InfoSec Certifications Market
The Strategic Role of CISSP
Start Your CISSP Journey
CISSP is one of the most challenging exams ever because of its comprehensive perspectives and requirements of solid conceptual level understanding and in-depth insights to managerial and technical issues.
It’s comprehensive, and you have to think from a variety of perspectives, such as board director, senior management, CISO, auditor, legal counsel, purchasing and HR staff, engineer, developer, project and program manager, end user, attacker, and so forth. Experience or certifications of PMP, ITIL/ITSM, or CCNA help quite a bit.
However, it’s reasonable for CISSP aspirants to pass the CISSP exam with 150 to 250 study hours. I usually suggest my friends study for 2 hours on weekdays and 4 hours on holidays and sit for the CISSP exam in 3 months. The keys to success are the effectiveness of your study plan, persistence, discipline, and communication with and support of your family and boss.
The CISSP exam, from my point of view, can be divided into two parts: management (Domain 1,2,5,6, and 7) and technology (Domain 3,4, and 8). It’s a body of knowledge, not a collection of discrete knowledge points. To start your CISSP journey, please download The CISSP Exam Outline first. Read and explain it to your friends until you can do that well and feel confident.
The CISSP Official Study Guide Sybex 8th is a tutorial to help you understand the CISSP exam outline. The Official ISC2 Guide to the CISSP CBK Reference 5th explains the CISSP exam outline in details. It’s crucial to browse the CBK suggested references and read the NIST Special Publications enlisted.
Do all the online practice questions companioned with the Sybex 8th to validate your essential knowledge. After that, do more practice questions, especially those with situations or scenarios that test your ability to apply the knowledge and principles. 2500 questions in total are the minimum.
Dear CISSP aspirants,
CISSP Made Easy! Yes, but don’t get me wrong. CISSP is one of the most challenging exams I have ever had as an experienced IT professional. Everything could be easy only if you are committed to it. So does CISSP.
CISSP Made EASY is a study group for members to learn and share information to succeed in the CISSP exam. It’s one of the initiatives for the group host, Wentz Wu, to give back to the InfoSec community and develop his career as a professional instructor, inspirational coach, and lifelong learner.
Welcome to join CISSP Made Easy!
Kindly be reminded it’s a general approach for your reference; please adjust the practices based on your own condition. The author is not responsible for the result of your exam.
Amicliens InfoSec Conceptual Model
The Onion diagram is updated to emphasize that Information Security is a business issue. Security people should protect assets while always keeping business in mind, that is enabling business and delivering values. The tunnel vision and function boundary should be broken and removed.
About The Author: Wentz Wu
– Books and Videos
- ISC2 Official Materials
- CISSP All-in-One Exam Guide, Eighth Edition 8th Edition
- Kelly Handerhan@Cybrary
- CISSP Shon Harris
– CISSP Practice Questions
- Luke: The Core CISSP Concepts
- Practice Questions by Wentz Wu
- CISSP Practice Questions of the Day from IT Dojo
– My Favorite CISSP Communities
- CISSP Exam Preparation – Study Notes and Theory
- CISSP, CISM and Security+ certification training by Thor Teaches!
– Get Refreshed
- Benefits of being a CISSP
- Host Unknown presents: I’m a C I Double S P (CISSP Parody)
- Host Unknown presents: Accepted the Risk
- The Expert (Short Comedy Sketch)
- CISSP Study Strategy
- Information Security (definition revised)
- InfoSec 101 (Cheat Sheet)
- Security Function
- Informed Decisions
- The Concept of Business Continuity
- Identity and Access Management
- The Reference Monitor Concept
- Common Criteria: PP, ST, and TOE
- Common Criteria: Evaluation Assurance Level
- Security Activities in SDLC
- Jargons: V&V and C&A
- The Evolvement of Certification and Accreditation Process
- Software Development Security
- RDBMS Table Relationships
- CISSP Practice Questions