Least Privileged

Apparently I don't need to know!

  • cissp cheat sheet, cissp exam results, cissp exam results how long, cissp results, cissp results how long, cissp exam results how long 2010, failed cissp, failed cissp exam, cissp failure rate, keepass vulnerabilities, cissp exam experience, cissp cram sheet, what to memorize for cissp exam, how long for cissp results, waiting for cissp results, cissp test results how long, cissp resources, eric cole cissp, cissp results 2010, how many questions can you get wrong and pass cissp, cissp failed, coworkers with cissp, cissp exam result, official (isc)2 guide to the cissp exam - 2010, keepass vulnerability, taking the cissp, failing cissp, cissp exam cheat sheet, cissp scantron, how many question can you miss on the cissp, keepass review 2010, cissp exam experience 2010, cissp exam results long, keepass review, failed the cissp, how long to get cissp results, cissp exam failure rate, i failed my cissp, how long does it take to get cissp results, eric reed cissp, failing the cissp, cissp exam cheat sheets, cissp exam, i failed my cissp exam, failing the cissp exam, torrey woodhouse cissp, how long do i have to wait for cissp exam score?, how long cissp results, how hard is the cissp exam, cissp cheatsheet, cissp dec exam result, waiting for cissp exam results, cissp fail, how many questions can you miss on the cissp, cissp results wait, how many people fail cissp, cissp results december 2010, fail cissp, cissp december, cissp exam fail, failure rate for cissp exam, cissp test experience, how many domains are covered in the cissp exam, cissp results email, failed the cissp exam, how long does it take to get cissp test results, cissp, torrey woodhouse, cissp exam statistics, do you have to pass each domain for the cissp exams final grade, fail the exam cissp, cissp failed 1st time, cissp scaled score +70, fail cissp test first time, waiting on cissp exam results, thank you for sitting for the certified information systems security professional (cissp)® examination on 12/05/2009. we recognize and commend the significant personal commitment, 2010 how long does it take for cissp results ,cissp exam failed, cheat sheet cissp, eric cole sans management 414, people who thought they failed the cissp exam, experiences with taking cissp, freepracticetests cissp exam, cissp dec result, cissp failed 2010, cissp cheat sheets, cissp personal study notes, cissp exam results email, cissp time until grade received, how long isc2 cissp exam results, how long should i wait for my cissp results, cissp questions, how is the cissp exam graded, how is cissp graded, cissp exam difficulty, freepracticetests.org, eric cole cissp audio, cissp exam status & results, wait time between cissp exams if you fail, how long does it take to get the results of the cissp exam, do people fail cissp, what should i know before taking the cissp, i feel like i failed the cissp, december 2010 cissp results, how many questions can you miss and still the cissp exam, should is used all in one cissp 5th edition to prepare for the cissp examination?, cissp exam results december 2010, are freepracticetest.org questions really from the test, cissp cheat, cissp exam result wait, cissp exam thoughts, how long until i get my cissp results, why does it take so long to grade cissp, cissp december exam result, how many fail cissp exam, took the cissp exam, cissp fail rate, cissp exam results nov 6th 2010, i am going to fail cissp, cissp exam result december, cissp exam result dec, difficulty level of cissp questions, why does cissp take so long to grade, cissp taking, my cissp exam experience. cissp exam cram failed cissp, cissp results take longer than other, cissp certification discouraged hard, cissp exam result email, what did you see on cissp exam?, least privileged blog, taking cissp exam, cissp results december, 7 types of hard cissp exam questions, waiting cissp exam results, how many questions can you miss on the cissp exam, cissp practice exam, took the cissp december 5, 2009, how long cissp results failed, cissp test results, cissp study sheet.xls, eric cole cissp prep, dec 6 2009 cissp results, cissp how long for results, cissp cryptography cheat sheet, hands-on ethical hacking and network defense 2nd edition pdf, fail cissp by 9 points, cissp dec 2010 results, cissp exam failure rates, i think i failed the cissp, sans enough for cissp exam, cissp cheat notes, when did you receive your cissp results, how many pass cissp exam first time>, cissp test rsponse time, cissp exam results fail, failure rate cissp exam, cissp exam questions, miss exam cissp, june 12 2010 cissp exam results, how long to wait for cissp results, how long does it take for cissp results, how long to receive cissp results 2010, cissp thought i failed, cissp study sheet, when will i get my cissp results, how long does it take to receive cissp test results, cissp 5 dec exam, cissp eric cole, cissp exam results fail