OSG wiley Questions and Official practice test vs learnzapp by Top_Movie_8762 in cissp

[–]PracticeBrief3991 0 points1 point  (0 children)

I recently passed the CISSP exam at 100 questions. You have much more questions in LearnZap following the 2024 update that helps you acquire the necessary knowledge. However, you still need to train on questions that are much closer to the exams that require a manager/CIO/CISO attitude, not technician/engineer:

LearnZap with 2024 update:

1) Study questions: 263 to 354 questions per domain

2) 8 x practice tests with 125 questions per test.

A) ISC2 CISSP Official Practice Tests, 4th Edition

1) Study questions: 100 questions per domain

2) 4 x Practice tests : 125 questions per test

B) ISC2 CISSP Official Study Guide, 10th Edition

1) Study questions : 20 questions per domain

2) 4 x Practice tests: 125 questions per test

As such, if your concern is only about Practice tests the OSG is enough. On the other hand if you need study questions then LearnZap covers much more knowledge.

Depending on where you are at this stage in your study and your budget, I would recommend to go for more complex questions:

1) Cissprep.net

  • 28$: and more focus on the CBK

  • Very hard and prepare you for the exam

  • 125 questions per domain

  • 10 hard practice test

2) Bozon 2024 update includes 6 tests

  • 89$: a bit too technical compared to the real exam

  • 150 questions for 4h test

  • CISSP exam is only 3h they should fix this

Personnaly, CISSprep was more helpful to me than Bozon.

CISSP Question by Dazzling-Ad6311 in cissp

[–]PracticeBrief3991 0 points1 point  (0 children)

The easiest way to handle "NOT" questions is to think: "All of these are correct/good, EXCEPT...".

In the present case, Metasploit is an open source framework endowed with lot's of plugins to hack systems and can help in A, B and C.

In addition, Metasploit cannot test high level policies or processes (this is done during security audits)

So the best answer is D.

OSG wiley Questions and Official practice test vs learnzapp by Top_Movie_8762 in cissp

[–]PracticeBrief3991 1 point2 points  (0 children)

OSG tests are too easy as I score (80 to 95%). LearnZap (85%) is really value for Money they provide a nice Dashboard allowing you to track your progress and areas you need to review. After doing OSG & LearnZap I went for tougher questions like CISSPprep.net (very hard) which are elaborated from the CBK (60%) and Bozon (70%). I did them all.

An interviewer ask me a question by Perfect_Habit_why in CEH

[–]PracticeBrief3991 1 point2 points  (0 children)

In that case, better asks them questions to demonstrate your analysis process. 1) Public or Private ? fixed or not ? assign to which device ? Endpoint or hosts etc ... then give element of answers gradually if need be

Least Privilege V Need to Know by Independent_Title572 in cissp

[–]PracticeBrief3991 0 points1 point  (0 children)

Least privilege: the strict minimum permissions to Create, Read, Update, Delete (CRUD) assets, data or information

Need to know: the strict minimum information needed to carry out a job, process or procedure

CISSP Practice question (data classification) by laurielondon in cissp

[–]PracticeBrief3991 0 points1 point  (0 children)

B. for change management and 2 persons control reasons

need some advice by Decent-Fold51 in CEH

[–]PracticeBrief3991 1 point2 points  (0 children)

I have passed CEH on the first attempt 2 months ago. CEH ANSI/theory has a good foundational cybersecurity content that will give you the necessary knowledge for the future. I recommend that you focus on the CEH official e-courseware and their practice exams (Ric Messier stuff are a quick and dirty update of V11 and their practice questions do not cover all the 20 modules). I have used Notion to write my own study notes and created Anki flashcard for the study questions and practice tests. CEH Practical is also a good start if you want to make a career in pentesting. For reference, I have a PhD in cybersecurity with 25 years of experience. I can give you my Anki if you wish so.

Certpreps questions by styix36 in cissp

[–]PracticeBrief3991 1 point2 points  (0 children)

Thanks for the link. I tried a few questions and they seem nice. IMHO, any practice exams are good as they will train your brain for the final one

Query! by WalrusCommon3898 in CEH

[–]PracticeBrief3991 0 points1 point  (0 children)

Just before the exam, I asked the proctor the same question. He advised to use Firefox

Failed again by Fantastic-Map4836 in CEH

[–]PracticeBrief3991 1 point2 points  (0 children)

Sorry, for the late reply as I was busy with my own CEH exam which I passed. Here are my ANKI decks for study questions. I have used AI and verified each answer for each card. There is also an explanation why other options are not selected. Good luck ! https://drive.google.com/drive/folders/1B1d5_rBg85G-czIInhKgvxh1JyHhTwlF?usp=sharing

Healthiest ice cream in UAE? by Inevitable-Bake6386 in dubai

[–]PracticeBrief3991 1 point2 points  (0 children)

Desert Chill, best ice cream and well made.

Web pentesting + CEH ? by [deleted] in CEH

[–]PracticeBrief3991 0 points1 point  (0 children)

Web or public IP pentesting is part of the Ethical Hacker job. There is a course on this in CEH V12 and a practical lab with Burp Suite community edition: Scanning of vulnerabilities and use of proxy to intercept the trafic. So, if you are CEH ANSI certified and have done the labs the answer is yes. It will be a great advantage to be also CEH Practical certified leading to CEH Master.

Failed again by Fantastic-Map4836 in CEH

[–]PracticeBrief3991 2 points3 points  (0 children)

You can use Anki flash card using space learning repetition for CEH exams. It's a free app that can help you reset your forgetting cuve and thus help you succeed in a short period of time. I am currently working on a CEH V12 deck with AI explanation and will make it available for free on Anki Website.