Activity
Mon
Wed
Fri
Sun
Jun
Jul
Aug
Sep
Oct
Nov
Dec
Jan
Feb
Mar
Apr
May
What is this?
Less
More

Memberships

CISSP Study Group

2.1k members • Free

99 contributions to CISSP Study Group
CISSP Practice Question (Domain 5: Identity and Access Management)
A long-tenured engineer has accumulated access across six business units through internal transfers. A recent audit flagged the account as having excessive privileges, but managers insist the access is "needed for cross-functional projects." What should you do FIRST? A. Disable unused entitlements based on the last 90 days of activity logs B. Initiate a formal access recertification with each respective data owner C. Implement a role-based access control model to replace direct grants D. Escalate to HR to enforce a job description review Come back for the answer tomorrow, or study more now!
0 likes • 3h
B
CISSP Practice Question (Domain 2: Asset Security)
A business unit requests permanent retention of all customer transaction records "in case we ever need them." Legal has not issued a hold, and the current retention schedule requires deletion after seven years. As the data owner's advisor, what is the BEST response? A. Honor the request since longer retention reduces legal discovery risk B. Enforce the existing retention schedule and require a formal exception with risk acceptance C. Migrate the records to cold storage to balance cost and accessibility D. Defer to Legal before taking any action on the records Come back for the answer tomorrow, or study more now!
1 like • 22h
Going with B as this is a Risk Management issue.
CISSP passed
Hi everyone, I’m excited to share that I provisionally passed the CISSP exam yesterday. It’s definitely been a challenging journey, but the hard work has paid off. To prepare, I used a mix of resources including the official ISC2 study guide, the Destination Certification mind maps, and Peter Zerger’s YouTube videos. For practice questions, I used this platform and the LearnZapp app. A huge thank you to everyone in this group for the support, and I wish you all the best on your own journeys!
2 likes • 22h
Congratulations @Leonardo Peta
CISSP Passed
Hi everyone, I’m excited to share that I’ve provisionally passed the CISSP CAT exam today! It’s a challenging journey, but it is absolutely worth it in the end. Huge respect to everyone in this group. If you’re still on the journey, keep pushing. You will get there. Here’s what worked for me: I relied heavily on the official ISC2 5 day boot camp and the e textbook that comes with the training. That combination helped me build a solid foundation and stay focused on what matters. One key mindset shift that really helped during the exam was to trust the process and not panic. Take your time with each question, really try to understand what is being asked, and focus on what they are actually looking for before choosing your answer. Note:The ISC2 CISSP Official Study Guide and Practice Tests Bundle (Sybex) is still essential reading and a great resource to reinforce your understanding. Wishing you all success. You’ve got this.
0 likes • 5d
Congratulations @Hamra Ibrahim Smaila It is nice to hear your success story and thank you for sharing it during one of our sessions yesterday.
CISSP Practice Question (Domain 4: Communication and Network Security - Zero Trust)
Your company adopts Zero Trust and replaces the legacy VPN with identity-based access for remote workers. Six weeks in, helpdesk tickets spike: users complain that access to internal apps breaks unpredictably throughout the day. What is the MOST likely root cause? A. Insufficient bandwidth at the identity provider B. Continuous authentication is re-evaluating trust signals and revoking sessions C. DNS resolution failures between the client and the policy enforcement point D. Certificate pinning conflicts with the new SSO provider Come back for the answer tomorrow, or study more now!
0 likes • 6d
B
1-10 of 99
Ed Morawski
4
72points to level up
@ed-morawski-4430
Ed

Active 1h ago
Joined Nov 21, 2025
Powered by