experiance, cissp results, how long to get cissp exam results, cissp fail safe, cissp post exam syndrome, cissp exam can you bring notes?, keepass mcafee, what to bring to cissp exam, shon harris evo, cissp exam result 20th december, giac security leadership certification training programs wisconsin, cissp result score, 401, how many pass cissp exam on first change, cissp+cheat+sheet, eric cole sans cissp slides, pass fail for cissp, giac security leadership certification personal experiences, cissp cheat sheet 2010, how many questions can i miss on cissp and still get 70 percent, cissp recent exams feed, how many domains are covered in the cissp exam and list each domain name?, cissp 80% who fail first time, cissp exam results failed, about cissp failure rate, how long does it take to get a response after taking cissp, cissp post cheat sheet, how to pass cissp, if you fail the cissp exam, least privlaged cissp, beta questions on cissp test, how hard is cissp exam, dear candidate, certificate number: 360xxx, how long grade cissp, cissp experience, my experience taking the cissp exam, long cissp exam results, cissp cheat sheet notes, cissp exam tips, cissp online books resource, just wrote the cissp exam, cissp result 5th dec 2009, cissp post exam experience, cissp results fail, keepass + vulnérabilité, how to cheat on the cissp exam, carnegie-mellon cissp course, how long for the isc2 endorsement, how long after the exam the cissp results come in, cissp study plan .xls, how long does it take to get cissp exam results back, cissp test comments, 7 types of hard cissp exam questions, where do i check for my cissp result for pass or fail, sans cissp test answers wrong, cissp practice exams (all-in-one) download, real exam cissp pass, grading cissp test, percent of people who pass the cissp exam, taking the cissp exam - my personal experience, cissp cheat sheet free, failed cissp 2 times, how long cissp results december, failed 5 timees in cissp, cissp exam questions weighted, cissp exam experience, osi cissp notes, cissp 2010 results, cissp cheet sheet, cissp made easy, keepass malware, what if i fail cissp exam, cissp how many can i miss, keepass rainbow, waiting for cissp test results. cissp test results taking a long time results nov 6th, taking the cissp, cissp 2009 result fail, i am ready for the cissp exam, what to bring to cissp, cissp exam is really hard, what is the failure rate of 2010 cissp exam, cissp december 2009 results, cissp how long to get results, keepass security, ow many people fail the cissp, issp answer sheet a,b,c,d quarters, what to expect when taking the cissp exam, eric cole cissp mp3, i fail cissp, cissp pass fail rate, when you fail th cissp, what is the percent of per domain for cissp exam, how long does it take to get exam results for cissp, www.freepracticetests.org, transcender practice cissp forum hard easy, failed cissp test need help, cissp results 1 week, keepass online storage, cissp test fail rate, cissp december results, cissp dec 2009 result, isc2 said i passed cissp exam then turned around and said i did not, how to cheat on cissp, cissp exam 6 hours, brute force password cracker snapfish, cissp lectures, cissp access control cheat sheet, how long cissp exam results, cissp vs gslc, http://freepracticetests.org, how long doees it take for the cissp results, failing cissp exam, taking the cissp exam, time required to prepare for cissp, how many fail the cissp exam, cheat sheet for cissp, cissp results how long 2010, i failed the cissp exam, how long to wait for cissp exam results?, cissp exam, failed cissp exam what do i tell my boss, i think i failed the cissp exam, securitymanagementpractices1.mp3, cissp least privlaged access, pass fail cissp, eric cole cissp seminar, 2010 cissp exam blog, eric cole cissp notes, cissp exam failure, cissp exam write on blank paper, cissp december result, failed cissp longer, gslc vs cissp, keepass vulnerability ctrl-c, eric cole audio download cissp, free practice exams cissp, how close to real exam, cissp study plan, how to feel after taking cissp, how do they grade the cissp exam, how many questions can i miss on cissp exam and still pass, cissp test closer to real exams, cissp barely failed, freepracticetests cissp pro hard, what day do cissp results normally come out, cissp results how long, cissp missed questions, how many times can i write the cissp exam, cissp exam results e-mail, december 12, 2009 + cissp examination results, secret to passing the cissp exam, failed cissp exam 3 times, cissp exam no problem, cissp exam result for 5th december 2009, who took cissp exam in 2009, deepmile facebook, keepass vunerability, how many times have you taken the cissp, cissp weighted, cissp test timeto get your result, isc2 training camp archive, cissp shon harris, copied cissp questions 2010, cissp exam results time, how to find out cissp test results, cissp exam overview slides clement dupuis, issep practice exam, sans