Exam Test Taking Tips
**** THE HIGH-LEVEL TWO CONCEPTS ****
A. Think like a Manager and Respond like an Advisor - CISSP don't do the work - that's an engineer. We are NOT looking for the right technical answer, we must find the right manager answer. Think broadly, the high-level and the bigger picture.
B. Read like a Lawyer - e.g. read *every* single word. Take your time and identify any keywords like MOST, LEAST, BEST, WORST, NOT. If the question is long, read the final sentence FIRST (likely gets right to the point), then the answers and finally, go back and read the entire question.
**** HOW DO YOU ANSWER QUESTIONS ("When Looking At The Answers, Keep These In Mind") ****
  1. Identify one answer that effectively means "all of the above" - if there is one "umbrella" answer that includes the other three, maybe choose that.
  2. What kind of question is this? - if you can determine the question is asking about either Confidentiality / Integrity / Availability... then find the answer that matches it and toss out the answers that don't.
  3. Which one of these is not like the other? - look at all the answers and see what they relate to and then identify the answer that doesn't match the others. Particularly can be helpful when you encounter a question you have NO CLUE about!
  4. If you could only pick one answer, which would that be? - if you could only do just one choice/answer, which would that be?
  5. Avoid the Absolutes - look for the answers with the word "ALL" ... it's probably not that answer.
  6. People, then Process then Technology - there's a decent possibility that "people" answers would be the right one before "process" answers, with "technology" answers last.
  7. It's All About the Business - they are a critical focus! Watch out for golden words too.
  8. Human safety always is the top priority! - enough said, right?
**** WHAT ARE THE PRIORITIES? mostly from Kelly Handerhan's 10 Reasons Why you WILL pass the CISSP ****
  1. Human safety
  2. Behave ethically. There's a reason why we have the Code of Ethics, right? Not just ISC2 but also company ethics.
  3. Senior management support is key https://www.youtube.com/watch?v=kevgkqfOGGo&t=535s
  4. The business cannot fail - must maintain continuity
  5. Maximize corporate profits
  6. Controls must be cost-justified
  7. Decisions start with risk management, and that starts with an asset inventory
  8. Security must be *baked in* - not bolted on later
  9. Layered defense is essential
  10. Avoid or minimize threats
  11. People are our weakest link (e.g. insider threats)
**** FINAL NOTES ****
Be rested and hydrated and not on an empty stomach. Don't panic - keep calm and "carry on" and take your time. Even when you feel like you're failing the exam, because that's what a LOT of people say is normal. It's a mind game.
Much appreciated ... you mentioned Gwen Bettwy as 'one more good' resource ... and she had several really good test taking tips video that inspired this (along with some of my notes) 😀
2
0 comments
Chris Harmon
5
Exam Test Taking Tips
CISSP Study Group
Public group
Join our CISSP study group for cybersecurity professionals! Share resources, get advice, and connect with peers studying for the CISSP exam today.
Leaderboard (30-day)
powered by