Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the ISC CISSP Concentrations ISSMP Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam ISSMP Premium Access

View all detail and faqs for the ISSMP exam


700 Students Passed

94% Average Score

95% Same Questions
Viewing page 4 out of 7 pages
Viewing questions 31-40 out of questions
Questions # 31:

Which of the following refers to an information security document that is used in the United States Department of Defense (DoD) to describe and accredit networks and systems?

Options:

A.

SSAA

B.

FITSAF

C.

FIPS

D.

TCSEC

Questions # 32:

Which of the following processes is a structured approach to transitioning individuals, teams, and organizations from a current state to a desired future state?

Options:

A.

Risk management

B.

Configuration management

C.

Change management

D.

Procurement management

Questions # 33:

Which of the following laws enacted in United States makes it illegal for an Internet Service Provider (ISP) to allow child pornography to exist on Web sites?

Options:

A.

Child Pornography Prevention Act (CPPA)

B.

USA PATRIOT Act

C.

Prosecutorial Remedies and Tools Against the Exploitation of Children Today Act (PROTECT Act)

D.

Sexual Predators Act

Questions # 34:

Which of the following statements are true about a hot site? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

It can be used within an hour for data recovery.

B.

It is cheaper than a cold site but more expensive than a worm site.

C.

It is the most inexpensive backup site.

D.

It is a duplicate of the original site of the organization, with full computer systems as well as near-complete backups of user data.

Questions # 35:

Fill in the blank with an appropriate word. _________ are used in information security to formalize security policies.

Options:

A.

Models.

Questions # 36:

Which of the following recovery plans includes specific strategies and actions to deal with specific variances to assumptions resulting in a particular security problem, emergency, or state of affairs?

Options:

A.

Disaster recovery plan

B.

Contingency plan

C.

Continuity of Operations Plan

D.

Business continuity plan

Questions # 37:

Which of the following is the correct order of digital investigations Standard Operating Procedure (SOP)?

Options:

A.

Initial analysis, request for service, data collection, data reporting, data analysis

B.

Initial analysis, request for service, data collection, data analysis, data reporting

C.

Request for service, initial analysis, data collection, data analysis, data reporting

D.

Request for service, initial analysis, data collection, data reporting, data analysis

Questions # 38:

Which of the following access control models are used in the commercial sector? Each correct answer represents a complete solution. Choose two.

Options:

A.

Clark-Biba model

B.

Clark-Wilson model

C.

Bell-LaPadula model

D.

Biba model

Questions # 39:

You work as the Network Administrator for a defense contractor. Your company works with sensitive materials and all IT personnel have at least a secret level clearance. You are still concerned that one individual could perhaps compromise the network (intentionally or unintentionally) by setting up improper or unauthorized remote access. What is the best way to avoid this problem?

Options:

A.

Implement separation of duties.

B.

Implement RBAC.

C.

Implement three way authentication.

D.

Implement least privileges.

Questions # 40:

Which of the following are the common roles with regard to data in an information classification program? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

Editor

B.

Custodian

C.

Owner

D.

Security auditor

E.

User

Viewing page 4 out of 7 pages
Viewing questions 31-40 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.