audio for cissp, official (isc)2 guide to the cissp pdf, cissp waiting game, how many questions can you miss on the cissp and still pass, prepare cissp exam, 7 days to cram for cissp, cissp fail test scores, passing the cissp exam, eric cole mp3 cissp, cissp exam room highliter, sans audio slides series eric cole, sans mgmt 414 mp3, cissp 414+, sans mgt 414 mp3, test results for cissp october 4, how to prepare for cissp, cissp domain 6 quiz, cissp december 2009 result, i received my cissp results today at, why people fail cissp, december 12 cissp exam results, free cissp mp3s, sans cissp practice test by eric cole, audio cissp eric, cissp domain 5, cissp exam 2009 drp, cisa barely passed, sans cissp eric cole mp3, clark-wilson model anti-malware, december 6th cissp exam 2009 still no results, cissp domain rss feeds, when will i get my cissp results?, cissp exam results december 2009, cissp eric reed, i took my cissp exam 2009, eric cole cissp video, cissp test october 2009, eric cole audio cissp, cissp exam december 5 2009 results, cissp exam december 2009 results, cissp frustration, management 414 sans +s training program for the cissp certification exam presented by eric cole!, december 5 cissp exam results, feel in exams personal experience, waiting on cissp score, what to expect when taking cissp exam, cissp fail one domain, how long will the result of cissp exam be kept, what if i fail the cissp, cram guides cissp practice exam 2010, what you need to know for the cissp exam 2010, skillport cissp, cissp results response, how long does it take to get the cissp exam results, eric cole cissp lectures mp3, failed time between cissp tests, inchdeepmilewide.wordpress.com, cissp 2009 domain 10 notes, cissp study sheet telecommunications and network security, cissp exam estimated results, how many times fail cissp exam, how long to find out if you passed cissp, failure rate of cissp exam, let someone else take cissp test, percentage of people that fail the cissp exam, how much time do i have after passing cissp exam, cissp exam results aug 2010, when can i expect my cissp results?, official (isc)2 guide to the cissp exam - 2nd edition, 2010 pdf, can i take a class for cissp exam and then take the exam, 7 types of hard cissp exam questions pdf business phone, brutal cissp exam, shon harris wiki, software review: keepass comment, how long should i study for the cissp exam, difficulty of cissp compared to gslc exam, cissp update, does cissp have a 80 failure rate, keepass got hacked, what day do cissp results arrive, cissp results taking forever, what is the password to print all in one cissp 4th edition, cissp exam results 2010, cissp night before, took cissp today mostly operations, cissp exam 5 times, cissp exam notes, cissp brutal 6 hour exam, cissp passing results take longer, cissp 5th front, i failed cissp 2009, cissp taking again, picturetrail password brute force, transcender cissp practice exams, cissp exam failing results, how many people fail cissp first time?, i'm socring 80 and higher on cissp practice exams, cissp difficulty level, i passed the cissp, isc2 exam results letter scanned, cissp booklet, how good is freepracticetests cissp, cissp one month passed, cissp exam results waiting, how i passed cissp exam, any experience before cissp exam, cissp exam result already 4 weeks, weighted cissp exam, cissp encryption cheat sheet, who grades cissp tests, cissp telecomm cheat sheet, took cissp exam questions focus more, cissp how long before taking the test if you fail, cissp failed again, cissp is an easy exam, but tricky, cissp exam most tested domain, cissp exam what to bring, cissp statistic, online cissp practice questions exam cram, cissp exam comments, cissp exam results takes a long time, cissp failed email, cissp exam results 2010 do they give you your score fail, cissp actual test feedback, length of time to learn results from cissp, issmp notes, least privileged +physical security, passing cissp 1st time, cissp how many questions can i miss?, keepass auto login vmware client, cissp waiting for results, feel like ive failed after taking cissp, cissp change grade, (isc)² eric cole review, freepracticetests any good for cissp prep, trick cissp scantron, how to pass a cissp exam buy guessing answer, cissp exam collector, cheating on cissp exam, how many cissp question can be missed, cissp exam 80 percent right to pass, what kind of pencils do you need for cissp exam, cissp exam audio cd, cissp exam grading time, cissp acronyms flash cards, post cissp test syndrome cccure, when does cissp exam start hours, keepass experiences, failed cissp exam?, eric cole cissp lecture, cissp pass for sure, failed exam cissp, how long does it take for the cissp results to come out, issap cheat sheet, help failed cissp three times, getting cissp results, does it take long to get cissp exam results, failed my cissp exam, taking cissp, waiting for cissp result, what is the hardest cissp domain

