16.11.2014 Views

CBT Examination Registration Form - ISC

CBT Examination Registration Form - ISC

CBT Examination Registration Form - ISC

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

EXAM REGISTRATION FORM - <strong>CBT</strong><br />

BUSINESS CONFIDENTIAL<br />

Please print clearly, incomplete registration forms will be returned.<br />

SECTION 1: APPLICATION INFORMATION<br />

Mr. Ms. Mrs. Dr.<br />

Family Name/Surname:<br />

First Name/Given:<br />

Other:<br />

Middle Initial:<br />

Address:<br />

City: State/Country: Postal Code:<br />

Home Email:<br />

Date of Birth:<br />

Home Phone:<br />

Home Fax:<br />

Employer:<br />

Title/Position:<br />

Industry Type:<br />

Business Address:<br />

City:<br />

State/Country:<br />

Postal Code:<br />

Business Email:<br />

Please contact me at (indicate your preferred email address):<br />

Have you taken an (<strong>ISC</strong>)² examination before?<br />

Business Phone:<br />

Home Email Address<br />

Business Email Address<br />

No Yes If so, what is your existing Member/Candidate ID?<br />

SECTION 2: EXAMINATION INFORMATION (Please indicate the examination you wish to sit for:)<br />

CISSP ® Certified Information Systems Security Professional<br />

those candidates who do not have the required practical<br />

experience required for full certification:<br />

CSSLP ®<br />

Certified Secure Software Lifecycle Professional<br />

ISSEP ® Information Systems Security Engineering Professional register-now.aspx) for our complete policy on special arrangements.<br />

CAP ® Certified Authorization Professional<br />

Associate of (<strong>ISC</strong>)²: CISSP SSCP<br />

SSCP ® Systems Security Certified Practitioner<br />

CSSLP<br />

CAP<br />

ISSAP ® Information Systems Security Architecture Professional<br />

I have a physical or other disability that may require special<br />

arrangements. Please refer to the (https://www.isc2.org/certification-<br />

For<br />

ISSMP ® Information Systems Security Management Professional<br />

SECTION 3: APPLICATION REQUIREMENTS<br />

(Complete the appropriate section related to the certification/concentration you checked in Section 2)<br />

Applicant must meet the following requirements to qualify to sit for the CISSP ® /SSCP ® examination:<br />

A) Subscribe to the (<strong>ISC</strong>)² Code of Ethics<br />

B) Have the minimum year(s) of professional experience indicated below. Please refer to the (<strong>ISC</strong>)² Website (www.isc2.org) for comprehensive guidelines regarding what<br />

constitutes professional information security experience. CISSP's may be eligible to waive One Year of Professional Experience:<br />

CISSP ® - 5 years of direct full-time information security professional experience in 2 or more of the 10 domains of the (<strong>ISC</strong>)² CISSP CBK ®<br />

SSCP ® - 1 year of direct full-time information security professional experience in 1 or more of the 7 domains of the (<strong>ISC</strong>)² SSCP CBK ®<br />

CAP ® - 2 years of direct full-time information security professional experience in 1 or more of the 7 domains of the (<strong>ISC</strong>)² CAP CBK ®<br />

CSSLP ® - 4 years of direct full-time information security professional experience in 1 or more of the 8 domains of the (<strong>ISC</strong>)² CSSLP CBK ®<br />

To qualify for a concentration examination, you must be a CISSP in good standing, Please enter your member ID Number<br />

©Copyright 2004-2013 (<strong>ISC</strong>)², Inc. All rights reserved. All contents of this form constitute the property of (<strong>ISC</strong>)², Inc. and may not be copied, reproduced or distributed without prior written permission. Page 1 of 9<br />

All marks are the property of <strong>ISC</strong>².<br />

(<strong>ISC</strong>)² <strong>Examination</strong> <strong>Registration</strong> <strong>Form</strong> 2012-81-03 Version 1.1


PROFESSIONAL EXPERIENCE<br />

List information that qualifies for your required year(s) of professional experience. If your experience is not clearly information security or certification and accreditation<br />

related as required, provide further details on an attached sheet of paper. (<strong>ISC</strong>)² may, at its sole discretion, require more information and/or reject any candidate's application.<br />

