Would like to share my approach for the exam, passed today on my first attempt.
1. I attend the ISC2 class and read the student guide v5 and also read the 2013 official ISC2 CSSLP CBK. Read both books twice within 2 weeks and attempts all their questions to resolidify my understanding.
2. Also read OWASP Top 10, SAFECode material to under them more.
3. During the exam, think as a security manager/PM since their questions are more testing your experience and knowledge in SDLC, security concepts and project management.
Hope it helps, good luck to all.
Study hard and earn it, you will feel a sense of satisfaction.
Ben
I would say, draw a map for your understandings for the exam outline. Linking all the nouns in the exam outline and explain to others. This method helped me to passed CSSLP and CCSP
I only used exam outline and CBK. CBK only the dictionary to me and exam outline helps a lot. And, of course, the experience of putting all things together would help. Thinking strategy should be you are going from DevOps to DevSecOps, what should we do and why? This question is the huge help
Hi Ben,
Congratulations. Thanks for sharing.
Kyaw Myo Oo(Mr.)
CCIE 58769 | PCNSE | CCSE | CISSP | PMP
Yep, but in DevSecOps, what kind of test you should do and why is the more important. The reasons behind the test should be related to mitigates some of the risk in the whole picture. So, that's how the exam benefits me and helping me to leading the DevSecOps project in my company.