The Secret 11th CISSP Domain: Understanding How to Learn, How to Study and How to Take A Test

Posted by -Durk- on May 21, 2011

poster for The Matrix

Why didn't I take the blue pill?

I took this personality test in high school, the teacher was finishing up his masters or PHD or something and he passed out these self-examination tests to the class.  It focused on how one learns.  I remember answering a question regarding how I learned with one answer then basically getting the same question later on and answering it differently!  I remember thinking, “I have no clue how I learn”.  “Are there different styles or methods?”  I just didn’t know!

Fast forward 20 years, one failed CISSP exam behind me and a year of studying ahead; I had to figure out how I learned, how to study and how to pass a freaking test as I prepared for the CISSP exam 2.0!   The process that I went through to prepare and pass the (second) CISSP exam taught me a lot about how to study, learn and take the hardest exam I have ever taken!

OK, here’s the point:  Identifying how YOU learn and identifying the best study and test methods that work for YOU are vitally important to passing the CISSP exam.

I’m convinced of this:  Understanding how one learns, how to study and how to take a test could be the difference between passing or failing.  Especially those that have failed multiple times and feel like they have studied their asses off and can’t possibly memorize or cram any more security info into their brain, lest it will explode!  Take pause, take an introspective inventory, do some research on learning, studying and test taking and then switch gears.  Think of this as the secret eleventh domain.

I am not going to spend a lot of time talking about how one learns in general, it is just too vast of a topic.  If you read through the rest of this post and simply can’t identify with any of it, then please keep searching and take the time to understand what it is that makes you tick.  Take a few personality tests to see what type of social person you are.  Are you an introvert or extrovert.  This answers the question of if you should study alone or in a group.  If you have some sort of learning disability then you really need to spend some time understanding yourself and how to overcome and be successful.  Talk with experts.  This will help you in all areas of your life.  Do yourself a favor and seek professional educational counseling.  Are you ADD?  Then you have to structure your studying accordingly by eliminating distractions and stick to a more formal plan.

Open Brain, Insert Content

Remember the scene from the sci-fi movie The Matrix when Neo (Keanu Reeves) is learning how to fight?  They plug this cable into his head, they download all these different styles of martial arts, Neo’s eyes are fluttering and all of a sudden his eyes pop open and he says “I know Kung Fu”?  [In my best Chris Farley Impersonation]:  “Yeah that was really awesome”.  Bad news:  That  ONLY happens in the movies!