By registering for the examination to become an Associate of (<strong>ISC</strong>)², you have chosen a career path in information security and will work toward meeting the requirements for<br />

professional certification you also therefore, agree to subscribe to the (<strong>ISC</strong>)² code of ethics.<br />

Number of Months CBK ® Domain Industry Type<br />

Associates - When do you expect to obtain the number of years of experience required for certification? (Date)<br />

CISSP DOMAINS<br />

Access Control<br />

Telecommunications & Network Security<br />

Information Security Governance & Risk Management<br />

Software Development Security<br />

Cryptography<br />

Security Architecture & Design<br />

Operations Security<br />

Business Continuity & Disaster Recovery Planning<br />

Legal, Regulations, Investigations and Compliance<br />

Physical (Environmental) Security<br />

CSSLP DOMAINS<br />

Secure Software Concepts<br />

Secure Software Requirements<br />

Secure Software Design<br />

Secure Software Implementation/Coding<br />

Secure Software Testing<br />

Software Acceptance<br />

Software Deployment, Operations, Maintenance<br />

and Disposal<br />

Supply Chain and Software Acquisition<br />

CAP DOMAINS<br />

Understand the Security Authorization<br />

of Information Systems<br />

Categorize Information Systems<br />

Establish the Security Control Baseline<br />

Apply Security Controls<br />

Assess Security Controls<br />

Authorize Information System<br />

Monitor Security Controls<br />

ISSAP-CISSP DOMAINS<br />

Access Control Systems and Methodology<br />

Communications & Network Security<br />

Cryptography<br />

Security Architecture Analysis<br />

Technology Related Business Continuity Planning<br />

(BCP) & Disaster Recovery Planning (DRP)<br />

Physical Security Considerations<br />

ISSEP-CISSP DOMAINS<br />

Systems Security Engineering<br />

Certification and Accreditation (C&A)/Risk Management<br />

Framework (RMF)<br />

Technical Management<br />

U.S. Government Information Assurance Related Policies<br />

and Issuances<br />

ISSMP-CISSP DOMAINS<br />

Security Leadership and Management<br />

Security Lifecycle Management<br />

Security Compliance Management<br />

Contingency Management<br />

Law, Ethics and Incident Management<br />

SSCP DOMAINS<br />

Access Controls<br />

Security Operations and<br />

Administration<br />

Monitoring and Analysis<br />

Risk, Response, and Recovery<br />

Cryptography<br />

Networks and Communications<br />

Malicious Code and Activity<br />

©Copyright 2004-2013 (<strong>ISC</strong>)², Inc. All rights reserved. All contents of this form constitute the property of (<strong>ISC</strong>)², Inc. and may not be copied, reproduced or distributed without prior written permission. Page 2 of 9<br />

All marks are the property of the <strong>ISC</strong>²<br />

(<strong>ISC</strong>)² <strong>Examination</strong> <strong>Registration</strong> <strong>Form</strong> 2012-08-03 Version 1.1


INDUSTRY TYPES<br />

Aerospace<br />

Agriculture/Forestry<br />

Banking/Financial/Accounting<br />

Communications/Networks<br />

Computer Services/Systems<br />

Construction/Engineering<br />

Architectural Education<br />

Federal Government<br />

Fishing<br />

Government & Military<br />

Healthcare/Medical/Pharmaceutical<br />

Hospitality<br />

Insurance<br />

Legal<br />

Local Government<br />

Management Consulting<br />

Manufacturing<br />

Media<br />

Merchandising<br />

Natural Resources<br />

Public Utilities<br />

Real Estate<br />

Retail<br />

Self-employed<br />

State Government<br />

Service<br />

Transportation/Shipping<br />

Wholesale<br />

CISSP's: Are you claiming a 1 year waiver of the 5-year experience requirement in accordance with the published policy on the (<strong>ISC</strong>)² Website?<br />

CSSLP's: Are you claiming a 1 year waiver of the 4-year experience requirement in accordance with the published policy on the (<strong>ISC</strong>)² Website?<br />

Yes<br />

No (No more than 1 year total can be waived.)<br />

One-year waiver of the professional experience requirement for education.<br />

4- Year Degree<br />

University/College:<br />

Master's Degree in information Assurance Education/information security from U.S. National Center of Academic Excellence in<br />

IA Education (CAE/IAE) or regional equivalent; see list at: http://www.isc2.org/credential_waiver/default.aspx<br />

