Passed CySa+

in CySA+
No joke this exam was rough! I would say it wasn't as hard as GCIH but definitely harder than CEH. For those that wondering about the amount of log questions, I would honestly say a majority of the exam was riddled with logs but they weren't too difficult. The SIMS I saved for last after glancing the first question for about a minute. I would definitely take everyone else's advice on this. I had just recently passed CEH a couple weeks ago and I was determined to take this exam. Without going into specifics about the test, I would say look over snort rules, incident response procedures, ASCII. I had used the Sybex book as my main resource to study and I had taken the udemy practice test. I also glanced over the All in one but that one only helped with the log review. I was constantly reviewing what everyone had used to study or what they ran into and that also helped considerably. Next up GSNA and Linux +!
Goals: PNPT; OSCP; GPYC; GSE
Comments
Apparently not as you are not the first to admit this exam ended up being harder than anticipated.
Also, thanks for the incident response, ASCII, and Snort rules tips.
In my opinion, there seems to be some herd journalism going on among the three CySA+ study book authors and the Udemy courses (exception to this being the Lakhani/Muniz LiveLessons course). What I mean is that one author wrote something, and all the other authors "sheep" that same point into their version of the book, without coming up with their own unique spin on it.
I've seen some course content that is almost word for word echoed in another course's content, right down to getting the specs. wrong.
And then for some reason there are a dozen or so acronyms in the CySA+ objectives that aren't in any of three books. So your advice on Snort and ASCII is much appreciated.
Security+, eJPT, CySA+, PenTest+,
Cisco CyberOps, GCIH, VHL,
In progress: OSCP