Book Worms

How do you get the info from the 10 CISSP CBKs into your head, process them into an organized and memorable fashion so that you can regurgitate all that info when it counts on the exam?  I know some folks who can take a book, read it from cover to cover and then KNOW the concepts and understand the subject.  They can turn around and put all of that knowledge into practice.  People who can do this are pretty smart people.  And I can’t begin to relate to these type of people!  If you are one of these people you are probably in pretty good shape.  Use Shon Harris‘ CISSP All-in-One Exam Guide and the Official (ISC)2 Guide to the CISSP CBK.  I started out by myself with Shon Harris’ book.  I read and read, I highlighted, I underlined, I wrote in the book, I tabulated the book with sticky tabs and sticky bookmarks.  Although I could find just about any topic fairly easily I wasn’t getting very deep and although I was learning, I was not memorizing and wasn’t able to regurgitate on any kind of detailed level.  It was a lot of dry reading, I saw the words, but, what did they mean?  And most of all how can I apply the knowledge to different situations?  So I was reading and re-reading which was a waste of time for me.  Reading books are great for some people.  But I needed more.
–(CISSP book resources & practice test info:  http://inchdeepmilewide.wordpress.com/cissp-resources/)

Experience

Some people like to just dig in, start taking stuff apart, or building something and they just learn as they go.  They start by taking the engine all apart for no real good reason but to learn how to put it all back together again.

Engine

Most of the time there is only a part or two left over!

They have to touch, they have to feel, they crack the manual now and again when they get stuck but at the end of the day they have a re-built engine in their car and most of the time there is only a part or two left over!  The other HUGE caveat-it took them 5 years to put it all back together.  Gaining experience takes time.  Most people who have extensive technical experience fall into this category.  There’s simply no substitute for time and experience gained, and if you have enough of it, most likely the CISSP exam will be cake for you.  If your background is deep and wide most likely the practice tests will be fairly easy.  If they are not, dig deeper and wider.  Can you turn around and teach it?  That’s the level of knowledge required to pass the CISSP.  If yes you are set, if you fumble a bit, keep going.  Although I have 5 plus years in a network security group, my background is not in building networks or building server systems or managing firewalls and routers.  Even if you can teach the telecom domain in your sleep you may struggle with the more in-depth security concepts.

My co-worker falls into these first two categories.  He can read a book or manual from cover to cover and he can turn around and explain it in technical and deep articulation.  He has been in the technology and telecom industry for 30 plus years and he paid very close attention.  He can program in several languages, not only build a PC but explain how it works in detail, he can re-build a car engine while he explains the history and physics behind every detail.  He is by far the smartest person I know.  He finished the exam in just over 3 hours and he passed his first time out.  The other 99,9% of the population just do not function this way!  There’s hope…keep reading.
–(Practice test info:  http://inchdeepmilewide.wordpress.com/cissp-resources/)

Back to School

Many people are traditional student learners, they can listen to or watch lectures, take quality notes, make study cards, study in groups, create cheat sheets and take practice tests.   Most classrooms fall into this category.  If college was the best learning experience of your life then this is for you!  If this is definitely you skip reading a book from cover to cover and please, don’t bother with an expensive boot camp. Purchase a couple of video (Shon Harris CISSP Video Seminar) and/or audio lectures (Management 414 SANS +S Training Program for the CISSP Certification Exam presented  by Eric Cole or enroll in college classes or a semester worth of classes that focus on CISSP.  If you thrive in a classroom spend the time and money and take a few quality instructor-led courses either in a real classroom or find something outside of your home (like a conference room or library) and create your own personal classroom.  For the most part I used this method.  I took a book with me to a conference room that I would turn into a classroom.  I found a study buddy and we watched a couple of different Shon Harris’ lectures, listened to an audio lecture and paid for online video lectures.  For the most part this worked for me.  If you are a social learner like me, take classes or create a classroom environment with others.
–(CISSP resources & practice test info:  http://inchdeepmilewide.wordpress.com/cissp-resources/)

Note To Self:  Take Better Notes!

stickynote

Remember taking notes in school?  Of course you do!   Taking notes and studying them solidifies and reinforces what you’ve been hearing and seeing.  There are many different methods of taking notes.  There are outline techniques, term/definition techniques, shorthand, flash cards and the list goes on and on.  If you struggle in this area find a book or a webinar or lecture or a college orientation class or materials that focus on taking notes!  Heck, find a person who can take excellent notes and learn from them.  I have excellent index-style study cards, but I don’t want to merely give them to you because as you make them yourself you are organizing and learning!  And of course the last word on notes is to actually review them, study them.  I took way too many notes that I never looked at after I penned or typed them.  That was just stupid.