Degree / Diploma Granted:<br />

Date:<br />

OR One-year waiver of the professional experience requirement for holding a credential on the (<strong>ISC</strong>)²-approved list; see list at www.isc2.org/credential_waiver<br />

Approved Credential(s) per list on (<strong>ISC</strong>)² Website:<br />

Section 4: EXAMINATION PREFERENCES<br />

New date(s) you wish to attend - please see the Exam Schedules page at www.isc2.org for a current list of exam dates and locations. Please note the rescheduling policies at<br />

(https://webportal.isc2.org/Custom/ExamsSearch.aspx) prior to selecting your preferences.<br />

Exam Date:<br />

(MM/DD/YY) Exam Location:<br />

The CISSP Concentrations exams CSSLP, and CAP exams are available in English only.)<br />

All non-English exams include each question in both English and chosen language.<br />

CISSP Exam Language:<br />

SSCP Exam Language:<br />

English (US) French (Standard) German Japanese Korean Spanish (International)<br />

English (US) Japanese Portuguese Bahasa Indonesia Private Event Code (if applicable):<br />

Brazilian Portuguese<br />

©Copyright 2004-2013 (<strong>ISC</strong>)², Inc. All rights reserved. All contents of this form constitute the property of (<strong>ISC</strong>)², Inc. and may not be copied, reproduced or distributed without prior written permission. Page 3 of 9<br />

All marks are the property of the <strong>ISC</strong>²<br />

(<strong>ISC</strong>)² <strong>Examination</strong> <strong>Registration</strong> <strong>Form</strong> 2012-08-03 Version 1.1


Section 5: APPLICATION AGREEMENT & POLICIES<br />

By registering for an International Information Systems Security Certification Consortium, Inc. ("(<strong>ISC</strong>)²") certification examination, I hereby affirm that I<br />

understand and agree to abide to the terms, conditions, and policies attached to this application (pages 1-9) and incorporated by reference.<br />

This Application Agreement (the "Agreement") is between you and International Information Systems Security Certification Consortium, Inc. ("(<strong>ISC</strong>)²") and sets forth the terms and conditions of you<br />

being allowed to take the (<strong>ISC</strong>)² examination and subsequent certification, if any.<br />

You agree that your obligations under this Agreement shall continue in effect after the <strong>Examination</strong> and, if applicable, after termination of your Certification, regardless of the reason(s) for termination,<br />

and whether such termination is voluntary or involuntary. Any claim, issue, or cause of action arising out of or related to this Agreement, the <strong>Examination</strong>, or any Certification awarded, (“Claims”) shall<br />

be finally resolved by arbitration in accordance with the International Institute for Conflict Prevention and Resolution Rules for Non-Administered Arbitration by a sole arbitrator, who shall be qualified<br />

as an attorney at law with experience relevant to the dispute. The arbitration shall be governed by the Federal Arbitration Act, 9 U.S.C. §§ 1 et seq., and judgment upon the award rendered by the<br />

arbitrator shall be entered by any court having jurisdiction thereof. The arbitrator is not empowered to award damages in excess of compensatory damages, except in cases involving breach of nondisclosure<br />

or intellectual property, and each party expressly waives and foregoes any right to punitive, exemplary or similar damages unless a statute requires or permits that compensatory damages be<br />

increased in a specified manner. Arbitration shall proceed solely on an individual basis without the right for any Claims to be arbitrated on a class action basis or on bases involving Claims brought in a<br />

purported representative capacity on behalf of others. The arbitrator's authority to resolve and make written awards is limited to Claims between you and (<strong>ISC</strong>)² alone. Claims may not be joined or<br />

consolidated unless agreed to in writing by all parties. No arbitration award or decision will have any preclusive effect as to issues or claims in any dispute with anyone who is not a named party to the<br />

arbitration.<br />

Notwithstanding the foregoing, either party may file and prosecute an action for injunctive or similar equitable relief and the filing of such an action shall not constitute a waiver of the parties' rights to<br />

require arbitration of any other dispute. Violation of any of these provisions may cause irreparable harm to (<strong>ISC</strong>)² for which monetary remedies may be inadequate, and (<strong>ISC</strong>)² may take all appropriate<br />

actions to remedy or prevent such disclosure or misuse, including, without limitation, obtaining an immediate injunction without being required to post bond. Furthermore, any violation of these<br />

provisions may result in the immediate and permanent termination of your Certification at the discretion of the Executive Director. Neither this Agreement nor any right granted hereunder shall be<br />

assignable or otherwise transferable by you. This Agreement shall be construed in accordance with the laws of the Commonwealth of Massachusetts. This Agreement is supplemental to, and integrated<br />

with, the (<strong>ISC</strong>)², <strong>Examination</strong> Agreement. BY TAKING THE EXAMINATION, I AM AGREEING THAT I HAVE READ THIS AGREEMENT AND FULLY UNDERSTAND AND ACCEPT THE<br />

