Тёмный

Think like a manager 

Tactical Security Inc.
Подписаться 2,9 тыс.
Просмотров 18 тыс.
50% 1

Опубликовано:

 

5 окт 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 70   
@billkim8814
@billkim8814 6 месяцев назад
Thanks Gwen, I just passed CISSP provisionally yesterday and I appreciate your Video . Exam was totally different from the practice test but it helped 😂
@RonWonkers
@RonWonkers Месяц назад
I passed CCSP this week on my first attempt! You were absolutely right, this test is really technical but it also has a lot of managerial questions. There were numerous examples of where I clicked the technical answer "Implement DLP/other tooling" but then saw the "Employee background check" or some other people answer. Ended up switching answers on a lot of questions and passed :).
@GwenBettwyTSI
@GwenBettwyTSI Месяц назад
That is terrific news! Congratulations!! I believe you have to spot those manager answers when they do show up, otherwise it is very hard to pass this test. Beyond that you really need to understand cloud technology to get through this one!
@nickybesters
@nickybesters 2 года назад
Nice collection of tips! Also, Luke Ahmed has a book called How To Think Like a Manager which aspiring CISSPs might be interested in.
@GwenBettwyTSI
@GwenBettwyTSI Год назад
I do have a think like a manager video here on youtube as well
@ralphmelone8460
@ralphmelone8460 6 месяцев назад
Hi Gwen. I want to thank you for this, and all your videos on the CISSP. I passed my test today. Your insights, tips, tricks on techniques on how to approach questions and answers were invaluable. I found you to be correct, the vast majority of the questions could be answered from a management perspective ( a business & security management perspective). Thanks again!!
@GwenBettwyTSI
@GwenBettwyTSI 6 месяцев назад
Congratulations!!!! So glad you found my video before the test!
@macleank9678
@macleank9678 Год назад
This video was the last one I watched and I passed today. Thanks Gwen
@GwenBettwyTSI
@GwenBettwyTSI Год назад
Congratulations!!!!
@CISSP-e5d
@CISSP-e5d 2 месяца назад
I've just done the cisa with a very good score and I can say one thing for sure: the mindset you're developing is the same as that for auditing. I started preparing for the CISSP a few days ago and I find it very similar to auditing. I hope to give you some good news in a few months' time.
@GwenBettwyTSI
@GwenBettwyTSI Месяц назад
There is definitely a common thread through these certs! Best of luck!
@pudgespracticalposts342
@pudgespracticalposts342 2 месяца назад
I felt like I bombed CISSP last year and walked out with a pass! Today, I took CCSP and didn’t even get close…and didn’t feel like I did when I completed CISSP, which is to say Dread! Oh well, bought peace of mind and test again in September. Your classes taught me a lot though, so this is clearly my problem!
@GwenBettwyTSI
@GwenBettwyTSI Месяц назад
Consider one of my live classes so that I can help you figure out where your thinking/logic/learning needs to go.
@nivethamathivanan3335
@nivethamathivanan3335 6 месяцев назад
Thank you for the amazing content Gwen. These really helped get hang of the mindset. I have provisionally passed CISSP today.
@GwenBettwyTSI
@GwenBettwyTSI 6 месяцев назад
Congratulations!!! So happy to have helped. 20 years of teaching CISSP I have found a few tricks that sure do help!
@faheemtayyab3416
@faheemtayyab3416 Год назад
Great content. Watched your video yesterday and today I passed cissp. Thank you
@GwenBettwyTSI
@GwenBettwyTSI Год назад
Congratulations!!!!
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
37:19 Indeed. Treat them with respect, support them, and make them loyal to your enterprise. If you want to be cynical about it, it’s safer and cheaper in the long run.
@netsnower
@netsnower 11 месяцев назад
GREAT video on CISSP, CCSP test taking tips. It helps get my head on focused on how to approach the exam day
@GwenBettwyTSI
@GwenBettwyTSI 9 месяцев назад
Awesome!
@CyberDuece
@CyberDuece 2 года назад
Great job as always, thank you for sharing.
@GwenBettwyTSI
@GwenBettwyTSI 2 года назад
Thank you! Cheers!
@yolo12999
@yolo12999 Месяц назад
Thanks Gwen, I passed my CISSP yesterday.
@GwenBettwyTSI
@GwenBettwyTSI Месяц назад
Congratulations!!!!
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
44:50 Two framed photos on the wall behind you caught my eye, maybe because I am a cocky lone wolf 😄
@AnthonyNyamu
@AnthonyNyamu 4 месяца назад
😊😊
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
