This week has been a wild ride on the CompTIA Security+ train! We dove into Lessons 7 through 11, and let me tell you—some parts made perfect sense, and others caused a full-on buffer overflow… but nothing got written to memory. So here I am, rebooting my brain and trying again. Progress is progress, right?
Lesson 7: Resiliency and Site Security Concepts
This one felt quite logical, which was a great way to ease into the madness of the week. We talked about:
- Asset Management – Basically knowing what tech stuff you have and not losing track of it (I’m already guilty of losing USB sticks, so… yeah).
- Redundancy – Because having just one thing working is never enough. Think RAID, failovers, load balancing—basically backup plans for your backup plans.
- Physical Security – CCTV, access cards, guards… like Mission Impossible, but with more paperwork.
- Data Protection – Encryption and backups so your data doesn’t ghost you in a crisis.
- Site Security – Location, environmental hazards, emergency plans. Not just a fire drill, it’s a lifestyle.
Lesson 8: Vulnerability Management
Ah, vulnerability… not just an emotional state anymore!
- Vulnerability Scanning and Pen Testing made me feel like a cyber spy—until I realized the computer was smarter than me.
- Patch management – the endless game of update and pray
- Risk Assessment & Remediation – Learning to fix what’s actually likely to break… not just what looks the scariest.
Lesson 9: Network Security Capabilities
This one made me feel like I was learning wizardry.
- Firewalls and VPNs?
- IDS/IPS, NAC, and segmentation?
Lesson 10: Endpoint Security Capabilities
Everything with a screen needs protection.
- Antivirus and Host Firewalls – Your basic bouncers for dodgy downloads.
- Whitelisting & MDM – Only letting the good stuff run and controlling mobile chaos.
- Patch Management (again!) – Still chasing those software updates like they owe me money.
Lesson 11: Application Security Capabilities
And then came the monster: Application Security.
- Secure Coding, APIs, and WAFs – All of this felt like being dropped into a hacker movie. I now know enough to be dangerous… mostly to myself. 😅
Final Thoughts
Lessons 7–10 felt like building blocks—things I could actually piece together and say, “Hey, that makes sense.”
Lesson 11? That one caused a brain fart. It’s going to take me at least two weeks to digest.
But I’m here, I’m learning, and I’m starting to see how all these moving parts fit together in cybersecurity. That said, don’t expect me to build a secure API just yet.
Lets hope Professor Messer and his YouTube videos can save me this week.
Until next time, I’m…
Stumbling through cybersecurity, because knowledge is power… once I figure it out!