CISSP Domain 7: Security Operations — All 63 Objectives in 41 Minutes
Secure Path Digital
0:00 / 0:00
CISSP Domain 7: Security Operations — All 63 Objectives in 41 Minutes
52 просмотра · 13 дней назад
Secure Path Digital
13 подписчиков
52 просмотра · 13 дней назад
All 63 CISSP Domain 7 objectives — Security Operations — complete, in 41 minutes. Every leaf of the ISC2 2024 exam outline, one idea at a time.
This is the whole of CISSP Domain 7, Security Operations, in one sitting. It is 13% of the exam. The domain covers investigations and forensics, detection and monitoring, incident response, and recovering the business afterwards.
Every chapter below is one leaf of the ISC2 2024 exam outline, explained in about half a minute with an animated diagram. Jump straight to an objective you are weak on, or let the whole domain run as a review before a practice exam.
Who it is for: candidates working the 2024 outline domain by domain, and practitioners who want a fast, accurate refresher without sitting through a full course.
Covered in this video: Evidence Collection and Handling, Reporting and Documentation, Investigative Techniques, Digital Forensics Tools, Tactics and Procedures, Artifacts — Data, Computer, Network and Mobile, Intrusion Detection and Prevention Systems, Security Information and Event Management, Security Orchestration, Automation and Response, and 55 more.
Chapters:
0:00 Domain 7: Security Operations
0:19 Understand and comply with investigations
0:29 Evidence Collection and Handling
1:05 Reporting and Documentation
1:42 Investigative Techniques
2:23 Digital Forensics Tools, Tactics and Procedures
2:59 Artifacts — Data, Computer, Network and Mobile
3:36 Conduct logging and monitoring activities
3:47 Intrusion Detection and Prevention Systems
4:24 Security Information and Event Management
4:56 Security Orchestration, Automation and Response
5:30 Continuous Monitoring and Tuning
6:09 Egress Monitoring
6:45 Log Management
7:21 Threat Intelligence
7:58 User and Entity Behavior Analytics
8:35 Perform configuration management (CM) (e.g., provisioning, baselining,
8:46 Configuration Management
9:20 Apply foundational security operations concepts
9:31 Need-to-Know and Least Privilege
10:10 Segregation of Duties
10:49 Privileged Account Management
11:22 Job Rotation
12:00 Service-Level Agreements
12:36 Apply resource protection
12:46 Media Management
13:24 Media Protection Techniques
13:57 Data at Rest and Data in Transit
14:33 Conduct incident management
14:44 Incident Detection
15:17 Incident Response
15:55 Incident Mitigation
16:32 Incident Reporting
17:07 Incident Recovery
17:41 Incident Remediation
18:16 Lessons Learned
18:46 Operate and maintain detection and preventative measures
18:56 Firewalls
19:28 Intrusion Detection and Prevention Deployment
20:04 Allowlisting and Blocklisting
20:41 Third-Party Provided Security Services
21:18 Sandboxing
21:53 Honeypots and Honeynets
22:24 Anti-Malware
23:03 Machine Learning and AI Based Tools
23:39 Implement and support patch and vulnerability management
23:49 Patch and Vulnerability Management
24:28 Understand and participate in change management processes
24:39 Change Management Processes
25:20 Implement recovery strategies
25:30 Backup Storage Strategies
26:00 Recovery Site Strategies
26:36 Multiple Processing Sites
27:10 Resilience, High Availability, QoS and Fault Tolerance
27:52 Implement disaster recovery (DR) processes
28:02 Disaster Recovery Response and Activation
28:36 Disaster Recovery Personnel
29:08 Disaster Recovery Communications
29:45 Damage Assessment
30:22 Restoration and Return to Normal
30:58 Disaster Recovery Training and Awareness
31:31 Disaster Recovery Lessons Learned
32:07 Test disaster recovery plan (DRP)
32:18 Read-Through and Tabletop Exercises
32:48 Walkthrough and Structured Review
33:22 Simulation Exercises
33:57 Parallel Testing
34:34 Full Interruption Testing
35:08 Test Communications and Status Reporting
35:46 Participate in Business Continuity (BC) planning and exercises
35:56 Business Continuity Planning and Exercises
36:37 Implement and manage physical security
36:47 Perimeter Security Controls
37:20 Internal Physical Security Controls
37:56 Address personnel safety and security concerns
38:06 Travel Security
38:46 Security Training and Awareness for Personnel
39:17 Emergency Management
39:56 Duress Systems
Study guide, practice exam and revision sheets for this domain: https://learn.securepathdigital.net/
▶ Subscribe: / @securepathdigital
Secure Path Digital — CISSP micro-lessons and full domain reviews, built objective by objective from the ISC2 2024 exam outline.
#CISSP #CISSPDomain7 #SecurityOperations #IncidentResponse #ISC2
Part of the Secure Path Digital CISSP path — a micro-lesson for every objective in the ISC2 2024 exam outline, one idea at a time.
The rest of the path: Domain 1 Security and Risk Management · Domain 2 Asset Security · Domain 3 Security Architecture and Engineering · Domain 4 Communication and Network Security · Domain 5 Identity and Access Management (IAM) · Domain 6 Se…