OBLIGATIONS IMPOSED UPON ME. NO PROMISES, THREATS, OR REPRESENTATIONS HAVE BEEN MADE TO ME TO INDUCE ME TO ENTER INTO THIS AGREEMENT.<br />

I ACCEPT THIS AGREEMENT VOLUNTARILY AND FREELY.<br />

I HAVE READ AND UNDERSTAND THESE STATEMENTS AND INTEND TO BE LEGALLY BOUND BY THEM.<br />

Authorized Signature:<br />

Date:<br />

Section 6: FORM INSTRUCTIONS<br />

Mail or fax this completed form to the (<strong>ISC</strong>)² office nearest to the examination event location:<br />

AMERICAS<br />

(<strong>ISC</strong>)² <strong>Registration</strong><br />

311 Park Place Boulevard, Suite 400<br />

Clearwater, FL 33759<br />

USA<br />

Ph: +1.727.785.0189<br />

(Toll Free):1.866.331.<strong>ISC</strong>2 (4722)<br />

Fax: +1.727.683.0785<br />

EUROPE / MIDDLE EAST / AFRICA<br />

(<strong>ISC</strong>)² EMEA<br />

3 More London Riverside, 1st Floor<br />

London SE1 2RE<br />

United Kingdom<br />

Ph: +44 (0)203.283.4383<br />

Fax: +44 (0)203.283.4384<br />

ASIA - PACIFIC<br />

(<strong>ISC</strong>)² Asia - Pacific<br />

Suite 514, 5/F, South Tower<br />

World Finance Centre<br />

Harbour City, Kowloon<br />

Hong Kong<br />

Ph: +852.2850.6951<br />

Fax: +852.2850.6959<br />

You will be contacted at your preferred email address (as indicated on page 1) regarding your exam registration.<br />

©Copyright 2004-2013 (<strong>ISC</strong>)², Inc. All rights reserved. All contents of this form constitute the property of (<strong>ISC</strong>)², Inc. and may not be copied, reproduced or distributed without prior written permission. Page 4 of 9<br />

All marks are the property of the <strong>ISC</strong>²<br />

(<strong>ISC</strong>)² <strong>Examination</strong> <strong>Registration</strong> <strong>Form</strong> 2012-08-03 Version 1.1


<strong>Examination</strong> Agreement<br />

Computer-Based Testing<br />

Effective Date: 1 April 2013<br />

1.0 CERTIFICATION EXAMINATION INFORMATION AND REQUIREMENTS AGREEMENT (EXAMINATION<br />

AGREEMENT)<br />

For information regarding how to become certified please see:<br />

• https://www.isc2.org/steps-for-certification.aspx<br />

For information on Exam information and Exam Administration policies please see:<br />

• Link to the list of Candidate Information Bulletins that have been revised for <strong>CBT</strong> (e.g. CSSLP)-<br />

https://www.isc2.org/CIB.aspx<br />

For Additional Information on related topics please see:<br />

• Associate of (<strong>ISC</strong>)² -<br />

https://www.isc2.org/uploadedFiles/Credentials_and_Certifcation/Associate_of_(<strong>ISC</strong>)2/Associ<br />

ate-of-(<strong>ISC</strong>)2.pdf<br />

• AMF’s - https://www.isc2.org/amfs-explained/default.aspx<br />

• Endorsement Time Limits - https://www.isc2.org/New-Time-Limit-Endorsement.aspx.<br />

• Endorsement - https://www.isc2.org/endorsement.aspx<br />

• In-Good- Standing - https://www.isc2.org/MembersInGoodStanding.aspx<br />

• CPE’s - https://www.isc2.org/cpe-policies/default.aspx<br />

(<strong>ISC</strong>)² reserves the right to amend this agreement with 90 days’ notice to its members. Notice will be<br />

posted to the member-only website and sent to each member’s email address of record.<br />

