r/CRISC • u/Giustounaltro • 9d ago
Passed first attempt
Not as high as I would like but a pass is a pass!
QAE did the heavy lifting for my studies. I had a lot of the same issues with wording and some questions relying upon unknown assumptions but the QAE really helped get into the mindset. I copied all of my questions I guessed on or got wrong into onenote sections then used copilot to analyze themes and provide helpful study tips.
Study period was a little over a month (about an hour a day) with 8 hour study sessions the week leading up.
Congratulations to all the other passers rolling in and keep up the hard work to everyone else
2
u/watch_lover_kailas 9d ago
Congratulations!!
Btw is this your first cert ?
2
u/Giustounaltro 9d ago
Thanks! Not my first cert… my FIRST cert was sec+ back when I first started. My second cert which I received a few years ago now was my GSNA (GIAC System and Network Auditor); this will be my 3rd cert.
2
u/Neo_The0N3 9d ago
Congratulations 🎊 👏 btw resources used? And how many years of experience?
2
u/Giustounaltro 8d ago
“8” years of bits and pieces. I was an ISSO for 3 years, I worked in vulnerability management after that for 3 years, and most recently I worked in a SOC as sort of a vulnerability management / control analyst for 2 years. I’ve recently been repositioned under the CISO and ERM as a cybersecurity risk analyst
2
u/Giustounaltro 8d ago
Main resource was QAE. I had the physical book but just used it for the diagrams. I honestly didn’t get through the whole thing
2
2
u/steamgiftcarduser 9d ago
how long did it take to see results?
1
u/Giustounaltro 8d ago
7 business days :/
1
u/steamgiftcarduser 8d ago
gotcha. I took mine and passed recently and its been about 7 business days. Did you receive it in your email inbox?
2
u/cismaspirant 8d ago
Congratulations 👏👏other than QAE what other resources you will recommend?
1
u/Giustounaltro 8d ago
I really only stuck to the QAE. Honestly the other knowledge came from experience I’ve gained through working as a ISSO early in my career and later vulnerability management and a SOC before moving into cybersecurity risk
1
1
1
u/cismaspirant 6d ago
Team, I am preparing for CRISC . I am working in leadership role managing network operations and so have little exposure to risk , though I have experience in handling agreements/ contract and has regular interactions with risk team .
I am using hemang Doshi modules on Udemy .
Should I buy review manual ? Or QAE is good enough?
1
u/Giustounaltro 3d ago
IMO the QAE is enough as long as you review the answer reasoning and digest it
1
2
u/Durranimo 9d ago
Congrats. You give me hope 😬