Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the ISC Other Certification CSSLP Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam CSSLP Premium Access

View all detail and faqs for the CSSLP exam


809 Students Passed

90% Average Score

90% Same Questions
Viewing page 4 out of 11 pages
Viewing questions 31-40 out of questions
Questions # 31:

Which of the following types of attacks occurs when an attacker successfully inserts an intermediary software or program between two communicating hosts?

Options:

A.

Denial-of-service attack

B.

Dictionary attack

C.

Man-in-the-middle attack

D.

Password guessing attack

Questions # 32:

Which of the following persons in an organization is responsible for rejecting or accepting the residual risk for a system?

Options:

A.

Information Systems Security Officer (ISSO)

B.

Designated Approving Authority (DAA)

C.

System Owner

D.

Chief Information Security Officer (CISO)

Questions # 33:

Which of the following terms ensures that no intentional or unintentional unauthorized modification is made to data?

Options:

A.

Non-repudiation

B.

Integrity

C.

Authentication

D.

Confidentiality

Questions # 34:

Which of the following is a standard that sets basic requirements for assessing the effectiveness of computer security controls built into a computer system?

Options:

A.

FITSAF

B.

FIPS

C.

TCSEC

D.

SSAA

Questions # 35:

Digital rights management (DRM) consists of compliance and robustness rules. Which of the following features does the robustness rule have? Each correct answer represents a complete solution. Choose three.

Options:

A.

It specifies the various levels of robustness that are needed for asset security.

B.

It specifies minimum techniques for asset security.

C.

It specifies the behaviors of the DRM implementation and applications accessing the implementation.

D.

It contains assets, such as device key, content key, algorithm, and profiling data.

Questions # 36:

Which of the following types of signatures is used in an Intrusion Detection System to trigger on attacks that attempt to reduce the level of a resource or system, or to cause it to crash?

Options:

A.

Access

B.

Benign

C.

DoS

D.

Reconnaissance

Questions # 37:

The LeGrand Vulnerability-Oriented Risk Management method is based on vulnerability analysis and consists of four principle steps. Which of the following processes does the risk assessment step include? Each correct answer represents a part of the solution. Choose all that apply.

Options:

A.

Remediation of a particular vulnerability

B.

Cost-benefit examination of countermeasures

C.

Identification of vulnerabilities

D.

Assessment of attacks

Questions # 38:

Drop the appropriate value to complete the formula.

Question # 38

Options:

Questions # 39:

Which of the following is a name, symbol, or slogan with which a product is identified?

Options:

A.

Trademark

B.

Copyright

C.

Trade secret

D.

Patent

Questions # 40:

Which of the following is an example of over-the-air (OTA) provisioning in digital rights management?

Options:

A.

Use of shared secrets to initiate or rebuild trust.

B.

Use of software to meet the deployment goals.

C.

Use of concealment to avoid tampering attacks.

D.

Use of device properties for unique identification.

Viewing page 4 out of 11 pages
Viewing questions 31-40 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.