Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the ISC Other Certification CSSLP Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam CSSLP Premium Access

View all detail and faqs for the CSSLP exam


809 Students Passed

90% Average Score

90% Same Questions
Viewing page 9 out of 11 pages
Viewing questions 81-90 out of questions
Questions # 81:

The Phase 3 of DITSCAP C&A is known as Validation. The goal of Phase 3 is to validate that the preceding work has produced an IS that operates in a specified computing environment. What are the process activities of this phase? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

Certification and accreditation decision

B.

Continue to review and refine the SSAA

C.

Perform certification evaluation of the integrated system

D.

System development

E.

Develop recommendation to the DAA

Questions # 82:

Which of the following models manages the software development process if the developers are limited to go back only one stage to rework?

Options:

A.

Waterfall model

B.

Spiral model

C.

RAD model

D.

Prototyping model

Questions # 83:

Which of the following security models focuses on data confidentiality and controlled access to classified information?

Options:

A.

Clark-Wilson model

B.

Biba model

C.

Take-Grant model

D.

Bell-La Padula model

Questions # 84:

The service-oriented modeling framework (SOMF) introduces five major life cycle modeling activities that drive a service evolution during design-time and run-time. Which of the following activities integrates SOA software assets and establishes SOA logical environment dependencies?

Options:

A.

Service-oriented discovery and analysis modeling

B.

Service-oriented business integration modeling

C.

Service-oriented logical architecture modeling

D.

Service-oriented logical design modeling

Questions # 85:

Which of the following statements about the integrity concept of information security management are true? Each correct answer represents a complete solution. Choose three.

Options:

A.

It ensures that unauthorized modifications are not made to data by authorized personnel or processes.

B.

It determines the actions and behaviors of a single individual within a system

C.

It ensures that internal information is consistent among all subentities and also consistent with the real-world, external situation.

D.

It ensures that modifications are not made to data by unauthorized personnel or processes.

Questions # 86:

Which of the following DoD policies establishes policies and assigns responsibilities to achieve DoD IA through a defense-in-depth approach that integrates the capabilities of personnel, operations, and technology, and supports the evolution to network-centric warfare?

Options:

A.

DoDI 5200.40

B.

DoD 8500.1 Information Assurance (IA)

C.

DoD 8510.1-M DITSCAP

D.

DoD 8500.2 Information Assurance Implementation

Questions # 87:

The NIST ITL Cloud Research Team defines some primary and secondary technologies as the fundamental elements of cloud computing in its "Effectively and Securely Using the Cloud Computing Paradigm" presentation. Which of the following technologies are included in the primary technologies? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

Web application framework

B.

Free and open source software

C.

SOA

D.

Virtualization

Questions # 88:

What NIACAP certification levels are recommended by the certifier? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

Comprehensive Analysis

B.

Maximum Analysis

C.

Detailed Analysis

D.

Minimum Analysis

E.

Basic Security Review

F.

Basic System Review

Questions # 89:

You are the project manager of the GHY project for your organization. You are about to start the qualitative risk analysis process for the project and you need to determine the roles and responsibilities for conducting risk management. Where can you find this information?

Options:

A.

Risk register

B.

Staffing management plan

C.

Risk management plan

D.

Enterprise environmental factors

Questions # 90:

The rights of an author or a corporation to make profit from the creation of their products (such as software, music, etc.) are protected by the Intellectual Property law. Which of the following are the components of the Intellectual Property law? Each correct answer represents a part of the solution. Choose two.

Options:

A.

Trademark law

B.

Industrial Property law

C.

Copyright law

D.

Patent law

Viewing page 9 out of 11 pages
Viewing questions 81-90 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.