CISSP MindMaps / Domain Review - YouTube
CISSP MindMaps - Destination Certification (destcert.com)
CISSP Practice Question #1 - Vulnerability Assessment Process - YouTube
CISSP Certification Guidance - Destination Certification (destcert.com)
CISSP Exam Cram Full Course (All 8 Domains) - Covers latest exam! - YouTube
How to "Think like a Manager" for the CISSP Exam - YouTube – watch later, evaluate my default
thinking first
Certified Information Systems Security Professional (CISSP) | Cybrary
(ISC)² CISSP – Certified Information Systems Security Professional - (ISC)² Certification Training | CBT
Nuggets – 7 days free
(ISC)² CCSP – Certified Cloud Security Professional - (ISC)² Certification Training | CBT Nuggets – 7
days free, if not consumed by cissp
Topics Missing From Official ISC2 CISSP CBK Reference 6th Edition – Arthur Deane, Aaron Kraus –
CISSP Exam Prep (cissprep.net)
Do practice question from official study guide and shon harris book. They have some 2k questions.
Where to find study group?
Study Plan
Very Important:
Don’t cram the concept, cram the terms.
Must understand the concepts clearly.
Must be able to relate topics to each other clearly.
Must be able to compare topics/approaches and judge them.
Use depth first learning:
1. Start a domain.
2. Study domain thoroughly.
3. Internalize the domain.
4. Then move to next domain.
For each domain:
1. Watch MindMaps videos for the domain thoroughly, watch repeatedly until you can follow
and understand it, memorize and internalize the mind map and concepts.
2. Read cbk reference for the domain.
3. Create personal mind map and memorize it.
4. List the topics and definitions if it does not fit in the mind map.
5. Practice recalling x100.
6. Do practice questions.
Alignment of Security Function to Business Strategy
Corporate Governance – defines the goals and objectives of organization
Security Governance – rules, practices and processes by which security function is controlled
Focus of security – to enable the business
Due care – responsible protection of assets based on the goal and objectives of the organization
Due diligence – to prove due care to people who care
STRIDE & PASTA – PASTA is better at risk centric view than STRIDE
Domain 1
Domain 2
Domain 5
Domain 6
Domain 8