Pass the ISC CISSP Concentrations ISSMP Questions and answers with CertsForce

Viewing page 1 out of 7 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which of the following access control models are used in the commercial sector? Each correct answer represents a complete solution. Choose two.

Options:

A.

Clark-Biba model


B.

Clark-Wilson model


C.

Bell-LaPadula model


D.

Biba model


Expert Solution
Questions # 2:

Software Development Life Cycle (SDLC) is a logical process used by programmers to develop software. Which of the following SDLC phases meets the audit objectives defined below: System and data are validated. System meets all user requirements. System meets all control requirements.

Options:

A.

Programming and training


B.

Evaluation and acceptance


C.

Definition


D.

Initiation


Expert Solution
Questions # 3:

Which of the following SDLC phases consists of the given security controls. Misuse Case Modeling Security Design and Architecture Review Threat and Risk Modeling Security Requirements and Test Cases Generation

Options:

A.

Design


B.

Maintenance


C.

Deployment


D.

Requirements Gathering


Expert Solution
Questions # 4:

Which of the following processes is described in the statement below? "It is the process of implementing risk response plans, tracking identified risks, monitoring residual risk, identifying new risks, and evaluating risk process effectiveness throughout the project."

Options:

A.

Monitor and Control Risks


B.

Identify Risks


C.

Perform Qualitative Risk Analysis


D.

Perform Quantitative Risk Analysis


Expert Solution
Questions # 5:

Which of the following ports is the default port for Layer 2 Tunneling Protocol (L2TP) ?

Options:

A.

UDP port 161


B.

TCP port 443


C.

TCP port 110


D.

UDP port 1701


Expert Solution
Questions # 6:

Which of the following is a variant with regard to Configuration Management?

Options:

A.

A CI thathas the same name as another CI but shares no relationship.


B.

A CI that particularly refers to a hardware specification.


C.

A CI that has the same essential functionality as another CI but a bit different in some small manner.


D.

A CI that particularly refers to a software version.


Expert Solution
Questions # 7:

Which of the following recovery plans includes specific strategies and actions to deal with specific variances to assumptions resulting in a particular security problem, emergency, or state of affairs?

Options:

A.

Disaster recovery plan


B.

Contingency plan


C.

Continuity of Operations Plan


D.

Business continuity plan


Expert Solution
Questions # 8:

Mark works as a security manager for SoftTech Inc. He is involved in the BIA phase to create a document to be used to help understand what impact a disruptive event would have on the business. The impact might be financial or operational. Which of the following are the objectives related to the above phase in which Mark is involved? Each correct answer represents a part of the solution. Choose three.

Options:

A.

Resource requirements identification


B.

Criticality prioritization


C.

Down-time estimation


D.

Performing vulnerability assessment


Expert Solution
Questions # 9:

You are the Network Administrator for a college. You watch a large number of people (some not even students) going in and out of areas with campus computers (libraries, computer labs, etc.). You have had a problem with laptops being stolen. What is the most cost effective method to prevent this?

Options:

A.

Videosurveillance on all areas with computers.


B.

Use laptop locks.


C.

Appoint a security guard.


D.

Smart card access to all areas with computers.


Expert Solution
Questions # 10:

Which of the following roles is used to ensure that the confidentiality, integrity, and availability of the services are maintained to the levels approved on the Service Level Agreement (SLA)?

Options:

A.

The Service Level Manager


B.

The Configuration Manager


C.

The IT Security Manager


D.

The Change Manager


Expert Solution
Viewing page 1 out of 7 pages
Viewing questions 1-10 out of questions