CISSP EXAM CRAM - DOMAIN 1 Security and Risk Management (RETIRED! NEW VERSION IN DESCRIPTION)

Sdílet
Vložit
  • čas přidán 11. 07. 2024
  • MARCH 17, 2022 - An updated video course is available for CISSP Exam Cram covering all 8 domains of the exam, updated in 2022. Links to full version and updated Domain 1 content in that video below.
    CISSP Exam Cram Full Course (All 8 Domains) - 2022 EDITION!
    • CISSP Exam Cram Full C...
    00:22:55 DOMAIN 1 - Security and Risk Management
    • CISSP Exam Cram Full C...
    -----
    This video is the first lesson in an 8-lesson CISSP Exam Cram series, intended to help you prepare for the exam more quickly.. This video covers "DOMAIN 1: Security and Risk Management"
    02:42 Domain 1 Overview
    09:47 Risk Management * Analysis Concepts
    30:21 Risk Analysis Formulas
    39:47 Threat Modeling Concepts
    47:12 Security Controls
    52:50 Regulatory and Legal
    ISC2 Official 2021 CISSP Study Guide and Practice Tests Bundle
    amzn.to/3yoWXpO
    CISSP 2021 Official Study Guide
    amzn.to/3nQEOgt
    CISSP 2021 Official Practice Tests
    amzn.to/3toaGdp
    FREE CISSP 50-questions practice quiz
    insidethemicrosoftcloud.com/c...
    DOMAIN 1 pdf presentation download
    1drv.ms/b/s!AmhtzcmYt5AViLAS9...
    NIST 800-37
    csrc.nist.gov/publications/de...
    SIMON (AI-powered chatbot)
    lumagate.us/simon/
    Some of our video description contain affiliate links, which means we may receive a small commission on a purchase without additional cost to you, if you buy something.
  • Věda a technologie

Komentáře • 121

  • @vasudhakota972
    @vasudhakota972 Před 2 lety +10

    6:33 CIA Triad
    7:48 ISC2 Code of Ethics
    8:26 Four levels of Security Policy Development
    9:30 Tidbit for the exam
    12:44 Response to risk - Risk Acceptance, Risk Mitigation(Reduction), Risk Assignment(Transference), Risk Avoidance, Risk Deterrence, Risk Rejection/Ignoring
    15:52 NIST 800-37 Rev 2 : Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy
    RMFs for use in the real world - OCTAVE, FAIR, TARA
    16:54 7 Steps of NIST 800-37
    19:59 Exam Tidbit
    21:17 Types of Risks - Residual, Inherent & Total
    22:54 Exam tidbits
    24:18 Risk analysis - 27:55 Qualitative Risk Analysis
    29:07 Delphi Technique
    29:20 Considerations in Risk Analysis
    30:00 Threat Agents
    30:20 Terms in Risk Analysis
    35:42 Safeguard Evaluation
    37:16 Controls Gap
    38:40 Methodologies in Supply Chain Evaluation
    39:47 Threat Modeling
    40:30 Approaches of Threat Modeling
    40:56 Exam Tidbits - DREAD Methodology
    43:09 Diagramming Potential Attacks in Threat Modeling
    45:10 Reduction Analysis
    46:58 Prioritization & Response
    47:12 Security Controls 47:54 Categories 48:45 Types
    53:15 Legal & Regulatory Issues 53:21 Types 54:26 Laws 55:10 IP & Licensing
    55:50 Encryption & Privacy 56:50 Other US Privacy Laws
    58:32 Business Continuity

  • @staceygosman4469
    @staceygosman4469 Před 3 lety +23

    Thank you for the videos. It took me a few months to study for the cissp exam. However, I watched your videos the last few weeks and spend the day before rewatching them to cram for the exam. I passed it on the first try!!! Thank you so much

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +4

      Stacey, it's comments like this that make my day! Glad I could help. Congrats on passing the exam! 🎉🏆👍

  • @danielschilling6779
    @danielschilling6779 Před 3 lety +6

    I passed today and my primary sources were these videos and the Sybex Study Guide. These videos are quick, concise, and give the general concepts of the CISSP general body of knowledge. Thank you for the presentations and little shortcuts and techniques from the side videos!

