As an IT professional, securing data and devices is part of the day-to-day workload. You need to be familiar with the PKI infrastructure. You need to know about the CA structure including the Intermediary CA, CRL, OCSP, renewing certificates, whether to use public or private certificates, and how to distinguish each of these. You will need to know when to choose SAN certificates over the wildcard certificates as well as the role of the Key Escrow and the Data Recovery Agent.
The exam will measure cryptography concepts including symmetric and asymmetric encryption, stream and block cipher, and which concept is better for transferring a large amount of data. You must know the impact of different key lengths and ephemeral keys. A security analyst needs to know when to use hashing, salting, obfuscation, and steganography and how to secure data in...