Few other CISA Feedbacks.
Читать полностью…Candidate received the official Score to pass the exam CISA.
Читать полностью…Hello friends, I am looking for ISO 27001 and CISA material for study and exam practice. If anyone could share the same I will be greatly obliged.
Читать полностью…I’m looking for ISO 37000 & ISO 31000 standard material.
Читать полностью…Please someone should help me with CISA Manual 28th edition.
Читать полностью…Hi. Any cism material can share ?
Читать полностью…Creating a Disaster Recovery (DR) plan for Industrial Control Systems (ICS) and Operational Technology (OT) environments requires a careful blend of IT practices and specialized measures for critical infrastructure. Here’s an outline for an ICS/OT DR plan:
### 1. Risk Assessment and Business Impact Analysis (BIA)
- Identify critical systems and assets.
- Assess the potential impacts of disruptions (e.g., downtime, safety hazards).
- Classify risks specific to ICS/OT, such as cyber-attacks, equipment failures, and natural disasters.
### 2. Define Recovery Objectives
- Recovery Time Objective (RTO): Determine the maximum acceptable downtime for critical ICS/OT operations.
- Recovery Point Objective (RPO): Specify acceptable data loss levels to determine backup frequency.
### 3. Inventory Management
- Maintain an up-to-date inventory of all hardware, software, network configurations, and firmware versions.
- Include contact information for vendors and partners involved in the maintenance of critical components.
### 4. Network Segmentation and Backup Strategies
- Segment ICS/OT networks from corporate IT environments to reduce the risk of lateral attacks.
- Regularly backup configurations, system images, and key data. Ensure that backups are isolated, immutable, and tested frequently.
### 5. Redundancy and Spare Parts Management
- Establish redundancy for critical components (e.g., servers, network equipment).
- Keep spare parts in stock, especially for proprietary hardware, to ensure quick replacement.
### 6. Incident Response Integration
- Develop and integrate incident response procedures specific to ICS/OT incidents.
- Include collaboration between IT, engineering teams, and third parties.
### 7. Recovery Strategies and Procedures
- Failover Systems: Set up failover mechanisms for critical systems (such as redundant PLCs and HMIs).
- Cold, Warm, or Hot Sites: Determine if a secondary location is required and at what readiness level.
- Manual Operations: Define manual processes to keep operations running if automation fails, ensuring staff are trained in such procedures.
### 8. Testing and Drills
- Conduct regular DR testing, including both IT and OT staff. This can include table-top exercises and real-time simulations.
- Test failover systems, backups, manual procedures, and cross-department coordination to ensure readiness.
### 9. Communication Plan
- Define an ICS/OT-specific communication plan during incidents, addressing both internal stakeholders and external entities (e.g., regulators, partners).
- Ensure communication methods are resilient to a cyber-incident (e.g., use offline radios or secured communication channels).
### 10. Roles and Responsibilities
- Assign DR roles, including responsibilities for both IT and engineering staff.
- Establish a command-and-control hierarchy for recovery coordination.
### 11. Post-Recovery Actions
- Conduct post-recovery analysis to determine causes and improve the DR plan.
- Implement lessons learned, update the recovery plan, and train staff based on observed gaps.
### 12. Compliance and Documentation
- Ensure compliance with industry standards (e.g., NIST SP 800-82, IEC 62443).
- Maintain thorough documentation of all DR procedures, configurations, and asset lists.
Creating a DR plan for ICS/OT requires consideration of both cyber threats and physical disruptions, along with a focus on ensuring continuity of critical operations in a safe manner.
Latest cbk edition if anyone has this
Читать полностью…Please, anyone with latest material on Certified in Governance of Enterprise IT ?
Читать полностью…Anyone has cissp 10th edition?
Читать полностью…CISA 28th edition review manual available for download anywhere please?
Читать полностью…Hi someone have de pdf of COBIT for Devops Audit Program
Читать полностью…I meant study material
Читать полностью…Did anyone has the latest CISA study pack?
Читать полностью…Hi, does anyone have a pdf of PMP exam prep simplified book by Andrew Ramdayal? Please let me know. Thanks
Читать полностью…Certificate as well.
Читать полностью…Another SY0-701 Feedback from 9th October.
Читать полностью…Any one holds CEH material?
Читать полностью…Any crisc latest materials ?
Читать полностью…After 7th, 10th, 17th & 22nd August then 5th, 7th September another CISA Feedback from the candidate cleared the exam most recently on 5th October preparing all these new real exam actual questions and answers after changes in the syllabus and exam on 1st August.
All the questions were same in the exam as it's word to word exactly and he passed the exam to preparing these questions and answers well by himself considering them his study plans.
Ping me personally for more details about not only for CISA but CISM, CRISC, CGEIT, CDPSE, CompTIA, AWS, Azure, GCP, ITIL4, PMP and many others.
More than 7 feedbacks alone for CISA from 1st August till date.
More than 6 CISM Feedbacks from 1st August and more than 5 for CRISC.
Candidates are preparing these questions and answers considering them as thier study plans and passing their exams within 10 to 15 days by themselves within thier 1st attempts.
Ping me personally for more details.
Another CISM Feedback from the candidate cleared the exam preparing all these new real exam actual questions and answers as all the questions were same in the exam as it's word to word exactly and she could able to pass the exam within few days just to prepare these questions and answers only properly considering them as her study plans.
She passed the exam yesterday on 5th October.
Ping me personally for more details about exam questions and answers for any Isaca or other exams to pass your exams preparing them and writing it yourself to pass successfully within your 1st attempts.
Hey! Anyone has guidelines for a disaster recovery plan in ICS/OT?
Читать полностью…Your assistance will be greatly appreciated
Читать полностью…Can anyone give me an example of programmable automated control?
Читать полностью…Another CS0-003 & SY0-701 Feedback.
Читать полностью…Anyone has a template for AI policy?
Читать полностью…Yes, if anyone has it please share
Читать полностью…Please can I get latest CISM study pack 🙏🙏🙏
Читать полностью…Interested too, kindly share
Читать полностью…Another CISM Feedback from 28th September.
Читать полностью…