSP preparation take?
EduDelphi provides 40+ guided live hours plus recordings, extensive practice and revision support. The total preparation period depends on domain experience, weekly study capacity, mock performance and the intended examination date.
Is CISSP the same as ISO/IEC 27001 training?
No. CISSP is an individual cybersecurity certification covering broad security knowledge. ISO/IEC 27001 Lead Implementer or Lead Auditor training focuses on implementing or auditing an information security management system against that standard.
Is the CISSP exam available in Arabic?
No. Arabic is not currently among ISC2’s listed CISSP examination languages. The current listed languages are Chinese, English, German, Japanese and Spanish. EduDelphi can discuss Arabic or bilingual teaching support where available, but candidates taking the English exam should become comfortable with the official English security terminology used during preparation.
Are exam-voucher or retake-support options available?
Yes, suitable voucher or retake-support options can be discussed. Exact inclusions, validity and official terms depend on the selected package and should be confirmed in the written quotation.
Get CISSP Course Details

Get Fees, Syllabus and Current CISSP Batch Options

Share your current role, experience, preferred delivery mode and target examination timing. The Oman team will send the current fee structure, active schedules, complete inclusions and an appropriate preparation recommendation.

  • Training and official-cost breakdown
  • Weekday, evening, weekend and fast-track options
  • Experience and Associate-path guidance
  • Live, classroom, self-paced, private and corporate routes

Request CISSP Course Details

Get the current Oman course information and speak with the team.

We respect your privacy. No spam – only relevant course information.

CISSP and Certified Information Systems Security Professional are registered marks of ISC2. EduDelphi provides independent CISSP exam preparation and does not award the credential.