Перейти к содержимому

CISSP Domain 7: Security Operations — All 63 Objectives in 41 Minutes

Secure Path Digital

0:00 / 0:00

CISSP Domain 7: Security Operations — All 63 Objectives in 41 Minutes

52 просмотра · 13 дней назад
Secure Path Digital
13 подписчиков
52 просмотра · 13 дней назад
All 63 CISSP Domain 7 objectives — Security Operations — complete, in 41 minutes. Every leaf of the ISC2 2024 exam outline, one idea at a time. This is the whole of CISSP Domain 7, Security Operations, in one sitting. It is 13% of the exam. The domain covers investigations and forensics, detection and monitoring, incident response, and recovering the business afterwards. Every chapter below is one leaf of the ISC2 2024 exam outline, explained in about half a minute with an animated diagram. Jump straight to an objective you are weak on, or let the whole domain run as a review before a practice exam. Who it is for: candidates working the 2024 outline domain by domain, and practitioners who want a fast, accurate refresher without sitting through a full course. Covered in this video: Evidence Collection and Handling, Reporting and Documentation, Investigative Techniques, Digital Forensics Tools, Tactics and Procedures, Artifacts — Data, Computer, Network and Mobile, Intrusion Detection and Prevention Systems, Security Information and Event Management, Security Orchestration, Automation and Response, and 55 more. Chapters: 0:00 Domain 7: Security Operations 0:19 Understand and comply with investigations 0:29 Evidence Collection and Handling 1:05 Reporting and Documentation 1:42 Investigative Techniques 2:23 Digital Forensics Tools, Tactics and Procedures 2:59 Artifacts — Data, Computer, Network and Mobile 3:36 Conduct logging and monitoring activities 3:47 Intrusion Detection and Prevention Systems 4:24 Security Information and Event Management 4:56 Security Orchestration, Automation and Response 5:30 Continuous Monitoring and Tuning 6:09 Egress Monitoring 6:45 Log Management 7:21 Threat Intelligence 7:58 User and Entity Behavior Analytics 8:35 Perform configuration management (CM) (e.g., provisioning, baselining, 8:46 Configuration Management 9:20 Apply foundational security operations concepts 9:31 Need-to-Know and Least Privilege 10:10 Segregation of Duties 10:49 Privileged Account Management 11:22 Job Rotation 12:00 Service-Level Agreements 12:36 Apply resource protection 12:46 Media Management 13:24 Media Protection Techniques 13:57 Data at Rest and Data in Transit 14:33 Conduct incident management 14:44 Incident Detection 15:17 Incident Response 15:55 Incident Mitigation 16:32 Incident Reporting 17:07 Incident Recovery 17:41 Incident Remediation 18:16 Lessons Learned 18:46 Operate and maintain detection and preventative measures 18:56 Firewalls 19:28 Intrusion Detection and Prevention Deployment 20:04 Allowlisting and Blocklisting 20:41 Third-Party Provided Security Services 21:18 Sandboxing 21:53 Honeypots and Honeynets 22:24 Anti-Malware 23:03 Machine Learning and AI Based Tools 23:39 Implement and support patch and vulnerability management 23:49 Patch and Vulnerability Management 24:28 Understand and participate in change management processes 24:39 Change Management Processes 25:20 Implement recovery strategies 25:30 Backup Storage Strategies 26:00 Recovery Site Strategies 26:36 Multiple Processing Sites 27:10 Resilience, High Availability, QoS and Fault Tolerance 27:52 Implement disaster recovery (DR) processes 28:02 Disaster Recovery Response and Activation 28:36 Disaster Recovery Personnel 29:08 Disaster Recovery Communications 29:45 Damage Assessment 30:22 Restoration and Return to Normal 30:58 Disaster Recovery Training and Awareness 31:31 Disaster Recovery Lessons Learned 32:07 Test disaster recovery plan (DRP) 32:18 Read-Through and Tabletop Exercises 32:48 Walkthrough and Structured Review 33:22 Simulation Exercises 33:57 Parallel Testing 34:34 Full Interruption Testing 35:08 Test Communications and Status Reporting 35:46 Participate in Business Continuity (BC) planning and exercises 35:56 Business Continuity Planning and Exercises 36:37 Implement and manage physical security 36:47 Perimeter Security Controls 37:20 Internal Physical Security Controls 37:56 Address personnel safety and security concerns 38:06 Travel Security 38:46 Security Training and Awareness for Personnel 39:17 Emergency Management 39:56 Duress Systems Study guide, practice exam and revision sheets for this domain: https://learn.securepathdigital.net/ ▶ Subscribe:    / @securepathdigital   Secure Path Digital — CISSP micro-lessons and full domain reviews, built objective by objective from the ISC2 2024 exam outline. #CISSP #CISSPDomain7 #SecurityOperations #IncidentResponse #ISC2 Part of the Secure Path Digital CISSP path — a micro-lesson for every objective in the ISC2 2024 exam outline, one idea at a time. The rest of the path: Domain 1 Security and Risk Management · Domain 2 Asset Security · Domain 3 Security Architecture and Engineering · Domain 4 Communication and Network Security · Domain 5 Identity and Access Management (IAM) · Domain 6 Se…