The ThorTeaches CISSP, CISM, and CC blog and news!

orange-underline-thorteaches-cissp-cism-cc-ccsp-security-training

Get certification news, updates, tips, tricks, sales, and much more!

CISSP – Need to know, least privilege and objects/subjects.

Least Privilege and Need to know. Least Privilege – (Minimum Necessary Access) Give users/systems exactly the access they need, no more, no less. Need to know – Even if you have access, if you do not need to know, then you should not access the data. Non-repudiation. A user can not deny having performed a certain action. This uses both Authentication and Integrity. Subject and Object. Subject – (Active) Most often users, but can also be programs – Subject manipulates Object. Object – (Passive) Any passive data (both physical paper and data) – Object is manipulated by Subject. Some can ...
CISSP - IAAA (Identification and Authentication, Authorization and Accountability)

CISSP – IAAA (Identification and Authentication, Authorization and Accountability)

Identification: Your name, username, ID number, employee number, SSN etc. “I am Thor”. Authentication: “Prove you are Thor”. – Should ...
CISSP – the CIA Triad and its opposites.

CISSP – the CIA Triad and its opposites.

Confidentiality, Integrity and Availability Finding the right mix of Confidentiality, Integrity and Availability is a balancing act. This is really ...
CISSP – the CIA Triad - Availability!

CISSP – the CIA Triad – Availability!

We want to keep our System and Data available. We use: IPS/IDS. Patch Management. Redundancy on Hardware Power (Multiple Power ...
  • 34 hours of CISSP videos
  • 5,000+ CISSP questions 625 Hard questions
    750 Complex questions
    3,250 Easy/Mid questions
    - Both Exam mode and Per-Domain
    201 Major Topic questions
    240 End of Domain questions
  • A 300-page CISSP study guide
  • 2,800 Upgraded CISSP Flashcards Use them from anywhere, on any device, at any time (web, Android, iOS apps).
    Automated reminders, progress tracking, optimized spaced repetitions, confidence-based algorithm.
  • 120-page quick sheets
  • CISSP Mnemonics
  • A CISSP study plan
  • A 2,500-page CISSP Glossary
  • The 24/7 CISSP ThorBot (chatbot)
  • Subtitles English, Spanish (Latin America), Portuguese (Brazil), French, Arabic, Chinese, Japanese, and Hindi
  • Lifetime or 12-months access
  • 32 hours of CISM videos
  • 900 CISM questions
  • A 200-page CISM study guide
  • CISM Mnemonics
  • A CISM study plan
  • A 2,500-page CISM Glossary
  • The 24/7 CISM ThorBot (chatbot)
  • 2,500 CISM Flashcards
  • Subtitles English, Spanish (Latin America), Portuguese (Brazil), French, Arabic, Chinese, Japanese, and Hindi
  • Lifetime or 12-months access
  • 17 hours of CC videos
  • 1,700+ CC questions
  • A 120-page CC study guide
  • CC Mnemonics
  • A CC study plan
  • A 2,500-page CC Glossary
  • The 24/7 CC ThorBot (chatbot)
  • 2,500 CC Flashcards
  • Subtitles English, Spanish (Latin America), Portuguese (Brazil), French, Arabic, Chinese, Japanese, and Hindi
  • Lifetime or 12-months access

LIVE!!

Our Upgraded CISSP Flashcards are OUT!

15% off Launch SALE!

  • 2,800+ Flashcards from all 8 CISSP domains
  • Study from anywhere on any device at any time (web, Android, iOS)
  • Learn more in less time with optimized spaced repetitions
  • Focus on your weak areas first with the confidence-based algorithm
  • Do short 10-term sessions or longer ones as they match your schedule
  • Strengthen your long‑term memory using active recall with immediate answer reveal and self‑rating
  • Track your progress instantly - Mastery %, Confidence Gained, and Cards Studied update after each round
  • Keep motivation high - Instant feedback, progress meters, variable rewards, and social leaderboards
  • Stay on schedule with automated study reminders
Brainscape_s CISSP mobile dashboard