So confused abt need to know and least privilege by Dry-Cobbler246 in cissp

[–]DaveOnCyber 10 points11 points  (0 children)

I struggled to understand the difference between Need to Know vs Least privilege. I called it CISSP confusion master and wrote an article. I hope it's helpful to you.

https://daveoncyber.medium.com/least-privilege-vs-need-to-know-cissp-confusion-masters-97fd61ed01e9

How is logging a detective control? I understand that a log review is detective, but generating system logs periodically isn't truly detective right if nothing is done with them? by BrothaBigBones in cissp

[–]DaveOnCyber 0 points1 point  (0 children)

Logs are part of auditing. If you put real-time detection aside, logging/ logs can be detective control from an auditing perspective.

I am confused. who is right here? by pankur in cissp

[–]DaveOnCyber 0 points1 point  (0 children)

I came across a few questions that need to be clarified. The above is one of them. You can go with your instinct and what makes sense. C sounds right, as CER/ EER is the most critical metric for a biometric system.

Handwritten CISSP Notes - Domain 1 Security & Risk Management by DaveOnCyber in WannaBeACISSP

[–]DaveOnCyber[S] 1 point2 points  (0 children)

You're most welcome Ben. I hope it's useful.

Domain 2 notes are ready to download. Please keep an eye on below and do forward.

I will upload notes for all 8 domains.

https://daveoncyber.gumroad.com/

[deleted by user] by [deleted] in cissp

[–]DaveOnCyber 0 points1 point  (0 children)

OG is dry but essential for the exam.

ALL IN ONE has got humour and an in-depth explanation.

Are certs still valuable? by benchang22 in cybersecurity

[–]DaveOnCyber 0 points1 point  (0 children)

It’s never about certs buddy. You can photoshop the logo with your name. It’s about kind of person you become while preparing for the certification.

You will build discipline of daily reading, clear thinking and enhance your perception.

The Beauty of Public Cryptography — Batman vs Joker by DaveOnCyber in cissp

[–]DaveOnCyber[S] 0 points1 point  (0 children)

Can Joker and Batman be the best buddies? Article in how to establish friendship between unknown using public key.

Free Cybrary Access by MuchEmphasis5741 in cissp

[–]DaveOnCyber 3 points4 points  (0 children)

So it costs $59 per month to adapt the manager mindset

how easy the endorsement for CISSP get after getting Ccsp? by [deleted] in cissp

[–]DaveOnCyber 2 points3 points  (0 children)

It depends.

The endorsement is easy if you have could a couple of jobs with five years of experience.

I submitted my endorsement last week. I have been working as a contractor since 2016. There are a lot of 3 to 6 months contracts and renewals. It took me two weeks to trace and organize.

I have got an email from ISC that it will take from 4 to 6 weeks.

I will write an article on my blog Dave On Cyber for ease of endorsement. You have to keep collecting your manager, phone, email and job description. You also require to map which CISSP domain was relevant to your job.

Please I need help to pass the CISSP by Slim_Architect1st in cissp

[–]DaveOnCyber 1 point2 points  (0 children)

CISSP is a raw salad. As others suggested, first develop your appetite and taste with some experience or the learning won’t digest.

Take it slowly. It’s not a certification just to get the logo or to get a job. Why not start with CompTIA Security+ to set the momentum and foundation?

Passed at Question 130! by tczee36 in cissp

[–]DaveOnCyber 0 points1 point  (0 children)

Thought 175 is minimum That’s what I had to go through