By registering for an International Information Systems Security Certification Consortium, Inc. (“(<strong>ISC</strong>)²”)<br />

examination, I hereby affirm that I understand, acknowledge and agree to the following:<br />

2.0 EXAMINATION REGISTRATION<br />

2.1 Candidate Requirements<br />

To become certified, a candidate must successfully complete two separate processes: <strong>Examination</strong><br />

and Certification. The eligibility requirements to sit for an (<strong>ISC</strong>)² examination are completely separate<br />

from the eligibility requirements necessary to be certified.<br />

2.2 Language Issues<br />

Some (<strong>ISC</strong>)² examinations are offered in English only. If English is not your primary language, (<strong>ISC</strong>)²<br />

recommends (but does not require) that candidates sit for the TOEFL (Test of English as a Foreign<br />

Language) examination prior to sitting for an (<strong>ISC</strong>)² examination. Your scores on the TOEFL will<br />

provide a useful gauge for you to ascertain whether reading and comprehending English will<br />

present problems for you on an (<strong>ISC</strong>)² examination. The TOEFL examination is offered at multiple<br />

5<br />

© 2013 International Information Systems Security Certification Consortium, Inc. All Rights Reserved. Duplication for commercial<br />

purposes is prohibited. 03082013 Version 1.1


<strong>Examination</strong> Agreement<br />

Computer-Based Testing<br />

Effective Date: 1 April 2013<br />

locations both domestically and internationally throughout the year. More information is available at<br />

www.ets.org.<br />

2.3 Waiver of privacy right against third parties<br />

As far as permitted by law, all members of (<strong>ISC</strong>)² waive any privacy right, whether express or implied,<br />

against any third party filing a claim against the member for breach of the (<strong>ISC</strong>)² Code of Ethics. This<br />

supports the unfettered reporting of unethical activity of members.<br />

2.4 <strong>Examination</strong> Agreement<br />

The <strong>Examination</strong> Agreement (the "Agreement") is between you and International Information<br />

Systems Security Certification Consortium, Inc. ("(<strong>ISC</strong>)²") and sets forth the terms and conditions of<br />

you being allowed to take the (<strong>ISC</strong>)² examination.<br />

The disclosure to you of this examination (the "Exam") and any questions, answers, worksheets,<br />

diagrams, examples, drawings, the length and/or number of Exam segments and/or questions, or<br />

any communication, including verbal communications by any party, regarding or related to the<br />

Exam, the identity of other Exam takers (collectively and any derivatives referred to as the "Exam<br />

Materials") is subject to the terms and conditions detailed herein. BY TAKING THE EXAMINATION, YOU<br />

ARE AFFIRMING BY YOUR ACTIONS THAT YOU UNDERSTAND THE TERMS HEREIN AND YOUR INTENT TO<br />

BE BOUND BY THE TERMS AND CONDITIONS OF THIS AGREEMENT.<br />

IF YOU DO NOT AGREE TO BE BOUND BY THIS AGREEMENT YOU WILL BE ASKED TO LEAVE BEFORE THE<br />

EXAM CAN COMMENCE. YOU WILL NOT OBTAIN CERTIFICATION AND MAY NOT USE ANY<br />

CERTIFICATION MARK. Because you were presented with these terms at the time of exam scheduling<br />

and the decision to proceed was made by you, your Exam Application fee will NOT be refunded.<br />

You understand, acknowledge and agree:<br />

1. That (<strong>ISC</strong>)² has spent, and continues to spend, substantial sums in developing, keeping<br />

current, and administering its Exam Materials and carefully guards their integrity and<br />

confidentiality;<br />

2. That the Exam Materials are the exclusive and confidential property of (<strong>ISC</strong>)² and are<br />

protected by (<strong>ISC</strong>)²'s intellectual property rights;<br />

3. That you may not disclose the Exam questions or answers or discuss any of the content of<br />

the Exam Materials with any person without prior written approval of (<strong>ISC</strong>)²;<br />

