Activity
Mon
Wed
Fri
Sun
Apr
May
Jun
Jul
Aug
Sep
Oct
Nov
Dec
Jan
Feb
Mar
What is this?
Less
More

Memberships

CISSP Study Group

2k members • Free

17 contributions to CISSP Study Group
Passed CISSP Exam
Dear Team, I wanna thank the group for the collaboration and support in this journey. I managed a pass in todays cissp examination.
CISSP Practice Question (Domain 4: Communication and Network Security)
During a cloud migration, your team discovers that sensitive customer data traverses an unencrypted internal network segment between two trusted zones. Operations argues encryption would add latency to time-sensitive transactions. What is the BEST approach? A. Accept the risk since both zones are internally trusted and monitored B. Conduct a risk assessment weighing data sensitivity against performance impact C. Encrypt all internal traffic regardless of performance concerns D. Implement network segmentation to isolate the sensitive data path Come back for the answer tomorrow, or study more now!
1 like • Feb 12
B, Focus on Risk based evaluation, followed by risk analysis and finally treatment solution balancing business needs with security prioritization.
CISSP Practice Question (Domain 5: Identity and Access Management)
A newly acquired subsidiary uses shared administrator accounts for critical infrastructure management. The integration team wants to immediately enforce individual accounts, but operations warns this could disrupt 24/7 production systems. What is the MOST appropriate next step? A. Implement privileged access management with session recording for shared accounts B. Require individual accounts with emergency break-glass procedures for continuity C. Assess the shared account inventory and map dependencies before enforcing changes D. Accept the risk temporarily and schedule individual account rollout for next quarter Come back for the answer tomorrow, or study more now!
1 like • Feb 11
C: Establish the reality on the ground, then afterwards take action, this balances business continuity with security.
Domain 7: Security Operations
While examining performance reports for your organization's resources, you notice a significant performance increase on your organization's file server. The server log indicates that the memory and hard drive of the file server were upgraded. As a member of the operations team, what should you do? A) Create a new performance baseline for the file server. B) Diagnose the file server's performance increase. C) Continue to monitor the file server's performance. D) Investigate the file server's performance increase.
0 likes • Jan 22
@Will M since there is an upgrade you need to first establish the new baselines before you progress to monitor against the set parameters.
CISSP Practice Question (Domain 1: Security and Risk Management)
A global organization adopts a cloud service to accelerate operations, despite unresolved concerns about data residency and regulatory exposure. Senior leadership accepts the business risk to meet market pressure. As the security leader, what is the MOST appropriate next action? A. Document the risk acceptance decision and associated residual risk B. Implement compensating technical controls to reduce exposure C. Transfer the risk through expanded cyber insurance coverage D. Escalate the decision to regulators for formal guidance Study more now!
1 like • Jan 20
A is the appropriate answer
1-10 of 17
@elvis-mwakoi-6175
IT Risk Expert

Active 5d ago
Joined Nov 12, 2025
Powered by