Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the ISC 2 Credentials SSCP Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam SSCP Premium Access

View all detail and faqs for the SSCP exam


739 Students Passed

84% Average Score

91% Same Questions
Viewing page 3 out of 14 pages
Viewing questions 41-60 out of questions
Questions # 41:

Which of the following can be defined as the process of rerunning a portion of the test scenario or test plan to ensure that changes or corrections have not introduced new errors?

Options:

A.

Unit testing

B.

Pilot testing

C.

Regression testing

D.

Parallel testing

Questions # 42:

Which of the following best defines add-on security?

Options:

A.

Physical security complementing logical security measures.

B.

Protection mechanisms implemented as an integral part of an information system.

C.

Layer security.

D.

Protection mechanisms implemented after an information system has become operational.

Questions # 43:

Which of the following is given the responsibility of the maintenance and protection of the data?

Options:

A.

Data owner

B.

Data custodian

C.

User

D.

Security administrator

Questions # 44:

What can be defined as an abstract machine that mediates all access to objects by subjects to ensure that subjects have the necessary access rights and to protect objects from unauthorized access?

Options:

A.

The Reference Monitor

B.

The Security Kernel

C.

The Trusted Computing Base

D.

The Security Domain

Questions # 45:

Who is ultimately responsible for the security of computer based information systems within an organization?

Options:

A.

The tech support team

B.

The Operation Team.

C.

The management team.

D.

The training team.

Questions # 46:

What is RAD?

Options:

A.

A development methodology

B.

A project management technique

C.

A measure of system complexity

D.

Risk-assessment diagramming

Questions # 47:

Which of the following is NOT a common backup method?

Options:

A.

Full backup method

B.

Daily backup method

C.

Incremental backup method

D.

Differential backup method

Questions # 48:

Which of the following is biggest factor that makes Computer Crimes possible?

Options:

A.

The fraudster obtaining advanced training & special knowledge.

B.

Victim carelessness.

C.

Collusion with others in information processing.

D.

System design flaws.

Questions # 49:

Which one of the following represents an ALE calculation?

Options:

A.

single loss expectancy x annualized rate of occurrence.

B.

gross loss expectancy x loss frequency.

C.

actual replacement cost - proceeds of salvage.

D.

asset value x loss expectancy.

Questions # 50:

Which of the following backup sites is the most effective for disaster recovery?

Options:

A.

Time brokers

B.

Hot sites

C.

Cold sites

D.

Reciprocal Agreement

Questions # 51:

When a possible intrusion into your organization's information system has been detected, which of the following actions should be performed first?

Options:

A.

Eliminate all means of intruder access.

B.

Contain the intrusion.

C.

Determine to what extent systems and data are compromised.

D.

Communicate with relevant parties.

Questions # 52:

Which of the following backup methods is most appropriate for off-site archiving?

Options:

A.

Incremental backup method

B.

Off-site backup method

C.

Full backup method

D.

Differential backup method

Questions # 53:

The IP header contains a protocol field. If this field contains the value of 51, what type of data is contained within the ip datagram?

Options:

A.

Transmission Control Protocol (TCP)

B.

Authentication Header (AH)

C.

User datagram protocol (UDP)

D.

Internet Control Message Protocol (ICMP)

Questions # 54:

What can be best defined as the examination of threat sources against system vulnerabilities to determine the threats for a particular system in a particular operational environment?

Options:

A.

Risk management

B.

Risk analysis

C.

Threat analysis

D.

Due diligence

Questions # 55:

All of the following can be considered essential business functions that should be identified when creating a Business Impact Analysis (BIA) except one. Which of the following would not be considered an essential element of the BIA but an important TOPIC to include within the BCP plan:

Options:

A.

IT Network Support

B.

Accounting

C.

Public Relations

D.

Purchasing

Questions # 56:

Which of the following proves or disproves a specific act through oral testimony based on information gathered through the witness's five senses?

Options:

A.

Direct evidence.

B.

Circumstantial evidence.

C.

Conclusive evidence.

D.

Corroborative evidence.

Questions # 57:

Which of the following statements pertaining to disaster recovery planning is incorrect?

Options:

A.

Every organization must have a disaster recovery plan

B.

A disaster recovery plan contains actions to be taken before, during and after a disruptive event.

C.

The major goal of disaster recovery planning is to provide an organized way to make decisions if a disruptive event occurs.

D.

A disaster recovery plan should cover return from alternate facilities to primary facilities.

Questions # 58:

Which approach to a security program ensures people responsible for protecting the company's assets are DRIVING the program?

Options:

A.

The Delphi approach

B.

The top-down approach

C.

The bottom-up approach

D.

The technology approach

Questions # 59:

Which of the following computer recovery sites is only partially equipped with processing equipment?

Options:

A.

hot site

B.

rolling hot site

C.

warm site

D.

cold site

Questions # 60:

Which of the following statements pertaining to quantitative risk analysis is false?

Options:

A.

Portion of it can be automated

B.

It involves complex calculations

C.

It requires a high volume of information

D.

It requires little experience to apply

Viewing page 3 out of 14 pages
Viewing questions 41-60 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.