Your resource for web content, online publishing
and the distribution of digital products.
S M T W T F S
 
 
1
 
2
 
3
 
4
 
5
 
6
 
7
 
8
 
9
 
 
 
 
 
 
 
 
 
 
 
 
 
 
23
 
24
 
25
 
26
 
27
 
28
 
29
 
30
 
31
 
 
 

The CISSP Guide You Thought You Needed (But Didn’t)

DATE POSTED:October 21, 2024

\ The CISSP is the most sought-after Cybersecurity credential in the industry. It is also the most recognized and admired among cyber security professional around the world. It is a badge of honor and a nod to the industry that you will do whatever it takes to secure and advance the industry. It is also a credential that has driven many professionals to the point of insanity and creates income to many educational companies offering study materials for the CISSP. This is a tale of epic proportions and victory to bring happiness to those who choose to travel down this lonely road. So, strap in, grab a coffee and put on your brown pants. You are going to need them….(the brown pants portion).

\

Circle time with BlackHeart.

Exam day finally came, and it seemed like yesterday I made the appointment. So many months spent reading books, watching videos and taking notes about the CISSP. I finally had the mental state that I needed to take the exam. The metal state was “You either know it, or you don’t”. That is how I felt as I drove to the testing center to take the CISSP. I arrived at the testing center early with time to spare. I wanted to do a quick overview of my notes but also listen to music and enjoy the day with my coffee. I made it this far and to me, that was an accomplishment. I headed into the testing center but made sure to go to the bathroom because my stomach was upset due to the stress and the morning cup of coffee. I was a mess because I do not test well and the CISSP was my biggest test to take so far. I made it to the testing lab and went through everything and sat to take the exam and started the test. I had heard that if you make it passed question 125, you are doing great. I had also heard that you can go all the way and fail. I was one of those people who went all the way to the end of the test. I was so nervous and the walk to the desk to get my printed results seemed to be miles long. When I arrived at the front desk, my results were turned face down so I couldn’t see the results. I walked out the door and didn’t even bother looking because I didn’t want to fail the exam. It wasn’t because of failure; it was because I didn’t want to go through studying again. When I got to the hallway before the parking lot, I looked at my results and I had successfully passed the CISSP. Queue the Journey music! You know the song.

What is the CISSP?

The Certified Information Systems Security Professional (CISSP) is an information security certification for cyber security analysts. It was created by the International Information Systems Security Certification Consortium (ISC). The certification was created to ensure professionals in computer security have standardized knowledge of the field. Earning a Certified Information Systems Security Professional certificate can help you have a successful career as a computer security professional. The Certified Information Systems Security Professional (CISSP) exam is a six-hour exam consisting of 250 questions that certifies security professionals in eight different areas:

\

  • Access control systems and methodology
  • Business continuity planning and disaster recovery planning
  • Physical security
  • Operations security
  • Management practices
  • Telecommunications and Networking security.

\ If that was not enough for the test, to become certified as a CISSP, you will need at least five years of full-time, paid work as a security analyst in two or more of the eight domains covered in the CISSP, such as cryptography and software development security. You will need to have scored a minimum of 700 out of 1000 points to pass the exam. After passing the exam, you will need to have an endorsement in subscribing to the (ISC) Code of Ethics and you will have to have an endorsement from another (ISC) professional who can verify your professional experience requirements such as length of employment, professional reputation, and continuing education as a security analyst. When the candidate successfully passes the exam and is endorsed, they will also need to maintain 120 CPE credits every three years and paying the annual maintenance fees to ISC2.

\ Don’t start crying just yet. I need to introduce you to the CAT first. Then we can cry it out and hold each other. ISC2 has introduced Computerized Adaptive Testing (CAT) for all CISSP exams worldwide. Based on the same exam content outline as the linear, fixed-form exam, CISSP CAT is a more precise and efficient evaluation of your competency. CISSP CAT enables you to prove your knowledge by answering fewer items and completing the exam in half the time.

How does the CAT work?

Each candidate taking the CISSP CAT exam will start with an item that is well below the passing standard. Following a candidate's response to an item, the scoring algorithm re-estimates the candidate's ability based on the difficulty of all items presented and answers provided. With each additional item answered, the computer's estimate of the candidate's ability becomes more precise – gathering as much information as possible about a candidate's true ability level more efficiently than traditional, linear exams. This more precise evaluation enables us to reduce the maximum exam administration time from 6 hours to 3 hours, and it reduces the items necessary to accurately assess a candidate’s ability from 250 items on a linear, fixed-form exam to as little as 100 items on the CISSP CAT exam.

\

How to prepare for the CISSP exam.

It is said that the CISSP exam is “A mile wide and an inch deep”. This derives from the fact the exam covers so much material with the eight domains it is difficult to remember everything. There is a multitude of study materials, bootcamps, books, videos etc. available for anyone who wishes to take the exam…but how do you prepare for such a difficult exam and do it the right way? I am going to give you my advice on how to prepare for the exam….passing is up to you.

\

  • Kiss your loved one, hug your kids or pets, take time to appreciate the day because you are alive and well. The CISSP is not a great exam. You make the CISSP great with your never-ending ambitious attitude and willingness to better your life. I am proud of you.

    \

  • Think like a manager - If you have a technical background alone, you will need to think from a manager’s POV. You do not fix problems in the CISSP realm. You get to make recommendations instead of fixing problems. You may know all the encryption methods and ciphers but only one is going to work for the questions asked. Remember what would a manager do in this instance?

    \

  • The right answer is the not the best answer - There will be many questions on the test that seem right but not the best answer to the question. Biometrics is a very secure method for authentication, but it may not work for a small company who can’t afford it.

    \

  • Understand why security concepts and mechanisms work - The CIA triad, OSI model and AAA is something you will also not get away from. It is important to understand concepts and mechanisms work because you will use it in everything you do. If you can understand why something works, you can apply it to the questions on the test.

    \

  • Take notes that you can understand - There is nothing worse than having pages of notes and not being able to comprehend what you wrote down. I am not talking about your handwriting skills. I am talking about taking notes down that just pass the exam. You will need notes that explain why something works and understand why.

  • \ \ \

\ \ \ \ \ \ \ \ \ \ \