

Started by reading the Official Study Guide (OSG) -cover to cover and taking notes.The review for all material is in the next sessions (including the links), but my strategy was: Finally, I decided to use the Pomodoro Technique to study because I wanted to make sure I would always be focused on while studying without any distractions. I decided to take the CISSP later in March 2020 and after collecting some material, started studying by April. Study Strategyĭue to Covid-19, I decided to extend my preparation time span, because Belo Horizonte locked down in March and obviously, the exam center was closed, so I would study less per day for more days until the lockdown had finished. This gave me confidence (and the will) to take other certifications.Ĭoming back from vacations, due to the remote work, I decided to take another certification, and I chose CISSP because it is widely accepted as one of the best certifications on security, and the price fitted my personal budget -my employer would not pay for that. Later in 2019, the company gave me training and a voucher to take CompTIA's Security+ exam, which I enrolled in and got the certification in ~1.5 months. Since this company provided me no help for certifications (and they do not care about it), I stayed away from certifications. For 4 years I have worked in security and risk governance and security auditing then moved to lead the security operations team, which is my current position.


Since 2013, I have been working in the information security area for an energy utility. Until here I had ITIL, COBIT, and ISFS certifications. Started working in the IT support area, moved to governance, then moved to another company to work in IT infrastructure, focused on Unix and Windows servers. I am a Brazillian bachelor of computer science living in Brazil, working in IT since 2007. Hope you enjoy this reading and that this post may help someone to grab this certification too. Earlier this year (2020), I decided to give CISSP a try and in the following lines, I describe each step of my journey which includes my background, study strategy, exam experience, the endorsement process, analysis of the material I used, my certification numbers, final notes, and the mind map I created as part of my study strategy. CISSP is one of the most renowned certifications for the information security career and it is said that it is very hard to earn. In this post, I am going to share my personal experience to obtain the CISSP certification.
