Page 1124 - (ISC)² CISSP Certified Information Systems Security Professional Official Study Guide
P. 1124
7.16.2 Security training and awareness
7.16.3 Emergency management
7.16.4 Duress
The Security Operations domain includes a wide
range of security foundation concepts and best practices. This includes
several core concepts that any organization needs to implement to
provide basic security protection. The first section of this chapter
covers these concepts.
Resource protection ensures that resources are securely provisioned
when they’re deployed and throughout their lifecycle. Configuration
management ensures that systems are configured correctly, and
change management processes protect against outages from
unauthorized changes. Patch and vulnerability management controls
ensure that systems are up-to-date and protected against known
vulnerabilities.