17:34 It is a genuinely good idea to make everyone (and I mean everyone) in an organisation more aware of risks, safety, and being money wise, BUT not at the detriment of other things. Money and technicalities of any safety system are contingent on threats, business landscape, how good you are at playing the money making game. Other things are not contingent on externalities. It’s like a human body- if its immunity is good, it can fend off all sorts of infections. Whereas your security paradigm is mostly reactive, for what I could gather, that’s why Zero Days happen. A virus in your system causes a devastating pandemic because your employees don’t know how to cyber wash their hands properly etc.
@mainHERO88
@mainHERO88 4 месяца назад
Bookmarking 34:52 for remembering the order! Great video!!!
@GwenBettwyTSI
@GwenBettwyTSI 3 месяца назад
Thanks for that!
@2lotsill
@2lotsill 8 месяцев назад
This is what I was told “put on your CEO hat” answer the question as CEO. Should the answer that down at make sense.
@tdub1013
@tdub1013 2 года назад
This is GOLD!
@GwenBettwyTSI
@GwenBettwyTSI 2 года назад
Thanks for leaving a comment! I am glad it was helpful!
@johncook4794
@johncook4794 Год назад
I failed the CISSP test a year ago, and now have another year of studying. Will try for Jan-Feb again. Appreciate your videos.
@GwenBettwyTSI
@GwenBettwyTSI Год назад
Thank you and best wishes.
@frob530
@frob530 Год назад
Did you pass ?
@johncook4794
@johncook4794 Год назад
@@frob530 Hi, I am taking the exam April . Spending 2 years on this LOL. I want to know this material like there is no tomorrow 🙏
@xpcyberARP
@xpcyberARP Год назад
@@johncook4794 You pass? lol
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
10:36 I wholeheartedly agree. But my definition of ‘wisely’ doesn’t fit with the common nonsense. What do you invest in? Expensive software, pentesting services, fancy physical security devices? How much less money would you have spent had you invested in people’s training and attitudes? That’s why I’m saying your paradigm is myopic.
@waseemal3951
@waseemal3951 Год назад
I came across this video. Im planning on taking the CISSP in 2 weeks. thanks for this. Hopefully it will help me.
@GwenBettwyTSI
@GwenBettwyTSI Год назад
Best of luck!
@waseemal3951
@waseemal3951 Год назад
@@GwenBettwyTSI thank you.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
12:24 I don’t know much about it, but the MFA systems are not infallible. I was reading yesterday about Kerberos, and even I (not being particularly smart and definitely not knowledgeable) could see it’s vulnerable. What good is it to rely so much on an authentication server that checks credentials with a database that has had a SQL injection? The SSO that embodies the accessibility principle at the detriment of integrity and confidentiality (since when putting all your eggs in one basket is safe practice?). As I said, I don’t know all the terminology, but I hope you will understand the idea.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
26:20 That’s where the risks assessments are flawed. Take Mitre Att&ck which is a superb endeavour. It cannot help you assess unknown risks and prepare properly (maybe against script kiddies attacks and other small hacker fish). All you can reliably assess is your defences. What do all successful attacks have in common? Or, better put, why are they successful? (*Hint* the first and most important layer of the answer is non- technical).
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
13:37 Get your priorities right! First and foremost the human wellbeing which includes the lives of people in a hospital, so if you’re a boss who makes money off the backs of ill people, at least you could pay due diligence and part with a part of your profit to ensure that you don’t put their lives in danger by allowing a ransomware attack. Those money greedy CEOs should face criminal prosecution and not be allowed to settle in court by paying their weekly coffee budget.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
39:20 😃 I like your style.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
27:33 There are sectors that should not be left at their own devices, at the whim of irresponsible corporate managers. Take the energy sector, transport, water supply, healthcare, telecommunications- they should be recognised for what they are i.e. critical infrastructure. Imagine a big water supply company being hacked into. Or a biolab database being compromised (modifying data would be worse than stealing it for corporate espionage purposes).