  • @sadiqmajid6696
    @sadiqmajid6696 Před 3 lety +24

    A video dedicated to all CISSP formulas would be just awesome. Thanks

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +12

      I made a video dedicated to the quantitative risk analysis formulas named "just the formulas". Here it is - czcams.com/video/ttOKJYOedNo/video.html

    • @elsero100
      @elsero100 Před 3 lety +1

      5

  • @SH-os1ck
    @SH-os1ck Před 11 měsíci +4

    Sorry, I know it's not much. But I have to thank you for these amazing videos!

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 11 měsíci +1

      I’m so happy the exam cram was helpful. And THANK YOU for supporting my work. Seriously, very kind of you. 🙏👍

  • @freedomproducer
    @freedomproducer Před 2 lety +4

    Passed CISSP today, crammed through these 8 videos 2 days before. Was a great refresher!

  • @carnifex7176
    @carnifex7176 Před 3 lety +2

    Great stuff! Thank you for this. Very useful.

  • @magician234
    @magician234 Před 3 lety +1

    Began my studies on CISSP, received the book, and watched this entire video. Will be watching every video around CISSP exam-related training.Thank you very much for the content.

  • @muhammadadnanbukhari3002

    I passed CISSP on 4th March 2022. Last time I was in great frustration. Exam cram helped me. Thank you so much for creating such an amazing mind map video.

  • @netsnower
    @netsnower Před 2 lety +1

    Thanks for this great CISSP Domain 1 cram video, it really helps to reinforce the topics and concepts learned from the ISC2 official study guide.

  • @jacobmills1982
    @jacobmills1982 Před 3 lety +2

    I just passed CISSP today after 4 weeks of study. I’ve been in the industry for 20 years which certainly helps. I used the official study guide to reference and went through practice tests from ‘cccure’ reading explanations thoroughly. When I was driving or working out, I was listening to your videos. Thanks for the help!

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety

      My pleasure, Jacob. Congrats on your result! 🏆

    • @gottgaame
      @gottgaame Před 3 lety +3

      20 years helps I have 0 years of experience lol but I just passed the CompTIA security +

    • @jacobmills1982
      @jacobmills1982 Před 3 lety +1

      @@gottgaame You’d be surprised how many “experienced” people can’t pass the sec+ exam. Getting that out of the way early is good.

    • @gottgaame
      @gottgaame Před 3 lety +1

      @@jacobmills1982 oh wow. Thanks. It took me about 4 months of studying, darril gibsons book really helped.

  • @pleasedial9112
    @pleasedial9112 Před 3 lety +3

    AWESOME content...cant wait to test

  • @arashvermahmood7961
    @arashvermahmood7961 Před měsícem

    really appreciate you sharing the important concise content and saving us time.

  • @telugugarden1957
    @telugugarden1957 Před 3 lety +1

    Thanks for sharing & explaining content which no other tutors touched ..... really useful....please do video on formulas.... once again thanks a lot and looking forward more videos

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Video on formulas already available. Find it here czcams.com/video/ttOKJYOedNo/video.html 👍

  • @jlundie7
    @jlundie7 Před 3 lety +3

    Great videos and just what I need. I have taken the exam twice and twice I failed. I was so heart broken but will try again.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Sounds like you need my "CISSP Mindset" video. You can find it on the 16-video series playlist! czcams.com/play/PL7XJSuT7Dq_XPK_qmYMqfiBjbtHJRWigD.html

  • @vak21
    @vak21 Před 3 lety +2

    wow... thanks a lot for sharing and creating such valuable information !
    Great video, I follow your videos since AZ500 :)

  • @Chain-tc8pb
    @Chain-tc8pb Před 2 měsíci

    Thank you! I passed recently and your material was a great help. I only studied a month.

  • @wolkenacht4331
    @wolkenacht4331 Před 2 lety +1

    Wow. I‘m impressed by all your excellent content. I‘m currently studying for CISA but I think your videos will help me a lot as well! I‘ll use them as a supplement :)

  • @user-ry6dh6fw4v
    @user-ry6dh6fw4v Před 3 lety +1

    Thank you. Really good video.

  • @painkillerO8
    @painkillerO8 Před 2 lety +1

    Today is my first day learning. I like the way you are teaching.

  • @PaulEllisBIGDATA
    @PaulEllisBIGDATA Před 3 lety +3

    Who in the hell gave this a thumbs down?? No reason for thumbs down.

