Hi, I’m Terry. I’m a cybersecurity professional with a real passion for protecting digital environments. I want to make a real difference in information security. My career started in IT, but it didn’t take long to realize cybersecurity was where I was meant to be. I’ve always needed to understand how systems work. More importantly, I want to know how to defend them against people who want to exploit them.
That curiosity led me to pursue the CISSP certification, the gold standard in information security. The road wasn’t easy. Early on, a disappointing boot camp taught me some hard lessons. I learned about due diligence and false promises. I learned to vet who I trust with my time and money. That experience didn’t break me, though. It pushed me to find better resources and ask harder questions. It also pushed me to share my story so others don’t have to learn these lessons the hard way.
I keep learning, whether through formal training, hands-on work, or keeping up with new threats. I care about the ethical and strategic side of this field as much as the technical side. I believe in community, transparency and integrity. My goal has always been to help build a safer, more trustworthy digital world for everyone.
Thank you for following along on this journey. There were plenty of bumps along the way, but I’m proud to say it was all worth it.
Oh, and one more thing. I’m now both a CISSP and an ISSEP. Sometimes the hard road really does lead somewhere great.
My Story
My name is Terry, and I’ve always been passionate about cybersecurity. As a young professional, I wanted a solid foundation in the industry. So I decided to pursue the CISSP certification, the gold standard for information security professionals. I knew it would open doors to better jobs and help me advance my career.
“A lie can travel halfway around the world while the truth is putting on its shoes.”
— often attributed to Mark Twain
After some research, I found a boot camp offered by Infosec Institute. They advertised themselves as an “official ISC2 training partner,” and they promised a comprehensive course that would fully prepare us for the CISSP exam. The icing on the cake was an exam voucher included in the package, plus ONSITE testing on the last day. It all sounded perfect. I paid the high fees and eagerly enrolled in their CISSP boot camp.
But from the moment I arrived, things started to feel off.
The training materials looked outdated, and not in a minor way. I told myself it was probably just the intro content. I figured we’d get to newer material as the week went on. We never did.
When I asked the instructor about it, he gave me a non-answer that made me feel worse for asking. “The fundamentals don’t change.” That was it. The courseware also looked identical to a book I’d already bought on Amazon, and I wasn’t impressed by that book. When I brought that up, the response was just “it’s all the same.” The longer I sat through it, the clearer it became. This course was not even close to what they had advertised.
The real wake-up call came midweek. I was reviewing a practice exam, and one question pointed to ISC2’s official website for training resources. On a whim, I pulled it up and found their list of officially endorsed training partners. My stomach dropped. Infosec Institute wasn’t on it. That same week, I got an email from ISC2 that listed its officially endorsed training partners. Infosec wasn’t on that list either.
I asked the trainer directly. He told me he was an official ISC2 trainer. Then someone else in the class pushed back on that. He quickly changed his answer and said he was “retired” but that it didn’t matter. It very much did matter. On the next break, I confronted the Infosec rep. I got a vague, evasive non-answer that told me everything I needed to know. The rest of the week went exactly how you’d expect. The instructor was unimpressive. He rushed through complex material and lingered on basics everyone already knew. He checked his phone mid-question. Whenever someone asked something hard, the answer was always the same: “that’s beyond the scope of the exam.”
Then came the voucher situation.
One of the main reasons I chose Infosec Institute was the included exam voucher they promised. The CISSP exam isn’t cheap, so that was a big part of my decision. After the boot camp ended, I waited. A few days passed. Then a week. Then another. Nothing.
I started emailing and calling, probably more than they liked, but I was getting anxious. They bounced me around and ignored me. Finally, they came clean. The voucher was only valid if you scheduled your exam during the class itself, and no retakes were allowed. None of that was shared beforehand. It certainly wasn’t in any of the marketing materials I had seen. I was furious.
I wasn’t alone, either. I reached out to others from the class, and everyone was dealing with the same thing. One person couldn’t use his voucher because he needed more time to study before booking the exam. Another woman was especially frustrated. She had asked about the voucher policy before signing up and had been told something completely different. We ended up starting a group chat to share resources and actually prepare for the exam together. That says everything about the value we got from the boot camp itself.
The whole experience felt like a calculated money grab from a company that had no real interest in helping anyone get certified.
This experience taught me something I won’t forget. Do your homework before you trust anyone with your money. No official recognition, outdated materials and shady exam voucher practices left me feeling completely burned. They also set me back in ways that were hard to shake.
But I refused to let it be the end of the story. I treated it as a wake-up call instead. The second time around, I was far more thorough. I verified everything in writing and left nothing to a handshake or a vague promise.
The part I’m most glad I did was contacting ISC2 directly to tell them what happened with Infosec Institute. I ended up talking with someone named Sarah in their certification department. She was exactly the kind of person you hope to find on the other end of that call. She listened to everything and asked for documentation. Then she really went to bat for me. She arranged a completely free exam voucher. It wasn’t their mistake, but they take their training partnerships seriously and wanted to make things right.