How to take a test

Unless you have a photographic memory, very few people have some magical edge when taking tests.  Stick to the basics:

  • Spend the night at or near where the exam will be given
  • Don’t cram
  • Go to bed early-take a Tylenol PM (Benadryl) if you are restless
  • Awake at least 2 hours before the exam doors open
  • Eat a healthy and hefty breakfast
  • Arrive before the doors open, check in find a good seat
  • Turn off all noisy electronics, don’t just mute or vibrate, pack the distractions away, forget about them
  • Bring Your Registration Letter and ID
  • Bring food and drink
  • Bring your own #2 pencils and a huge eraser
  • Bring meds in case of a headache
  • Take notes on the test-mark the questions you don’t know or aren’t sure of (use different markings)
  • Circle the answer on the test THEN transfer the answer to your answer sheet
  • Read the question carefully and completely
  • Read all answers before choosing an answer
  • Answer all questions
  • First answers are usually right-but mark and review those that were a complete guess
  • Take breaks-at least one per 60 to 90 minutes
  • Break the test up into sections and when you reach the end reward yourself with a break, go potty, walk around or stretch for a minute or two, relax, consume food and drink, get back to it.
  • Pay attention to the time
  • Use all 6 hours, if you finish early take a break, review, then review again
  • Be one of the last to leave

I think I am pretty good at taking tests in general-mostly because I commit to an answer and move on.  Most of the time if you know it, you know it, and if you don’t you don’t.  Failing the exam the first time simply told me I wasn’t quite prepared enough.

However, some people are worse at taking tests in general than others.  Some people suffer from test anxiety.  Some people psych themselves up for failure or get overly nervous or anxious or just freak out once they get the test in front of them.  From eHow.com, “Relax on the day of the test. Once you’re in the testing room, you can do nothing more to prepare. Worrying when you can do nothing more to improve your chances of scoring high on the test will affect your performance.”  People do weird things like read things into the questions that’s not there or second guess everything.  Although most of these folks know the content and understand the concepts they’ve studied, they are a completely different person as they take the real exam.  They go slower or faster, their minds go blank, they sweat, they have negative conversations with themselves, etc.  If you are one of these people then you HAVE to figure out a way to compensate.  Train your mind to take the exam.  Take lots of practice tests.  Take many long 250 question practice test.  Print out a practice test with the questions and use a Scantron to record the answers-just like the real exam.  Time yourself.  Pace yourself.  Find new questions so you’re not memorizing the question and answer rather than learning the concepts. Take practice tests at a crowded McDonald’s.

Knowledge is Power

Finally, learn from others’ experiences and mistakes and successes.  Walking into the exam my first time and sitting down to take the exam was like ice cold water or a bitchslap to the face-it was incredibly painful, frustrating and shocking.  Read my personal experiences.  Join CISSP forums.  Read security blogs.

5 Responses to “The Secret 11th CISSP Domain: Understanding How to Learn, How to Study and How to Take A Test”

  1. jockel.carter@presumpscott.com said

    Again an excellent article which I am reposting to LinkedIn an Facebook.

  2. Jockel said

    Hello Durk,

    Would you be willing to join me on LinkedIn? Since completing the audit experience myself I am now looking for my next opportunity.

    • -Durk- said

      Any and all can find me on LinkedIn under Derin Beechner. I also encourage everyone to join the LinkedIn CISSP forum/group-its really good stuff!.

      • blm_cissp said

        Durk,

        Thank you for this write up. I definitely retain more when I make notes.

        blm_cissp

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Connecting to %s

 
Follow

Get every new post delivered to your Inbox.