
Bob Salmans
Cybersecurity & Governance, Risk, and Compliance (GRC)
Where teams start
The ISC2 certifications security leaders most often assign by role: entry-level cybersecurity, hands-on security administration, cloud security, and CISSP leadership readiness.
Get ready to earn your ISC2 CISSP certification. This course covers all eight CISSP domains in clear, easy-to-follow lessons. Learn governance frameworks, secure design principles, and incident response while sharpening risk analysis, policy writing, and business continuity planning. Along the way, you’ll access unlimited CISSP practice exams and our downloadable CISSP study guide PDF to stay organized and on track. Whether you prefer a structured CISSP bootcamp-style, or flexible self-paced learning, this training helps you prepare smarter, stay focused, and get certified with confidence.
Bob Salmans
This CCSP training prepares you to master the six domains of the ISC2 exam outline, focusing on the design, management, and protection of cloud data and infrastructure. You will gain a technical understanding of cloud architecture, security operations, and the implementation of robust security controls. This course covers critical areas including risk management, legal compliance, and the security of cloud platform components, providing the expert-level knowledge required to secure enterprise environments and earn your certified cloud security professional certification.
Bob Salmans
This ISC2 CC - Certified in Cybersecurity course is designed to lay the foundation for a professional cybersecurity career, and help you study for your ISC2 CC certification. You'll learn to understand the ethical and risk-based frameworks that define the industry, then dive into business continuity and incident response to learn how organizations survive and recover from disruption. From there, you'll explore cybersecurity topics such as access control and network security, and understand the mechanics of protecting digital borders and managing identities. Finally, you'll explore security operations for real-world system defense. To make sure you're ready for exam day, the course includes unlimited ISC2 Certified in Cybersecurity practice exams to build your confidence and reinforce skills.
Bob Salmans
This (ISC)² Systems Security Certified Practitioner (SSCP) training is designed for cybersecurity professionals seeking hands-on expertise in securing IT systems. This course covers application security, network defense, access control mechanisms, cryptographic solutions, and incident response techniques. It also covers cutting-edge topics like the MITRE ATT&CK framework, quantum cryptography, organizational compliance, and advanced network security appliances. A premier credential for systems administrators, the SSCP certifies your ability to implement, monitor, and manage secure infrastructure environments following globally recognized (ISC)² standards. The course includes interactive virtual labs and realistic practice exams, ensuring you’re ready to pass the SSCP exam and succeed in real cybersecurity roles.
Bob Salmans
Fresh from the studio
The latest ISC2 training added to the catalog — new courses land here within a day of publication.
Discipline crossover
Where ISC2 training overlaps the disciplines your team hires for — each path page shows the full picture.

Hands-on ISC2 practice
Human-led training is the point: engineers practice real skills with expert guidance, not just video playback.
Why CBT Nuggets
The platform features IT directors comparing training platforms ask about most often.
Practitioner-led
Built and taught by engineers who have spent decades running production ISC2 infrastructure — not crowd-sourced contributors.

Cybersecurity & Governance, Risk, and Compliance (GRC)
Team outcome
Manager reporting gives IT leaders a clearer view of assigned training, completion progress, and certification coverage.
Best fit for: compliance-sensitive teams that need evidence of progress before a review, renewal, or internal governance checkpoint.
Common questions IT directors ask when evaluating ISC2 training for their team.
Start with the role. New security staff should begin with Certified in Cybersecurity (CC). Hands-on practitioners should move toward SSCP. Cloud security engineers should prioritize CCSP. Security managers, architects, and senior engineers should plan around CISSP because it validates the leadership and governance domains auditors and executives recognize.
Yes. CISSP remains one of the most recognized security leadership credentials because it covers governance, risk, architecture, operations, identity, software security, and security assessment. For teams in healthcare, banking, government, and other compliance-sensitive industries, CISSP provides a credible external benchmark for senior security roles.
SSCP is practitioner-focused: security administration and operations. CCSP is cloud-security focused: cloud architecture, data security, legal/compliance, and operations. CISSP is broader and more senior: security management, architecture, governance, risk, and the eight-domain body of knowledge security leaders are expected to understand.
Measure capability coverage by role: how many junior analysts have the CC baseline, how many practitioners are progressing toward SSCP, how many cloud engineers have CCSP readiness, and how many senior leaders are CISSP-ready. Pair that with audit outcomes and clearer ownership of risk, governance, and cloud-security work.
ISC2 exam pricing varies by certification and region. CISSP is commonly one of the higher-cost ISC2 exams, while other ISC2 exams are often lower. Managers should verify current ISC2 pricing before budgeting, then use team reporting to reduce retake risk by assigning structured prep before exam day.
ISC2 certifications require continuing professional education (CPE) credits and maintenance fees to remain active. CBT Nuggets helps teams document training activity and progress so managers can support renewal planning instead of treating CPE collection as a last-minute individual task.
Yes. Team access, assigned paths, reporting, SSO, and admin controls help managers document training assignments and completion. That matters for compliance-sensitive teams because ISC2 certifications are often part of role-readiness, audit, vendor-risk, and customer-assurance conversations.