Activity
Mon
Wed
Fri
Sun
Jul
Aug
Sep
Oct
Nov
Dec
Jan
Feb
Mar
Apr
May
Jun
What is this?
Less
More

Memberships

CISSP Study Group

2.2k members • Free

16 contributions to CISSP Study Group
Practice Question
What is the primary function of a Data Loss Prevention (DLP) solution? A. Encryption B. Access Control C. Monitoring D.Traffic Filtering
0 likes • 14h
C
CISSP Practice Question (Domain 7: Security Operations)
During a ransomware incident, the IR team contains affected systems and begins recovery from backups. Mid-recovery, the CFO authorizes paying the ransom to accelerate restoration. As the incident commander, what should you do FIRST? A. Comply with the CFO's directive and coordinate the payment through counsel B. Halt recovery and escalate to the executive crisis team and legal for a documented decision C. Continue recovery from backups and refuse the payment on policy grounds D. Engage law enforcement to evaluate the legality of the ransom payment Come back for the answer tomorrow, or study more now!
0 likes • 14h
B
CISSP Practice Question (Domain 6: Security Assessment and Testing)
An internal audit reveals that quarterly vulnerability scans are completed on schedule, but 40% of critical findings remain unremediated past SLA. The vulnerability management team reports the metrics as "green" because scans were performed. As the CISO, what is the BEST corrective action? A. Reduce scan frequency until remediation capacity catches up B. Redefine the program metrics to measure remediation outcomes, not scan activity C. Escalate overdue findings directly to system owners' executives D. Outsource remediation to a managed security service provider Come back for the answer tomorrow, or study more now!
0 likes • 14h
B
Don't forget your CPEs for Study Group attendance!
Make sure to self-submit your Study Group attendance for ISC2 CPEs!
Don't forget your CPEs for Study Group attendance!
0 likes • 14h
@Vincent Primiani can you still attend even though you are just candidate
CISSP Practice Question (Domain 2: Asset Security - AI Exam Guidance)
Your data science team plans to fine-tune a large language model using historical customer support transcripts containing PII. The business wants the model deployed organization-wide for internal use. As the CISO, what is the MOST appropriate action BEFORE training begins? A. Encrypt the training dataset at rest and restrict access to data scientists B. Apply data minimization and de-identification techniques to the training corpus C. Require model output filtering to prevent PII disclosure in responses D. Obtain renewed customer consent for the new processing purpose Come back for the answer tomorrow, or study more now!
0 likes • 28d
B
1-10 of 16
Linda Addei
2
10points to level up
@linda-addei-3393
I'm a cybersecurity professional.

Active 13h ago
Joined Dec 19, 2024
Powered by