Study Guide · ISSAP

Information Systems Security Architecture Professional Study Guide

4 domains · 11 subtopics · weighted by the official ISSAP exam guide

Yes, you are in the right place. This is the written companion to the ISSAP practice exams: a complete walk through everything the Information Systems Security Architecture Professional exam covers, in one place.

ISSAP rewards architectural judgment more than recall. Items typically hand you a scenario where two options both improve security, and the credit goes to the one that meets the obligation the scenario actually stated. You will keep choosing between the certificate a supplier offers and the requirement that really binds you, between encrypting more data and placing the control on the component that stands at the boundary, and between a stronger sign-in and the separation of duties that would have stopped the act. Work moves, accountability does not, and nothing counts until the design can evidence it.

The guide follows the four official domains and weights them the way the exam does: Infrastructure and System Security Architecture at 32%, Identity and Access Management Architecture at 25%, Security Architecture Modeling at 22%, and Governance, Risk, and Compliance at 21%. Each domain opens with its mental model in plain language, a comparison table, and a decision tree that routes an unfamiliar question to the right page. The chapters then work through the tested points one at a time, each paired with the trap it invites. Start at the top, or pick a domain from the list beside this page.