<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Things to remember for exam in CISSP Study Group</title>
    <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/48976#M162</link>
    <description>A better question is why does a modern cyber security profession need to&lt;BR /&gt;know that? Why use another stump the chump question instead of a question&lt;BR /&gt;that tests critical thinking.</description>
    <pubDate>Sat, 08 Jan 2022 16:32:09 GMT</pubDate>
    <dc:creator>EequalsMC2</dc:creator>
    <dc:date>2022-01-08T16:32:09Z</dc:date>
    <item>
      <title>Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47580#M107</link>
      <description>&lt;P&gt;Hi everyone,&lt;/P&gt;&lt;P&gt;I'm curious to know how do you remember the port number information, which tool to use when scanning for vulnerabilities? I'm really bad in domain 6 and hope can have someone to guide me in this chapter.&lt;/P&gt;&lt;P&gt;Thank you very much.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Robert&lt;/P&gt;</description>
      <pubDate>Mon, 20 Sep 2021 13:03:40 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47580#M107</guid>
      <dc:creator>RobertEng</dc:creator>
      <dc:date>2021-09-20T13:03:40Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47588#M108</link>
      <description>&lt;P&gt;Remembering TCP port numbers comes with experience/familiarity.&amp;nbsp; It'd be common over time to know which ports common service like&amp;nbsp; FTP, SSH, Telnet, SMTP, TACACS, DNS, HTTP, Kerberos, LDAP etc run on.&amp;nbsp; In terms of tools for scanning you might also want to look at C|EH.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Sep 2021 12:14:53 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47588#M108</guid>
      <dc:creator>Steve-Wilme</dc:creator>
      <dc:date>2021-09-21T12:14:53Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47589#M109</link>
      <description>21, 22, 23, 25, 49, 53, 80, 88, and 389 (i think)</description>
      <pubDate>Tue, 21 Sep 2021 13:16:29 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47589#M109</guid>
      <dc:creator>junghyun</dc:creator>
      <dc:date>2021-09-21T13:16:29Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47597#M110</link>
      <description>&lt;P&gt;Everyone learns differently but I think that if you really don't know any of them, you should try flash cards, quizzes, and maybe even dig in a little further and open up a firewall to test with and configure them, adding notes as you do it. I think it is more important to know the differences between port types, and what is secure and not secure. TCP vs UDP. FTP, SFTP, SSH, etc.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There are also some videos if you search for them that could help but since they are with another cert body I will not publish the links directly in here.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Good luck!&lt;/P&gt;</description>
      <pubDate>Tue, 21 Sep 2021 18:19:51 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47597#M110</guid>
      <dc:creator>BrianF</dc:creator>
      <dc:date>2021-09-21T18:19:51Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47613#M111</link>
      <description>&lt;P&gt;Hi Brian,&lt;/P&gt;&lt;P&gt;Really appreciate your advice.&lt;/P&gt;&lt;P&gt;That's such an eye opener to me.&lt;/P&gt;&lt;P&gt;Thank you so much.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Robert&lt;/P&gt;</description>
      <pubDate>Wed, 22 Sep 2021 14:03:22 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47613#M111</guid>
      <dc:creator>RobertEng</dc:creator>
      <dc:date>2021-09-22T14:03:22Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47614#M112</link>
      <description>Hi Junghyun,&lt;BR /&gt;Really appreciate for sharing.&lt;BR /&gt;Are you preparing for your exam as well?&lt;BR /&gt;I hope to be able to join a study group.&lt;BR /&gt;Thank you.&lt;BR /&gt;Regards,&lt;BR /&gt;Robert</description>
      <pubDate>Wed, 22 Sep 2021 14:05:50 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/47614#M112</guid>
      <dc:creator>RobertEng</dc:creator>
      <dc:date>2021-09-22T14:05:50Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/48494#M137</link>
      <description>&lt;P&gt;Youtube&lt;/P&gt;&lt;P&gt;CISSP Exam Cram has some great videos on memory mnemonics for the exam - Frameworks, models, ports, encryptions, hashing, etc.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I never really understood why the "Managerial" CISSP needs to get down in the weeds about port numbers and protocols.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Rule 0 - Have a good inventory of assets&lt;/P&gt;&lt;P&gt;Rule 1 - Scan for open Ports&lt;/P&gt;&lt;P&gt;Rule 2 - Close off unused Ports&lt;/P&gt;&lt;P&gt;Rule 3 - If you don't understand this, get yourself a good network manager and pay them well&lt;/P&gt;</description>