That one act of kindness restored my faith in the whole certification process. Sometimes speaking up actually works, and this was one of those times.
I’m sharing my story because I don’t want anyone else to go through what I did. If you’re considering a CISSP boot camp, take the time to check that ISC2 officially endorses the provider. Don’t just take their word for it. Look it up and ask questions. Make sure you know exactly what you’re paying for before you hand over your money.
Your time, money and energy are worth protecting. Misleading marketing and empty promises have derailed more than a few people on this path. That’s frustrating, because it doesn’t have to happen. Do your homework, invest wisely, and trust the process. You’ll get there.
After my rough boot camp with Infosec Institute, I had to go back to square one. I rethought my whole approach to this exam. What worked was simpler than I expected. I used a methodical study plan, one domain at a time, with the right resources.
My Study Strategy
One domain per week. That was the foundation of everything. The CISSP covers an overwhelming amount, and trying to study it all at once just doesn’t work. So I slowed down and gave each domain its own week. That made the material stick instead of blurring together.
The Resources I Used
Official ISC² CISSP Study Guide by Mike Chapple was my anchor. I won’t pretend it was a joy to read. It’s dense, dry and sometimes exhausting, but it’s thorough. If you can push through the slow sections, it covers what you need.
Eleventh Hour CISSP by Eric Conrad was something I picked up closer to exam day, and I’m glad I did. It’s slim and to the point. It’s perfect for a final review when you don’t have time to re-read hundreds of pages.
ITProTV CISSP Course gave me free access to their platform. I want to be upfront about that, but it didn’t change my honest take. I wanted to like it, and I really tried. The explanations felt meandering, and I often came away more confused than when I started. The production was decent, but the content delivery just didn’t work for me.
Destination Certification CISSP MindMap Videos were pretty helpful for seeing how concepts tie together. The textbooks don’t always make that obvious. My only complaint is that the delivery sometimes felt a bit self-congratulatory. That made it harder to stay focused.
Quantum Exams was the real surprise. I usually find practice questions tedious, but these were really good. They’re scenario-based and challenging. They’re built around the management mindset the exam actually tests. Easily my favorite resource.
Boson CISSP Practice Exams came through a coworker who gave me access for a couple of weeks. I was impressed. The questions are well-written. The explanations are detailed enough to actually teach you something, not just confirm you got it right.
Training Camp’s CISSP Mentoring Session was a late addition to my prep. It was one of the most valuable things I did, and it was completely free. It was a focused 8-hour session with about ten other people also working toward the exam. The real-world insight from the instructor and the group was something you can’t get from a book. Their flashcard tracker was also excellent for the final stretch. It gave me the rapid-fire review you need in the days right before you sit down to test.
LearnZapp Official App was my go-to for filling dead time, like commutes, lunch breaks and waiting rooms. The questions are on the easier side, but that’s fine. The app keeps the terminology fresh and the concepts top of mind without feeling like a grind.
Reddit r/cissp kept me going on the hard days. I read about other people’s experiences and picked up study tips. Just knowing others were grinding through the same material made a real difference.
A Note of Gratitude
I also want to thank Training Camp, ITProTV and Boson. They were truly supportive when I reached out about some earlier frustrations. It says a lot about a company when it listens and responds with care instead of brushing you off. That kind of support matters, especially when you’re deep in a stressful certification process.
What Actually Made It Click
The biggest mindset shift for me was accepting what the CISSP really tests. It checks whether you think like a security manager, and memorizing facts won’t get you there. At some point I stopped asking “what’s the right answer?” and started asking “what would be the best call for the organization?” After that, my practice scores improved. The material also started to make more intuitive sense.
I’d also say don’t obsess over your practice test percentages. They matter, but understanding the why behind each concept matters more. If you can explain something clearly without looking at your notes, you’ve got it. If you can’t, that’s where your time should go.
Your background will shape which domains feel natural and which feel brutal. That’s just how this exam works. Lean into the easy ones to build momentum, and be patient with the hard ones. It all comes together eventually.
Reviews
Before you read the reviews below, check these pages. They answer the questions people ask most, with a source for every claim: is Infosec Institute legit?, who owns Infosec Institute?, how the exam pass guarantee really works, why Cengage wrote off Infosec’s goodwill, the best alternatives to Infosec Institute, and what students say on Reddit and PissedConsumer and the BBB.
“I did infosec boot camp for CISSP (work paid for it). It was very underwhelming, the instructor got his CISSP back in 2002 and has been only teaching since. The course material was outdated and the instructor was monotonous when speaking.”
“After the first three days of class we had the first test in which only one person passed the test out of 12 students, this was far below the 93% pass rate advertised.”
“I took a bootcamp course with them and I would avoid them at all costs. Bad experience all around with them. If there are any specific questions I will answer, but suffice it to say once they had my money they did not care about anything else.”