Cryptography is a toolbox, and the CISSP exam cares less about the mathematics than about choosing the right tool. Each tool provides different services: confidentiality, integrity, authentication and non-repudiation. The exam also expects you to understand how keys are managed, because weak key management breaks strong algorithms. In practice most breaches involving cryptography come from poor key handling or outdated configurations, not from someone breaking the algorithm.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 7 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.