Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the ISC Other Certification CSSLP Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam CSSLP Premium Access

View all detail and faqs for the CSSLP exam


809 Students Passed

90% Average Score

90% Same Questions
Viewing page 8 out of 11 pages
Viewing questions 71-80 out of questions
Questions # 71:

Which of the following are examples of passive attacks? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

Dumpster diving

B.

Placing a backdoor

C.

Eavesdropping

D.

Shoulder surfing

Questions # 72:

In digital rights management, the level of robustness depends on the various types of tools and attacks to which they must be resistant or immune. Which of the following types of tools are expensive, require skill, and are not easily available?

Options:

A.

Hand tools

B.

Widely available tools

C.

Specialized tools

D.

Professional tools

Questions # 73:

You work as a security manager for BlueWell Inc. You are performing the external vulnerability testing, or penetration testing to get a better snapshot of your organization's security posture. Which of the following penetration testing techniques will you use for searching paper disposal areas for unshredded or otherwise improperly disposed-of reports?

Options:

A.

Sniffing

B.

Scanning and probing

C.

Dumpster diving

D.

Demon dialing

Questions # 74:

Which of the following components of configuration management involves periodic checks to determine the consistency and completeness of accounting information and to verify that all configuration management policies are being followed?

Options:

A.

Configuration Identification

B.

Configuration Auditing

C.

Configuration Control

D.

Configuration Status Accounting

Questions # 75:

Rob is the project manager of the IDLK Project for his company. This project has a budget of $5,600,000 and is expected to last 18 months. Rob has learned that a new law may affect how the project is allowed to proceed - even though the organization has already invested over $750,000 in the project. What risk response is the most appropriate for this instance?

Options:

A.

Transference

B.

Enhance

C.

Mitigation

D.

Acceptance

Questions # 76:

Mark works as a Network Administrator for NetTech Inc. He wants users to access only those resources that are required for them. Which of the following access control models will he use?

Options:

A.

Discretionary Access Control

B.

Mandatory Access Control

C.

Policy Access Control

D.

Role-Based Access Control

Questions # 77:

Security controls are safeguards or countermeasures to avoid, counteract, or minimize security risks. Which of the following are types of security controls? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

Common controls

B.

Hybrid controls

C.

Storage controls

D.

System-specific controls

Questions # 78:

The Chief Information Officer (CIO), or Information Technology (IT) director, is a job title commonly given to the most senior executive in an enterprise. What are the responsibilities of a Chief Information Officer? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

Facilitating the sharing of security risk-related information among authorizing officials

B.

Preserving high-level communications and working group relationships in an organization

C.

Establishing effective continuous monitoring program for the organization

D.

Proposing the information technology needed by an enterprise to achieve its goals and then working within a budget to implement the plan

Questions # 79:

Which of the following configuration management system processes keeps track of the changes so that the latest acceptable configuration specifications are readily available?

Options:

A.

Configuration Control

B.

Configuration Status and Accounting

C.

Configuration Verification and Audit

D.

Configuration Identification

Questions # 80:

What are the various benefits of a software interface according to the "Enhancing the Development Life Cycle to Produce Secure Software" document? Each correct answer represents a complete solution. Choose three.

Options:

A.

It modifies the implementation of a component without affecting the specifications of the interface.

B.

It controls the accessing of a component.

C.

It displays the implementation details of a component.

D.

It provides a programmatic way of communication between the components that are working with different programming languages.

Viewing page 8 out of 11 pages
Viewing questions 71-80 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.