  • @capt119020
    @capt119020 Před 3 lety +1

    Great content, great flow to the material. With the exam changing in May, I am making a push to get this done before then.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety

      The changes in May are relatively minor, but I agree. Getting it done before May is a good plan so you don't have to worry about covering the gap.

    • @capt119020
      @capt119020 Před 3 lety

      @@InsideCloudAndSecurity I noticed they changed the triad?

    • @alimotiwala570
      @alimotiwala570 Před 3 lety

      @@InsideCloudAndSecurity please advise on domain 3 video

  • @jagannathramanan
    @jagannathramanan Před 3 lety +2

    Thank you so much sir. Yes the video about the risk formulas Calc. Would be great sir.. again couldn't thank you enough.. great material

  • @Skylar636
    @Skylar636 Před 2 lety +1

    Thank you so much for these videos!!! Simplistic but to the point! I have a few questions though.
    1. Quantitative Analysis - I understand the formulas, however I am struggling with doing the math manually (I won't have a calculator in the testing center and I am horrible with Math). The example you gave 100,000 x .3 (30%) = 30,000. How do I calculate 100,000 x .3 manually to get the SLE (AV x EF = SLE) ? You're help is greatly appreciated.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 2 lety

      Sheena, I think you should watch my "just the formulas" video, which walks you through the math. Find it at czcams.com/video/ttOKJYOedNo/video.html

    • @Skylar636
      @Skylar636 Před 2 lety +1

      @@InsideCloudAndSecurity Ok, I will thank you so much for responding! You're videos rock!

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 2 lety

      @@Skylar636 glad you like. Reach out anytime with questions. Good luck! 🤞

  • @devakumarmahadevan7508
    @devakumarmahadevan7508 Před 3 lety +1

    Thanks a lot for this Amazing content and time that you spent in preparing this. We are looking forward for the video on the other modules and an exclusive video on important terms and formulas.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Video dedicated to formulas coming tomorrow. Just dropped a video on CISSP memorization tips you don't want to miss! czcams.com/video/LGqZbiitiDw/video.html

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Here is your video dedicated to CISSP risk analysis formulas in action! czcams.com/video/ttOKJYOedNo/video.html

    • @devakumarmahadevan7508
      @devakumarmahadevan7508 Před 3 lety +1

      @@InsideCloudAndSecurity thanks a lot for your amazing work.

  • @mike94r
    @mike94r Před 3 lety +1

    Great videos. Excellent presentation. Perfect study companion to the ISC book.

  • @eddiekane6838
    @eddiekane6838 Před 3 lety +6

    Great content! A video with just formulas would be amazing.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +2

      I will make it so!

    • @eddiekane6838
      @eddiekane6838 Před 3 lety +1

      @@InsideCloudAndSecurity Greatly Appreciated!

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Video dedicated to formulas coming tomorrow. Just dropped a video on CISSP memorization tips you don't want to miss! czcams.com/video/LGqZbiitiDw/video.html

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Here is your video dedicated to CISSP risk analysis formulas in action! czcams.com/video/ttOKJYOedNo/video.html

  • @wukonggokong7362
    @wukonggokong7362 Před 3 lety +2

    Great Content, are you going to make the PDF available for Domain 1 and 2, like you did for the others?

  • @HN-ATX
    @HN-ATX Před 3 lety +1

    I am still watching your video. The way you present is great. Will you release a new series for the new exam in 2021? Meanwhile, I intent to watch all existing ones. Thanks.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety

      Theses are still good for 2021, which is an incremental update. You need the CISSP 2021 refresh video + the other 16 on my CISSP Exam Cream playlist - czcams.com/play/PL7XJSuT7Dq_XPK_qmYMqfiBjbtHJRWigD.html

  • @cisspknights9972
    @cisspknights9972 Před 2 lety +1

    Nice Explanation

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 2 lety

      Thanks and welcome! My CISSP 2022 update, all 8 domains, is now available at czcams.com/video/_nyZhYnCNLA/video.html

  • @davidaw104
    @davidaw104 Před 3 lety +1

    Hi. Need advise. Was told you need to have CCNA and CompTIA to understand the intricacy of cyber security?