6<br />

© 2013 International Information Systems Security Certification Consortium, Inc. All Rights Reserved. Duplication for commercial<br />

purposes is prohibited. 03082013 Version 1.1


<strong>Examination</strong> Agreement<br />

Computer-Based Testing<br />

Effective Date: 1 April 2013<br />

4. Not to remove from the examination room any Exam Materials of any kind provided to<br />

you or any other material related to the Exam, including, without limitation, any notes<br />

you may have written;<br />

5. Not to copy or attempt to copy any Exam Material;<br />

6. Not to sell, license, distribute, exchange, give away, comment or discuss the Exam<br />

Materials, questions or answers, whether before, during or after the <strong>Examination</strong>;<br />

7. Not to talk with other examinees or behave in a rude or disruptive manner during the<br />

<strong>Examination</strong>;<br />

8. You will not cheat, attempt to cheat, or otherwise attempt in any way to falsely enhance<br />

your score; and,<br />

9. You have met the requisite standards to take this <strong>Examination</strong>.<br />

You agree that your obligations under this Agreement shall continue in effect after the <strong>Examination</strong><br />

and, if applicable, after termination of your Certification, regardless of the reason(s) for termination,<br />

and whether such termination is voluntary or involuntary. Any claim, issue, or cause of action arising<br />

out of or related to this Agreement, the <strong>Examination</strong>, or any Certification awarded, (“Claims”) shall<br />

be finally resolved by arbitration in accordance with the International Institute for Conflict Prevention<br />

and Resolution Rules for Non-Administered Arbitration by a sole arbitrator, who shall be qualified as<br />

an attorney at law with experience relevant to the dispute. The arbitration shall be governed by the<br />

Federal Arbitration Act, 9 U.S.C. §§ 1 et seq., and judgment upon the award rendered by the<br />

arbitrator shall be entered by any court having jurisdiction thereof. The arbitrator is not empowered<br />

to award damages in excess of compensatory damages, except in cases involving breach of nondisclosure<br />

or intellectual property, and each party expressly waives and foregoes any right to<br />

punitive, exemplary or similar damages unless a statute requires or permits that compensatory<br />

damages be increased in a specified manner. Arbitration shall proceed solely on an individual basis<br />

without the right for any Claims to be arbitrated on a class action basis or on bases involving Claims<br />

brought in a purported representative capacity on behalf of others. The arbitrator's authority to<br />

resolve and make written awards is limited to Claims between you and (<strong>ISC</strong>)² alone. Claims may not<br />

be joined or consolidated unless agreed to in writing by all parties. No arbitration award or decision<br />

will have any preclusive effect as to issues or claims in any dispute with anyone who is not a named<br />

party to the arbitration.<br />

Notwithstanding the foregoing, either party may file and prosecute an action for injunctive or similar<br />

equitable relief and the filing of such an action shall not constitute a waiver of the parties’ rights to<br />

require arbitration of any other dispute. Violation of any of these provisions may cause irreparable<br />

harm to (<strong>ISC</strong>)² for which monetary remedies may be inadequate, and (<strong>ISC</strong>)² may take all<br />

appropriate actions to remedy or prevent such disclosure or misuse, including, without limitation,<br />

obtaining an immediate injunction without being required to post bond. Furthermore, any violation<br />

7<br />

© 2013 International Information Systems Security Certification Consortium, Inc. All Rights Reserved. Duplication for commercial<br />

purposes is prohibited. 03082013 Version 1.1


<strong>Examination</strong> Agreement<br />

Computer-Based Testing<br />

Effective Date: 1 April 2013<br />

of these provisions may result in the immediate and permanent termination of your Certification at<br />

the discretion of the Executive Director. Neither this Agreement nor any right granted hereunder shall<br />

be assignable or otherwise transferable by you. This Agreement shall be construed in accordance<br />

with the laws of the Commonwealth of Massachusetts. This Agreement is supplemental to, and<br />

integrated with, the (<strong>ISC</strong>)², <strong>Examination</strong> Agreement. BY TAKING THE EXAMINATION, I AM AGREEING<br />

THAT I HAVE READ THIS AGREEMENT AND FULLY UNDERSTAND AND ACCEPT THE OBLIGATIONS<br />

IMPOSED UPON ME. NO PROMISES, THREATS, OR REPRESENTATIONS HAVE BEEN MADE TO ME TO<br />

INDUCE ME TO ENTER INTO THIS AGREEMENT.<br />

I ACCEPT THIS AGREEMENT VOLUNTARILY AND FREELY.<br />

3.0 (<strong>ISC</strong>)² CODE OF ETHICS<br />

All information systems security professionals who are certified by (<strong>ISC</strong>)² recognize that such<br />

certification is a privilege that must be both earned and maintained. In support of this principle, all<br />

