Activity
Mon
Wed
Fri
Sun
May
Jun
Jul
Aug
Sep
Oct
Nov
Dec
Jan
Feb
Mar
What is this?
Less
More

Memberships

The Cyber Community

8.2k members • Free

CyberMAYnia CAREER

358 members • Free

CISSP Study Group

2k members • Free

81 contributions to CISSP Study Group
CISSP Practice Question (Domain 6: Security Assessment and Testing)
Your organization passes its annual SOC 2 Type II audit with no findings. Two months later, a penetration test reveals a critical vulnerability in a customer-facing application that has existed for over a year. The board questions why the audit missed it. What is the BEST explanation? A. The penetration testing firm used more advanced techniques than the SOC 2 auditors B. SOC 2 evaluates control design and operating effectiveness, not technical vulnerability discovery C. The audit scope was improperly defined and should have included application testing D. The auditors failed to meet professional due diligence standards Come back for the answer tomorrow, or study more now!
0 likes • 10h
B looks appropriate as SOC 2 for control effectiveness
Strong vs Best changes the answer option completly ?
A financial institution is implementing a new authentication system for its high-security online banking platform. Which of the following combinations BEST represents (strong vs best ) multi-factor authentication approach using two distinct authentication factors? Options: - Combining a smart card and a password Best - Requiring a USB security key and a one-time password (OTP) Strong - Using a password and a security question - Implementing facial recognition and a PIN
0 likes • 18h
B looks appropriate
CISSP Question (like real)
A global financial organization spread over multiple countires is facing sophisticated attack. During a potential ransomware attack that is slowly encrypting critical data at its cenrtal server. COO has informed the CISO for guidance. Which of the following is the MOST critical role in the disaster declaration process?. Options: - Chief Information Security Officer (CISO) - Chief Operations Officer (COO) - Chief Executive Officer (CEO) - Chief Risk Officer (CRO)
0 likes • 18h
I think CRO will be appropriate because if data is properly backed up and risk evaluated then disaster can be determined
CISSP Practice Question (Domain 2: Asset Security)
Your organization completes a data classification initiative and discovers that 40% of data labeled "confidential" has not been accessed in over three years. Storage costs are significant. Data owners across business units cannot confirm whether retention requirements still apply. What should you recommend FIRST? A. Archive the dormant data to lower-cost storage with existing classification labels B. Conduct a retention review with data owners and legal to validate regulatory obligations C. Declassify the unused data to reduce protection overhead and storage costs D. Implement automated data lifecycle policies to purge data exceeding retention thresholds Come back for the answer tomorrow, or study more now!
1 like • 3d
B looks appropriate to review with data owner and legal
CISSP Pass
I passed the CISSP today 03/23. I studied for roughly 3 months using various resources. I wanted to thank this study group for the practice questions. Here is a jumbled list of the resources I used and probably forgot a few. Exam Questions: Learnzapp and CISSP app The Destination Certification App also comes with over a thousand free questions and flash cards that are somewhat like the exam LinkedIn Learning Practice Exams (pretty good) Books ISC2 CISSP Certified Information Systems Security Professional Official Study Guide, 10th Edition by Mike Chapple (I read this whole book and used the companion site for questions) CISSP Exam Cram: https://www.youtube.com/playlist?list=PL7XJSuT7Dq_XPK_qmYMqfiBjbtHJRWigD Why you will pass the CISSP: https://www.youtube.com/watch?v=v2Y6Zog8h2A 50 CISSP Practice Questions. Master the CISSP Mindset: https://www.youtube.com/watch?v=qbVY0Cg8Ntw Destination Certification Mindmaps and the practice questions on their channel: https://www.youtube.com/watch?v=hf5NwUSEkwA&list=PLZKdGEfEyJhLd-pJhAD7dNbJyUgpqI4pu Luke Ahmed's Video : https://www.youtube.com/watch?v=MHbdNMRLafA Prabh's coffee shots: https://www.youtube.com/watch?v=3doR2wA2nJM
1 like • 4d
@Hassan Na mind maps for quick concept recall, question banks domain wise to challenge knowledge, in between full tests to keep time check, concept perspective Prabh’s coffee shots and other resources.
1-10 of 81
Dj Sahoo
4
47points to level up
@dj-sahoo-9937
Dj

Active 3h ago
Joined Dec 12, 2025
Powered by