  • @hamzabenazouz6641
    @hamzabenazouz6641 Před 2 lety +1

    Thanks

  • @pabloefernandez8248
    @pabloefernandez8248 Před 3 lety +1

    Hello, thank you for the great content.
    I was wondering how important are Threat and Modeling, i have found poor information on the official Study guide. Could you suggest some more resources? Thank you.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety

      Thanks Pablo! This is an exam for security leaders, so you need to know the three approaches frameworks take to theat modeling, and be familiar with the common threat models at a high level. My CISSP Processes and Frameworks video has a targeted 5 minutes that gives you this info starting HERE - czcams.com/video/mLuLtIsDjK8/video.html

    • @pabloefernandez8248
      @pabloefernandez8248 Před 3 lety +1

      @@InsideCloudAndSecurity Thank you very much! I will check the video.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Reach out anytime you have a question as you prepare. Good luck! 👍

  • @ErickAlpizar
    @ErickAlpizar Před 2 lety

    What edition of the CISSP CBK are these videos based on? I'm reading the 9th Edition and I see a few items here and there are not mentioned in this edition of the book (like Loss Potential / Delayed Loss)... Is this something to be concerned about for the test?

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 2 lety

      This was based on the 8th edition (recorded early 2021), with any gaps covered in my "What's new in CISSP in 2021?" video at czcams.com/video/Ga0AGx83ioo/video.html. So, nothing to be concerned about. You will find in my 2021 video that the updates are incremental. You'll also find many recent notes from candidates who have used these videos successfully to clear the exam up to the present day. Reach out any time if questions as you prepare.

    • @ErickAlpizar
      @ErickAlpizar Před 2 lety +1

      @@InsideCloudAndSecurity Awesome! Thank you :-)

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 2 lety

      Anytime. Ping me if any questions as you progress! 👍

  • @jamesculhan8312
    @jamesculhan8312 Před 3 lety +1

    Last year, with my paid online course by (ISC)2, I received "CISSP Student Guide 2018.pdf". Is that same as book you recommend "Official CISSP Study Guide" linked to Amazon ?

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety

      Yes I think so, but you will want to check with them to confirm. The 2021 version of the book isn't out until the end of May I believe. So if you own the 2018 version already, that's best case as of today. However the bundle that I mentioned does include access to practice questions and flashcards so you'd have to check if you have that access with what you received in your course.

    • @jamesculhan8312
      @jamesculhan8312 Před 3 lety +1

      @@InsideCloudAndSecurity Thanks for your quick reply. My concern also is the difference in title. Your recc is "Official CISSP Study Guide"; my .pdf is "CISSP Student Guide 2018". Do U know if these have same or different content?

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety

      Can't be sure, but key question that will answer the question: Did you get access to 1,300+practice questions and 700 flash cards as come with the official bundle I recommend on Amazon?

  • @WathiqHAtrah
    @WathiqHAtrah Před rokem +1

    Can you please make video specifically for the formulas included in the CISSP exam. Ty for your time and effort your videos been very helpful.

    • @WathiqHAtrah
      @WathiqHAtrah Před rokem

      I see you have a video already. Ty Sir

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před rokem

      Already did. See Master CISSP Risk Analysis Formulas (CISSP Exam Cram)
      czcams.com/video/ttOKJYOedNo/video.html

  • @KoolMB
    @KoolMB Před 2 lety +1

    the cissp practice quiz on your website has XSS scripts in it and I am unable to complete the quiz as is. Please look into this. Thanks

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 2 lety

      If you can ping me in a PM on LinkedIn with a little more detail on what you see, I'll send it to the developer and see if he can address your concern.

  • @redsoxwinagain2007
    @redsoxwinagain2007 Před 3 lety +1

    I have 17 IT and security carts including the CCSP but the CISSP is my Elenor...

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety

      I have 18 videos on the series to help you get there. Good luck and ping of questions as you prepare! czcams.com/play/PL7XJSuT7Dq_XPK_qmYMqfiBjbtHJRWigD.html

  • @rodrigoms75
    @rodrigoms75 Před 10 měsíci +1

    What would be the certification path for someone with CompTIA+ to reach CISSP ?!?

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 10 měsíci

      CompTIA flow is typically A+, Net+, then Sec+. CISSP is an exam for security leaders, and requires five years security experience. Definitely one you work your way up to.

