CISSP
CISSP Overview
| Attribute | Value |
|---|---|
Goal |
Pass CISSP exam, become certified |
Target Date |
July 12, 2026 — 10-week plan started May 3 |
Interest Link |
IT > InfoSec |
Status |
ACTIVE — Week 1 of 10 |
Primary Resource |
(ISC)² Official Study Guide (Sybex), Boson practice exams, Pocket Prep app, Destination Certification MindMap (YouTube) |
Practice |
25 questions/day (morning), domain chapter reading (evening), full practice exams weeks 7-8 |
Prerequisite |
12+ years network engineering and security — meets 5-year requirement |
Curriculum (8 Domains)
| Domain | Description | Weight | Status |
|---|---|---|---|
1. Security & Risk Management |
Governance, compliance, ethics |
15% |
[ ] Not Started |
2. Asset Security |
Data classification, ownership |
10% |
[ ] Not Started |
3. Security Architecture |
Secure design principles |
13% |
[ ] Not Started |
4. Communication & Network |
Network security, channels |
13% |
[ ] Not Started |
5. Identity & Access Management |
Authentication, authorization |
13% |
[ ] Not Started |
6. Security Assessment |
Testing, auditing, monitoring |
12% |
[ ] Not Started |
7. Security Operations |
Incident response, DR/BC |
13% |
[ ] Not Started |
8. Software Development Security |
SDLC, secure coding |
11% |
[ ] Not Started |
Progress: 0 / 8 domains — Domain 1 in progress (Week 1)
Current Tasks
| Priority | Task | Due | Status |
|---|---|---|---|
P0 |
Domain 1: Security & Risk Management — Sybex + MindMap video |
2026-05-09 |
🟡 In Progress |
P0 |
25 practice questions daily (Pocket Prep or Boson) |
Ongoing |
🟡 In Progress |
P1 |
Acquire Boson practice exams ($99) |
2026-05-10 |
[ ] Pending |
✅ |
Map work experience to domains |
2026-05-03 |
Done — see edu-cissp/assessment.adoc |
✅ |
Create study schedule (10-week plan) |
2026-05-03 |
Done — see edu-cissp/summary.adoc |
Key Notes
CISSP Mindset:
-
"Think like a manager, not a technician"
-
Focus on WHAT and WHY, not HOW
-
Risk-based decision making
-
Least privilege, defense in depth
Experience Mapping:
| Domain | Work Experience | |--------|-----------------| | 4. Network | 802.1X, ISE, firewalls | | 5. IAM | ISE, RADIUS, AD, PKI | | 6. Assessment | Vulnerability scanning, audits | | 7. Operations | Incident response, SIEM |
Study Strategy:
-
Study 1 domain per week
-
Practice questions daily
-
Review weak areas on weekends
-
Take practice exam every 2 weeks