Exam Guide For 1D0-470 CIW Security
Professional
CIW Security Professional is a requirement for the
following CIW certifications:
- CIW
Certified Instructor - for those teaching CIW
Internetworking Professional content.
- Master
CIW Administrator.
CIW Associates who pass the CIW Security Professional
exam also achieve the following CIW certification:
Top
Candidates must complete the following prerequisites
prior to sitting the CIW Security Professional exam:
- CIW
Certification Agreement This simple on-line
agreement needs to be completed only once, but is
necessary for CIW Certification Central to ship CIW
certificates (CIW Associate, CIW Professional or
Master CIW certificates) to candidates who pass the
required CIW certification exam(s).
- CIW
Associate certificate Passing the CIW Foundations
exam 1D0-410 is required for those candidates to
achieve CIW Professional, Master CIW Administrator,
and/or Master CIW Web Site Manager certification
designation.
- CIW
Server Administrator Passing the CIW Server
Administrator exam 1D0-450 is required for those
candidates seeking Master CIW Administrator
certification designation.
- CIW
Internetworking Professional Passing the CIW
Internetworking Professional exam 1D0-460 is required
for those candidates seeking Master CIW Administrator
certification designation.
No candidate is restricted from taking the CIW
Security Professional exam. However, it is highly
recommended that candidates take (and pass) CIW exams in
sequential order.
CIW Security Professional certification is a
requirement for Master
CIW Administrator certification.
Top
Students who have taken CIW courses are encouraged to
continue their studies and apply their new skills before
attempting the 1D0-470 CIW Security Professional exam.
Skills taught in CIW Security Professional courses are
best reinforced with real-world experience.
The candidate is responsible for learning the content
and achieving a passing score on the 1D0-470 CIW
Security Professional exam. Comments regarding course
delivery should be referred to the training company that
delivered the course.
Any 1D0-470 CIW Security Professional exam will be
subject to the following:
- Each delivery of the exam will include a random
selection of 60 items.
- The examination period will be 75 minutes.
To achieve a passing score on the 1D0-470 CIW
Security Professional exam, candidates must:
- Correctly answer at least 45 of the 60 questions
to achieve a total score of 75% or
greater,
AND
- Answer at least 70% of the questions correctly in
each individual module.
|
Module |
Number of
Items |
|
Network Security and Firewalls |
22 |
|
Operating Systems Security |
16 |
|
Security Auditing, Attacks and Threat
Analysis |
22 |
|
Total Items |
60 | |
Each exam item offers four solutions or distracters.
Exam candidates must select the one best solution for each item
Top
A CIW Security Professional implements security
policy, identifies security threats, and develops
countermeasures using firewall systems and
attack-recognition technologies. This individual is
responsible for managing the deployment of e-business
transaction and payment security solutions. Skills
measured in the 1D0-470 exam include but are not limited
to:
- Network perimeter security and elements of an
effective security policy.
- Encryption, including the three main encryption
methods used in internetworking.
- Universal guidelines and principles for effective
network security, as well as guidelines to create
effective specific solutions.
- Security principles and security attack
identification.
- Firewall types and common firewall terminology.
- Firewall system planning including levels of
protection.
- Network firewall deployment.
- Network security including industry security
evaluation criteria and guidelines used to determine
three security levels.
- Mechanisms used to implement security systems,
tools to evaluate key security parameters, techniques
for security accounts, and threats to Windows 2000 and
UNIX systems.
- Permissions identification, assignment and usage,
system defaults, and security commands.
- System patches and fixes including application of
system patches.
- Windows 2000 Registry modifications, including
lockdown and removal of services for effective
security in Windows 2000 and Linux.
- Security auditing principles, security auditor's
chief duties and network risk factor assessment.
- Security auditing and discovery processes, audit
plans, and network-based and host-based discovery
software.
- Penetration strategies and methods, including
identification of potential attacks.
- User activities baseline, log analysis, and
auditing of various activities.
- Security policy compliance and assessment reports.
- Operating system
add-ons, including personal firewalls and native
auditing.
Top
The CIW Exam Retake Policy outlines the conditions
under which a candidate may retake a CIW exam. A waiting
period between retakes of a single certification exam
maintains the security of the exam and strengthens the
value of the CIW certification. Each CIW exam is defined
by a unique exam ID (e.g., IDO-410). A retake is any
subsequent sitting of an exam with the same CIW exam ID
by the same candidate at any authorized testing
center.
In the event that a candidate passes a CIW exam, the
candidate will not be allowed to retake that CIW exam.
If the CIW exam objectives change, the exam ID changes
to reflect the new exam version. Candidates who have
passed an exam may sit a newer version of the exam that
may have the same title but a different ID number.
In the event that a candidate fails a CIW exam on his
or her first attempt, a 24-hour waiting period is
required between the first and second sittings of that
CIW exam. Candidates are required to wait for a period
of no less than thirty (30) calendar days from the date
of the previous sitting before any third or subsequent
sitting of the same CIW exam.
Exams administered in any ways that do not comply
with the CIW Exam Retake Policy shall be considered
invalid and ineligible for a refund.
In the event that a candidate has violated this Exam
Retake Policy, the candidate may be deemed ineligible to
register for or schedule any CIW exam for a minimum
period of twelve (12) months from the date of such
determination.
In addition, any candidate determined to have
violated the CIW Exam Retake Policy* may be subject to any or all of
the following:
- Denial of a specific CIW certification for a
period of twelve (12) months from the date of such
determination;
- Revocation of a specific CIW certification, if
such certification had been previously granted to the
candidate;
- Revocation of all CIW certifications previously
granted to the candidate;
- Ineligibility to receive any CIW certification for
a minimum of twelve (12) months from the date of such
determination;
- Any other appropriate actions, including legal
remedies, deemed necessary or appropriate to enforce
the CIW Exam Retake Policy.
*ProsoftTraining is a Member of the
Information Technology Certification Security Council
(ITCSC). ITCSC is an association formed for the
establishment and recognition of standards, best
practices and programs leading to enhanced security for
IT certification programs. ITCSC's primary goal is to
prevent unethical activities and practices that result
in the invalidation of IT certifications by unqualified
individuals. As an ITCSC Member, ProsoftTraining is
obligated to report to ITCSC and its Members all
violations of this Exam Retake Policy. Such violations
will be reported to ITCSC and its Members for the
purpose of maintaining the value and ensuring the
integrity of the certification exams of ITCSC's Members
and protecting the investments made by candidates in the
certification programs of such Members. In addition to
any action taken by ProsoftTraining, ITCSC and its other
Members may take action against any candidate determined
by ProsoftTraining to have violated the ProsoftTraining
Exam Retake Policy, which action may include the
invalidation of exam results, the denial of
certification and the revocation of any certification
previously issued by any or all ITCSC Members.
Top
No retirement date has been announced for exam
1D0-470.
Top
|