Activity
Mon
Wed
Fri
Sun
Sep
Oct
Nov
Dec
Jan
Feb
Mar
Apr
May
Jun
Jul
Aug
What is this?
Less
More
CyberMAYnia CAREER

571 members • Free

CISSP Study Group

2.3k members • Free

184 contributions to CISSP Study Group
CISSP Practice Question (Domain 7: Security Operations)
During active ransomware containment, the operations team wants to immediately wipe and reimage infected servers to restore a critical service. Cyber insurance and law enforcement notifications are pending. What should the incident commander do FIRST? A. Preserve forensic images of affected systems before restoration B. Restore the service from the most recent clean backup C. Notify the cyber insurer to avoid violating policy conditions D. Isolate remaining unaffected segments to prevent spread (Explain your answer for more points in the comments!) Come back for the answer tomorrow, or study more now!
1 like • 2d
A. Preserve forensic images of affected systems before restoration ( A will be followed by D, stop the bleed 'D' is the first option in emergency cases , x-ray and bandage are next step). B. Restore the service from the most recent clean backup ( restoration will come last after all three other options D → A → C → B). C. Notify the cyber insurer to avoid violating policy conditions ( it will come after A) D. Isolate remaining unaffected segments to prevent spread (During active ransomware containment phase, isolation is first immediate step to contain the incident spread to other systems). 🩸 Stop the bleeding → 🔬 Preserve evidence → 📞 Notify stakeholders → 🩹 Restore
Provisionally passed the cissp exam
Thank you @Vincent Primiani and everyone in the group.
1 like • 6d
Congratulations @Anthony Knapkin
CISSP Practice Question (Domain 8: Software Development Security)
A development team adopts a widely used open source library that accelerates delivery of a revenue-critical release. The library has no active maintainer and no published vulnerability disclosure process. What should the security manager recommend FIRST? A. Add the library to the software bill of materials for monitoring B. Evaluate the component against secure acquisition and supply chain criteria C. Fork the library so the organization controls future patching D. Require compensating controls at the application perimeter (Explain your answer for more points in the comments!) Come back for the answer tomorrow, or study more now!
1 like • 6d
A. Add the library to the software bill of materials for monitoring (detective technical control of operational nature without evaluation and risk analysis) B. Evaluate the component against secure acquisition and supply chain criteria ( best first action recommendation as stretigic governance level decision and due diligence) C. Fork the library so the organization controls future patching ( forking is a possible long-term mitigation but is premature. The organization should first evaluate whether assuming maintenance responsibility aligns with its secure acquisition and software supply chain risk management policies.) D. Require compensating controls at the application perimeter ( compemsating control is considered last resort and only applied if primary control are not applicable)
Hat trick for the Study Group!!
Three in one week, good job all, so proud to be a part of our community. and another congrats to @Kate Shairs @Devdutt Jha @James Bonner
Hat trick for the Study Group!!
2 likes • 11d
Congratulations Kate, Devdutt and James
Provisionally passed CISSP Exam
I’ve officially passed my CISSP exam! A huge shoutout to this incredible community specially @Vincent Primiani , the cissp.app practice questions, and the insightful live group sessions for pushing me over the finish line. Appreciate all the support here! 🚀🎉
0 likes • 11d
Congratulations @Devdutt Jha
1-10 of 184
Hassan Na
5
213 points to level up
@hassan-hassan-4557
CISSP, CC

Active 10h ago
Joined Dec 7, 2025
Powered by