      <pubDate>Thu, 02 Dec 2021 19:18:36 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/48494#M137</guid>
      <dc:creator>EequalsMC2</dc:creator>
      <dc:date>2021-12-02T19:18:36Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/48732#M143</link>
      <description>&lt;P&gt;Hi Robert,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is Sam from Taiwan. I would shared some of the ideas how I prepared the Domain 6 on the exam.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;First of all, we need to make it clear on why we need to do the assessment and testing for the security operations. It was because we need to ensure the controls are in good and acceptable manner after we applied it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For my point of view, you are not need to remember which tools to do what, but only need to know if we need to ensure the system was hardened well, we should check the port that remain opened with the tool called Nmap. And we need to know why we need the third-party compliance audit, because we are doing well and we need to told others that we are doing really well on the compliance.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope the above could help you build some idea on the Domain 6 and I just passed the exam on 14th.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please let me know if you need any help on the discussion and I would love to shared with you all.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;SAM CHAN&lt;/P&gt;</description>
      <pubDate>Wed, 22 Dec 2021 06:31:15 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/48732#M143</guid>
      <dc:creator>swh5a01</dc:creator>
      <dc:date>2021-12-22T06:31:15Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/48965#M158</link>
      <description>&lt;P&gt;A wise man once told me that when preparing for a certification exam and reading the exam objectives if a protocol is mentioned there it is a good thing to know that protocol and it's associated port number(s).&amp;nbsp; That advice has never let me down.&lt;/P&gt;</description>
      <pubDate>Sat, 08 Jan 2022 02:23:29 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/48965#M158</guid>
      <dc:creator>brford</dc:creator>
      <dc:date>2022-01-08T02:23:29Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/48976#M162</link>
      <description>A better question is why does a modern cyber security profession need to&lt;BR /&gt;know that? Why use another stump the chump question instead of a question&lt;BR /&gt;that tests critical thinking.</description>
      <pubDate>Sat, 08 Jan 2022 16:32:09 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/48976#M162</guid>
      <dc:creator>EequalsMC2</dc:creator>
      <dc:date>2022-01-08T16:32:09Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/49004#M163</link>
      <description>As a working professional I don't think that the list of protocols and their associated ports is excessive. I would be concerned if a CISSP level co-worker could not recognize authentication, web browsing, DNS resolution, file transfers, and email exchanges when looking at an analyzer or trace. The CBK is not asking a candidate to memorize port 1-1024.</description>
      <pubDate>Mon, 10 Jan 2022 19:35:23 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/49004#M163</guid>
      <dc:creator>brford</dc:creator>
      <dc:date>2022-01-10T19:35:23Z</dc:date>
    </item>
    <item>
      <title>Re: Things to remember for exam</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/49089#M166</link>
      <description>&lt;P&gt;I agree. You need to know the well-known, reserved, and the underlying services / apps that use them. IE: Your dev team sends in a request to open port 21. You should know what they are trying to do and get very involved with the request, issue, and ultimate resolution.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Likewise, you need to be able to understand penetration testing reports (at the very least).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;At the end of the day, all of the technical understanding required for a CISSP should complement your ability to manage risks. What makes it hard is it is technical, it's managerial, and you need to understand the legal and operational aspects of a business and industries. You are resource of information to the stakeholders and that includes your ability to understand the technical aspects of risks to the business.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jan 2022 14:21:53 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Things-to-remember-for-exam/m-p/49089#M166</guid>
      <dc:creator>BrianF</dc:creator>
      <dc:date>2022-01-13T14:21:53Z</dc:date>
    </item>
  </channel>
</rss>