(<strong>ISC</strong>)² members are required to commit to fully support this Code of Ethics (the "Code"). (<strong>ISC</strong>)²<br />

members who intentionally or knowingly violate any provision of the Code will be subject to action<br />

by a peer review panel, which may result in the revocation of certification.<br />

There are only four mandatory canons in the code. By necessity, such high-level guidance is not<br />

intended to be a substitute for the ethical judgment of the professional.<br />

Additional guidance is provided for each of the canons. While this guidance may be considered by<br />

the board of directors in judging behavior, it is advisory rather than mandatory. It is intended to help<br />

professionals identify and resolve the inevitable ethical dilemmas that they will confront during the<br />

course of their information security career.<br />

3.1 Code of Ethics Preamble:<br />

• Safety of the commonwealth, duty to our principals, and to each other requires that we<br />

adhere, and be seen to adhere, to the highest ethical standards of behavior.<br />

• Therefore, strict adherence to this Code is a condition of certification.<br />

3.2 Code of Ethics Canons:<br />

• Protect society, the commonwealth, and the infrastructure.<br />

• Act honorably, honestly, justly, responsibly, and legally.<br />

• Provide diligent and competent service to principals.<br />

• Advance and protect the profession.<br />

8<br />

© 2013 International Information Systems Security Certification Consortium, Inc. All Rights Reserved. Duplication for commercial<br />

purposes is prohibited. 03082013 Version 1.1


<strong>Examination</strong> Agreement<br />

Computer-Based Testing<br />

Effective Date: 1 April 2013<br />

3.3 Information Changes<br />

Members are required to keep (<strong>ISC</strong>)² informed of updates to their contact information as a<br />

requirement of certification. Changes to contact information may be submitted through the<br />

Member’s Website at (https://www.members.isc2.org) or by calling an (<strong>ISC</strong>)² regional office.<br />

(https://www.isc2.org/contactus )<br />

3.4 Logo Usage Guidelines<br />

(<strong>ISC</strong>)² is a non-profit membership organization identified as the leader in certifying individuals in<br />

information security. All of (<strong>ISC</strong>)²’s certification programs are ANSI ISO/IEC 17024 accredited with the<br />

exception of JGISP, which is a regional certification. (<strong>ISC</strong>)² does not provide information security<br />

service but focuses on the training, education, and certification of information security professionals.<br />

Candidates who successfully complete any of the (<strong>ISC</strong>)2 certification requirements may use the<br />

appropriate Certification Mark or the Collective Mark, where appropriate, and the logo containing<br />

the Certification Mark or the Collective Mark, where appropriate (the “Logo”) to identify themselves<br />

as having demonstrated the professional experience and requisite knowledge in the realm of<br />

information systems security. Please see the following for more information on logo use:<br />

https://www.isc2.org/uploadedFiles/(<strong>ISC</strong>)2_Public_Content/Legal_and_Policies/LogoGuidelines.pdf<br />

3.5 Certification Disclosure<br />

As a certifying body, (<strong>ISC</strong>)² has a duty to the general public to verify those individuals claiming to<br />

hold its certifications. (<strong>ISC</strong>)² may make available to third parties and/or the general public<br />

information verifying your certification. This will be done in such a manner to minimize the amount of<br />

information disclosed about members, but still assure verification of a member’s certification. This<br />

may include listing the member’s name, region, and certification type in a public directory on the<br />

(<strong>ISC</strong>)² website, providing a listing of members’ name to employers’ upon the written request of your<br />

employer (if a member has so identified their employer in their member record), verifying the<br />

members’ possession of an (<strong>ISC</strong>)² certification to a telephone or e-mail verification inquiry. In no<br />

instance will any contact information (including telephone, e-mail or mailing address), financial<br />

information of any type, or any membership information be disclosed other than verifying<br />

members’certification.<br />

Correspondingly, in the event of decertification, you permit (<strong>ISC</strong>)² to notify third parties, as<br />

necessary, of your decertification, including if by breach of the Code of Ethics.<br />

9<br />

© 2013 International Information Systems Security Certification Consortium, Inc. All Rights Reserved. Duplication for commercial<br />

purposes is prohibited. 03082013 Version 1.1

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!