shield CISSP Published
CISSP Domains 1 & 2 Rapid Review: 7 Exam Traps
CISSP Domains 1 and 2 come down to one move: read the requirement, then match the concept, and never let a look-alike word make you misread the question. This capstone rapid review covers the 26% of the exam carried by Security and Risk Management (16%) plus Asset Security (10%), drilling the high-yield concepts and the exact term swaps the test is built to exploit.
With Michael, Liam, River, and Sara, we move fast through the CIA triad, the quantitative risk math, due care versus due diligence, the (ISC)2 ethics canons, the business continuity metrics, and the Domain 2 data roles, ending on the single most missed sanitization trap.
In this video:
- The risk formulas: SLE = AV x EF and ALE = SLE x ARO, and the direction trap that costs points
- Quantitative versus qualitative analysis, and the one-word tell that decides which is which
- The four risk treatments and why insurance is transfer, not avoidance
- Due care (act) versus due diligence (investigate), the most swapped pair in Domain 1
- The four ethics canons in order, and why society outranks your employer
- RTO, RPO, and MTD, plus why RTO must always be less than MTD
- Data owner versus custodian, controller versus processor, and never degaussing an SSD
Anchored to the (ISC)2 CISSP Detailed Content Outline effective April 15, 2024.
Chapters
- 0:00 The 26 Percent You Cannot Afford to Lose
- 3:06 CIA, the Triad Every Question Hangs On
- 5:34 Risk Math in Two Formulas
- 7:58 Quantitative or Qualitative: Read the Tell
- 10:17 Four Things You Can Do With Risk
- 12:40 Due Care vs Due Diligence: The Word Swap
- 15:06 Ethics Canons in Strict Order
- 17:03 BIA Metrics: RTO, RPO, and MTD
- 19:26 STRIDE and Governance vs Management
- 21:54 Who Owns the Data, Who Guards It
- 24:26 The Degaussing-an-SSD Trap
- 26:50 Think Like a Manager: Domains 1 and 2
- 29:26 Quiz Time
- 33:13 Key Takeaways
CISSP Domains 1 and 2 come down to one move: read the requirement, then match the concept, and never let a look-alike word make you misread the question. This capstone rapid review covers the 26% of the exam carried by Security and Risk...
Key Topics
- The 26 Percent You Cannot Afford to Lose
- CIA, the Triad Every Question Hangs On
- Risk Math in Two Formulas
- Quantitative or Qualitative: Read the Tell
- Four Things You Can Do With Risk
- Due Care vs Due Diligence: The Word Swap
- Ethics Canons in Strict Order
- BIA Metrics: RTO, RPO, and MTD