Pass the Swift Customer Security Programme (CSP) CSP-Assessor Questions and answers with CertsForce

Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions
Questions # 1:

A Swift user uses an application integrating a sFTP client to push files to a service bureau sFTP server What architecture type is the Swift user? (Choose all that apply.)

Question # 1

Options:

A.

A1


B.

B


C.

A3


D.

A4


Expert Solution
Questions # 2:

Can a Swift user choose to implement the security controls (example: logging and monitoring) in systems which are not directly in scope of the CSCE?

Question # 2

Options:

A.

Yes


B.

No


Expert Solution
Questions # 3:

A SWIFT user owns a customer connector and a communication interface. What architecture type is the SWIFT user? (Select the correct answer)

•Swift Customer Security Controls Policy

•Swift Customer Security Controls Framework v2025

•Independent Assessment Framework

•Independent Assessment Process for Assessors Guidelines

•Independent Assessment Framework - High-Level Test Plan Guidelines

•Outsourcing Agents - Security Requirements Baseline v2025

•CSP Architecture Type - Decision tree

•CSP_controls_matrix_and_high_test_plan_2025

•Assessment template for Mandatory controls

•Assessment template for Advisory controls

•CSCF Assessment Completion Letter

•Swift_CSP_Assessment_Report_Template

Options:

A.

A1


B.

A2


C.

A3


D.

A4


Expert Solution
Questions # 4:

How can PKI certificate requests be submitted to SWIFT? (Select the correct answer)

•Connectivity

•Generic

•Products Cloud

•Products OnPrem

•Security

Options:

A.

Using both online and offline methods


B.

Using an online method


C.

Using an offline method


D.

None of the above


Expert Solution
Questions # 5:

In the context of CSP, what type of component is the Alliance Access? (Select the correct answer)

•Connectivity

•Generic

•Products Cloud

•Products OnPrem

•Security

Options:

A.

A Messaging Interface


B.

A Communication Interface


C.

A SWIFT Connector


D.

A Secure Server


Expert Solution
Questions # 6:

Using the outsourcing agent diagram, which components (including the components in SWIFT user premises) must be placed in a secure zone? (Select the correct answer)

•Swift Customer Security Controls Policy

•Swift Customer Security Controls Framework v2025

•Independent Assessment Framework

•Independent Assessment Process for Assessors Guidelines

•Independent Assessment Framework - High-Level Test Plan Guidelines

•Outsourcing Agents - Security Requirements Baseline v2025

•CSP Architecture Type - Decision tree

•CSP_controls_matrix_and_high_test_plan_2025

•Assessment template for Mandatory controls

•Assessment template for Advisory controls

•CSCF Assessment Completion Letter

•Swift_CSP_Assessment_Report_Template

•Next Service Provider(s)

•SWIFT User

•Outsourcing Agent(s)

•Connector*

•SWIFT

•SWIFT network

Options:

A.

Components A, B, and C


B.

All components


C.

Components A, C, D, and E


D.

Components A, C, and D


Expert Solution
Questions # 7:

The SWIFT PKI certificates are used for… (Select the correct answer)

•Connectivity

•Generic

•Products Cloud

•Products OnPrem

•Security

Options:

A.

Asymmetric signing and encryption end to end


B.

Asymmetric signing and encryption end to SWIFT only


C.

Symmetric encryption only


D.

Asymmetric signing only


Expert Solution
Questions # 8:

The Swift secure zone is composed of a Swift connector, a middleware server and a back office system Is the selection of only one of the above components a representative sample based on the High-Level Test Plan (HLTP) guidelines?

Question # 8

Options:

A.

Yes


B.

No


Expert Solution
Questions # 9:

Can an internal audit department submit and approve their Swift user's attestation on the KYC-SA Swift portal?

Question # 9

Options:

A.

Yes, providing this is agreed by the head of IT operations and the CISO


B.

No, this is never an option


C.

Yes, an internal auditor can submit the attestation for approval provided they have the appropriate credentials for switt.com. The CISO remains in charge of the approval of the attestation


D.

Yes, with approval from the Chief auditor


Expert Solution
Questions # 10:

Alliance Lite2 only supports the sending and receiving of FIN messages.

Question # 10

Options:

A.

TRUE


B.

FALSE


Expert Solution
Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions