Activity
Mon
Wed
Fri
Sun
Sep
Oct
Nov
Dec
Jan
Feb
Mar
Apr
May
Jun
Jul
Aug
What is this?
Less
More

Memberships

CyberMAYnia CAREER

568 members • Free

CISSP Study Group

2.2k members • Free

29 contributions to CISSP Study Group
Provisionally passed the CISSP exam
I just wanted to say thank you to this group and @Vincent Primiani. It has been a very helpful resource for the content of course, but also for the company and support in kind, like-minded people on the same journey. I wish every one of you nothing but success and hope to reconnect for the next challenge!
CISSP Practice Question (Domain 2: Asset Security)
A cloud migration reveals thousands of unlabeled legacy files containing mixed customer and internal data. The project sponsor wants to bulk-encrypt everything and proceed to meet the cutover date. What should the data governance lead do FIRST? A. Classify the data according to the organizational scheme B. Encrypt all files at the highest protection level C. Identify data owners to assign accountability D. Apply retention policies to purge obsolete records (Explain your answer for more points in the comments!) Come back for the answer tomorrow, or study more now!
1 like • 11d
What is the actual correct answer on this one?
1 like • 8d
I do see that now. Thank you, Ed.
Don't forget your CPEs for Study Group attendance!
Make sure to self-submit your Study Group attendance for ISC2 CPEs!
Don't forget your CPEs for Study Group attendance!
0 likes • 18d
Hi Vincent. I’ve attended a few of these and plan to attend more, but I haven’t been able to submit for these. Would you mind clarifying the process for me? Will I be able to apply those that I have attended retroactively? Tysm and have a nice weekend.
Today’s Session top Question
See if you can answer this question within 75 seconds As a senior security analyst for a large corporate firm, you are tasked with designing a comprehensive security testing strategy. The organization has recently migrated several critical applications to a hybrid cloud environment. You need to ensure that security assessments are effectively conducted across both on-premise and cloud environments. The existing legacy applications are known to have multiple interdependencies and complex configurations. Considering the constraints of limited resources and the variety of application environments, how would you prioritize and structure the security assessment to ensure maximum coverage and risk mitigation? A. Focus on conducting external black-box testing on the cloud environments first, due to higher exposure risks. B. Implement a combination of white-box and static code analysis to address internal threats within legacy systems. C. Prioritize dynamic testing and fuzz testing on both cloud and on-premise applications to uncover real-time vulnerabilities. D. Schedule regular automated vulnerability scans for cloud systems while conducting manual penetration tests for on-premise applications.
0 likes • Jul 5
Which is the actual correct answer for this one?
Passed the CISSP
Hello all, I am excited to share that I have passed the CISSP exam. I want to thank everyone in this community who takes the time to answer questions, share their knowledge and encourage others. Your contributions made a real different in my journey. Thank you all for being part of my journey and I hope I can pay it forward by helping others as well.
0 likes • Jul 5
Congratulations, Victor!
1-10 of 29
Kate Shairs
3
39 points to level up
@kate-shairs-7310
I own and operate a small IT consulting firm north of Boston. We handle security and IT services for small businesses in the greater Boston area.

Active 1d ago
Joined Nov 4, 2025
Powered by