  • @eugenechoong1270
    @eugenechoong1270 Před 3 lety +1

    Will this videos for each domain cover all concepts to pass the cissp ?

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Eugene, it's intended as part of my exam prep strategy, which includes the practice exams and flashcards that come with the Official CISSP Study Guide, as detail in this video - czcams.com/video/8TdL16yYNd0/video.html. You will find I focus on covering a lot of important information quickly, wasting no time or words.

    • @eugenechoong1270
      @eugenechoong1270 Před 3 lety +1

      @@InsideCloudAndSecurity so is that a yes or no ? I’m looking at the cissp study guide it’s like 1.2k pages it’s just too many pages

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +2

      @@eugenechoong1270 My strategy video suggests you use my videos along with practice exam questions and flash cards that come with the study guide. Then use the official study guide as a spot reference based on areas you struggle in the practice questions. But do take 20 min and watch how I did it and that will help answer this question.

    • @eugenechoong1270
      @eugenechoong1270 Před 3 lety

      Thanks ! You’ve got a. Very nice voice!

  • @painkillerO8
    @painkillerO8 Před 2 lety +1

    I have the 8th edition. Do I need to buy the 9th edition?

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 2 lety +1

      If you watch a couple of "what's new in 2021" videos (like mine), you might be okay. 2021 updates were incremental. If budget is limited, you can make it work.

  • @color.8467
    @color.8467 Před rokem +1

    what do i pass cissp or security +?

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před rokem

      I have a recommended exam prep strategy for Security+ HERE (czcams.com/video/9Hd8QJmZQUc/video.html) and CISSP HERE (czcams.com/video/_nyZhYnCNLA/video.html)

  • @CaptDarksoul
    @CaptDarksoul Před 2 lety +1

    Formula video please

  • @sickkrakr8405
    @sickkrakr8405 Před 2 lety +1

    im going to crush this exam

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 2 lety

      Good luck! Make sure you check out the videos on my CISSP Exam Cram playlist! czcams.com/play/PL7XJSuT7Dq_XPK_qmYMqfiBjbtHJRWigD.html

  • @JeepTraveller
    @JeepTraveller Před 2 lety +1

    Formula video pls

  • @WarRior-rn4kb
    @WarRior-rn4kb Před 3 lety

    If you say a PARALEGAL CERTIFICATE is equivalent to a Law Degree and Passing the Bar exam, a lawyer will slap you in the mouth.
    THE equivalent of CISSP is a Master's Degree? Cmon now. You don't mean that. That's like saying $700 of a certificate that a high school graduate can get IS EQUAL TO $40,000 for a bachelor's degree, $40,000 master's degree, plus another $40,000 for a Ph.D ($120,000/$80,000 in student loans). So let's not do that. It's a cert that anyone can get after 5 years nothing more, nothing less, the icing on the cake. And the cake is a diploma. Let's not do the equivalent to non-sense.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Surprising but true! That statement comes from this report on the official ISC2 website. www.isc2.org/News-and-Events/Press-Room/Posts/2020/05/12/ISC2-CISSP-Certification-Now-Comparable-to-Masters-Degree-Standard#:~:text=Clearwater%2C%20FL%2C%20May%2012%2C,(RQF)%20in%20the%20UK%2C. And this doc confirms UK Master Degree Standard is equivalent of US Masters Degree - www.westminster.ac.uk/sites/default/public-files/general-documents/Overseas-Academic-Qualifications-Equivalency-Chart-Scholarships.pdf

    • @WarRior-rn4kb
      @WarRior-rn4kb Před 3 lety

      @@InsideCloudAndSecurity time to push the president to forgive my student loans. If I was told that my CISSP was good enough, I would not have tried so hard in grad school, I would not have gone to grad school at all.

    • @InsideCloudAndSecurity
      @InsideCloudAndSecurity  Před 3 lety +1

      Since the UK made this declaration, perhaps The Queen will contribute to your student loans??? 🙄

    • @WarRior-rn4kb
      @WarRior-rn4kb Před 3 lety +1

      @@InsideCloudAndSecurity I don't see a reason why she shouldn't. 😂 Thanks for listening to my rant. I appreciate the content. You make this toxic industry better by helping people with your content. Thanky you!