CISSP As An Art (CaaART) | DaveOnCyber Cyber Academy

CISSP As An Art (CaaART)

The first creative & visual storytelling course to learn CISSP.

Complex domains turned into stories, sketches, and movie analogies you actually retain.

CaaART incorporates creativity, clarity, context and connect to replace dense text with a visual method built for how people actually remember information.

CISSP As An Art (CaaART): hand-drawn illustration of a security-focused mind connected to a fortified castle, showing Risk, People, Process and Technology on the left and Confidentiality, Integrity and Availability on the right
Learn From Someone Who’s Been Inside

Taught by an Ex-Bank Security Consultant. Not a Course Creator.

Before CaaART, I spent years working as a security consultant inside ANZ and National Australia Bank.

I’ve worked with the security frameworks, controls and risk decisions that sit behind highly regulated financial services and federal environments.

I’ve seen how core concepts translate into real security architecture, governance, risk decisions, audits and regulatory expectations.

Dave Krunal, CISSP, ex-security consultant at ANZ and National Australia Bank
CISSP As An Art

Start your CISSP journey the creative way.

Four lessons that show how visual storytelling turns dense domain content into ideas you can picture, and remember, on exam day.

Cyber Dating
Understand where to apply due care and due diligence

Get clarity over due care vs due diligence over most confused CISSP topic.

Watch Free
Risk Management
Learn where is risk and how to handle it

Just because something is risk that does not mean you have to ignore it.

Watch Free
Domain 1
Get strong CISSP foundation with Governance, Risk and Laws

Start with soul of CISSP to learn how governance, laws and risks are managed in organisation.

Watch Domain 1 with free trial
Domain 2
Know your data before your protect it

Understand what it takes to protect date right from their birth to death with retention and inventory concepts. Bonus scenario: Mystery on How Facebook Deletes Your Data!

Watch Domain 2 with free trial

Not just another formal CISSP training. It’s a blend of art, creativity, and visual storytelling.

Creative Approach

Why Creative Learning Works in Cybersecurity

Most CISSP content is built to be memorised: dense text, long slide decks, endless flashcards.

CaaART is built entirely around this principle. Every domain is translated into a visual framework first, then reinforced with handwritten notes and short-form video, so recall on exam day feels like remembering a scene, not searching for a fact.

See the CaaART Framework
The CaaART framework: how a CISSP domain is translated into a visual story, handwritten notes, and short-form video

Dave On Cyber is evolving into a learning library covering CISSP As An Art, AI Governance, SaaS Assessment, Application Security and Tech Deep Dives, built from real-world experience, stories and visual thinking.

AI Governance

Build AI governance literacy, visually.

Four lessons that break down AI governance frameworks into clear, structured visuals practitioners can apply immediately.

AI Governance
What Is AI Governance, in One Picture?

A visual framework for accountability, policy, and oversight that leaders can explain in one slide.

Watch with free trial
Shadow AI
Mapping Shadow AI Without a Spreadsheet

A simple visual method for spotting where unapproved AI tool use is hiding inside an organisation.

Watch with free trial
AI Agents
Drawing the Boundaries Around an AI Agent

A visual model for identity, access, and oversight controls before an agent goes live.

Watch with free trial
Policy
Writing an AI Acceptable Use Policy People Actually Read

A visual template for turning a dense policy document into something staff will actually follow.

Watch with free trial
SaaS & Application Security

See SaaS risk before it becomes SaaS sprawl.

Four lessons that turn vendor risk, contract review, and SaaS sprawl into visuals you can walk a stakeholder through.

SaaS Risk
Why SaaS Risk Gets Missed at Sign-Up

A visual look at how feature-led buying decisions quietly skip the security and privacy review.

Watch with free trial
Vendor Review
The Vendor Review, Drawn as a Flow

A one-page visual for security controls, privacy exposure, and contract gap review, in that order.

Watch with free trial
Contracts
Reading a SaaS Contract Like a Risk Map

How to visually flag the clauses that matter most before a vendor contract is signed.

Watch with free trial
Sprawl
Visualising SaaS Sprawl Across the Organisation

A single picture that shows leadership how many SaaS tools are actually in use, and where the exposure sits.

Watch with free trial
Limited Time · CaaART Is In Production

Get Early Bird Access While CaaART Is Still Being Built

Join now and lock in a fixed price for full site access.

Claim Early Bird Access Fixed price locked in for early members only.
Get Everthing

Get all access: deep dives, and direct time with experts.

Membership unlocks the full library plus technical deep dives and live Q&A sessions with industry experts, not just the introductory lessons.

Deep Dive
Technical Deep Dive: Inside a Real Risk Assessment

A full walkthrough of an assessment from scoping to executive verdict, member-only detail included.

Watch as a member
Live Q&A
Ask an Expert: Monthly Member Q&A

Bring your questions to a live session with practitioners working in AI governance and security today.

Join as a member
Full Library
Full Library Access: Every Track, Unlocked

CISSP As An Art, AI Governance, and SaaS Governance, all in one membership.

See what’s included
Member Only
Behind the Scenes: How a Lesson Gets Illustrated

A member-only look at how a CISSP concept is turned into a visual story, from sketch to finished lesson.

Watch as a member

Ready for full access?

Become a founding member and get access to the growing Dave On Cyber library.

Start with 40+ CISSP As An Art lessons and get access to new content as the library grows.

Become a Founding Member
Cyber Security Academy

Learn cybersecurity the way it should be taught: visually.

Explore CISSP As An Art, AI Governance, and SaaS Governance, built for learners who want concepts they can picture and recall, not just re-read.

Questions first? [email protected]
Consulting Services

Need hands-on help, not just a course?

For organisations that need expert guidance directly. AI risk assessment, SaaS vendor due diligence, and AI governance advisory, delivered as a service.

AI Risk Assessment

Identify where AI tools and agents are creating risk across your organisation, before it becomes an incident.

Learn more

SaaS Vendor Due Diligence

A structured review of vendor risk, contracts, and data handling, before you sign, or after you already have.

Learn more

AI Governance Advisory

Build the policies, oversight, and accountability structure your organisation’s AI use needs.

Learn more