@peterkarumuna2451
@peterkarumuna2451 2 года назад
Excellent !
@GwenBettwyTSI
@GwenBettwyTSI 2 года назад
Glad you like it!
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
50:39 I wish. Unfortunately, small people like me are at the mercy of idiots, so it becomes personal.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
9:43 Oh, so it is about people. Allegedly.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
24:42 Yeah, video streaming. I was thinking about that, actually, when I read yesterday about UDP which I understand is much less safe than TCP. In all fairness, ensuring integrity via using HTTPS and TCP is kinda obsolete in the age of deepfakes. Maybe Communication science should not be divorced from the Information Technology. PS- I am not referring to your video. I don’t know who you really are, but I think that you are a highly intelligent lady with loads of experience. My criticism pertains to this damned test.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
35:27 What for? Just to pass this test or the GRC bit of an audit?…
@kalumranatunga8029
@kalumranatunga8029 Год назад
appreciate ..,great it is helpings me lot ..,
@GwenBettwyTSI
@GwenBettwyTSI Год назад
You are most welcome.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
14:15 What is the average amount paid for a ransomware attack? I don’t know, let’s say $500,000. Spending $499,999 on developing your immunity to attacks by training and checking your staff’s attitudes and safety- related behaviour, sacking a few bad apples, and continuously helping the individuals to attain maturity and good posture is still cheaper.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
4:41 Accessibility principle.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
0:53 I do, but I don’t like it. Which makes me doubt I will ever work for such managers. Is this test an empathy test? It should test knowledge, attitudes, and cognitive resilience. But not like that- not telling the candidates what they’re tested for. It’s patronising, disrespectful, and dishonest- are these qualities that are part of a manager’s job description? Now I know what job descriptions I will weed out.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
5:45 I want to help them, but they don’t want to be helped because their big egos get in the way. Very well, then, suit yourselves. And talking about being rude- isn’t it rude to test people in a covert manner? Isn’t permission based on transparency the thing that makes the difference between pentesting and hacking? Why is psychological hacking, then, allowed? What are the candidates- criminals interrogated by FBI?
@macleank9678
@macleank9678 Год назад
Can we get some CRISC videos from you? thanks
@GwenBettwyTSI
@GwenBettwyTSI Год назад
Maybe someday. I have never done anything with CRISC. I do have a risk book in the works... so maybe someday.
@sanchitjain0007
@sanchitjain0007 9 месяцев назад
Is it just me or it goes blank after 51:00?
@Stratognome
@Stratognome 8 месяцев назад
Yes it does.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
23:05 Accessibility or marketing? 😏 Up to this point you haven’t said anything confidential.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
8:15 Lady, that’s nonsense. Had you discussed something confidential in this call you would have not allowed just everyone to join in, uploaded it on RU-vid, etc.
@claudiamanta1943
@claudiamanta1943 5 месяцев назад
4:02 No. If you care about people, you care about your colleagues, your clients, and about your dumbarse CEO who has no clue about anything but the bank accounts and ‘networking’ whilst playing golf with other muppets in high positions. If you do care about people, you will do the technical bits related to security. If you don’t, you won’t. Even worse, not cultivating this attitude leads to inside threats. It’s an idiotic and myopic management strategy.
@RonWonkers
@RonWonkers 9 месяцев назад
Thanks for the video! I passed CISSP 1st try on 140 questions
@GwenBettwyTSI
@GwenBettwyTSI 9 месяцев назад
Congratulations!!!!!
Далее
How to "Think like a Manager" for the CISSP Exam
34:20
How to Think Like a Manager in Project Management
5:33
Mastering CISM: Thinking Like a Manager for CISM Success
1:07:41
Important Tips for CISSP Exam Mistakes you must avoid
15:27
North Korea - Faces of an Alienated Country
21:55
Просмотров 2,9 млн
How To Think Like A Manager - CISSP Domain 1
1:11:32
Просмотров 11 тыс.