Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the ISC 2 Credentials SSCP Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam SSCP Premium Access

View all detail and faqs for the SSCP exam


739 Students Passed

84% Average Score

91% Same Questions
Viewing page 9 out of 14 pages
Viewing questions 161-180 out of questions
Questions # 161:

What would be the name of a Logical or Virtual Table dynamically generated to restrict the information a user can access in a database?

Options:

A.

Database Management system

B.

Database views

C.

Database security

D.

Database shadowing

Questions # 162:

Which integrity model defines a constrained data item, an integrity verification procedure and a transformation procedure?

Options:

A.

The Take-Grant model

B.

The Biba integrity model

C.

The Clark Wilson integrity model

D.

The Bell-LaPadula integrity model

Questions # 163:

Kerberos can prevent which one of the following attacks?

Options:

A.

tunneling attack.

B.

playback (replay) attack.

C.

destructive attack.

D.

process attack.

Questions # 164:

What is the main focus of the Bell-LaPadula security model?

Options:

A.

Accountability

B.

Integrity

C.

Confidentiality

D.

Availability

Questions # 165:

This baseline sets certain thresholds for specific errors or mistakes allowed and the amount of these occurrences that can take place before it is considered suspicious?

Options:

A.

Checkpoint level

B.

Ceiling level

C.

Clipping level

D.

Threshold level

Questions # 166:

In the context of access control, locks, gates, guards are examples of which of the following?

Options:

A.

Administrative controls

B.

Technical controls

C.

Physical controls

D.

Logical controls

Questions # 167:

Pin, Password, Passphrases, Tokens, smart cards, and biometric devices are all items that can be used for Authentication. When one of these item listed above in conjunction with a second factor to validate authentication, it provides robust authentication of the individual by practicing which of the following?

Options:

A.

Multi-party authentication

B.

Two-factor authentication

C.

Mandatory authentication

D.

Discretionary authentication

Questions # 168:

In the context of Biometric authentication, what is a quick way to compare the accuracy of devices. In general, the device that have the lowest value would be the most accurate. Which of the following would be used to compare accuracy of devices?

Options:

A.

the CER is used.

B.

the FRR is used

C.

the FAR is used

D.

the FER is used

Questions # 169:

Which access control model is also called Non Discretionary Access Control (NDAC)?

Options:

A.

Lattice based access control

B.

Mandatory access control

C.

Role-based access control

D.

Label-based access control

Questions # 170:

Passwords can be required to change monthly, quarterly, or at other intervals:

Options:

A.

depending on the criticality of the information needing protection

B.

depending on the criticality of the information needing protection and the password's frequency of use

C.

depending on the password's frequency of use

D.

not depending on the criticality of the information needing protection but depending on the password's frequency of use

Questions # 171:

Which of the following is the FIRST step in protecting data's confidentiality?

Options:

A.

Install a firewall

B.

Implement encryption

C.

Identify which information is sensitive

D.

Review all user access rights

Questions # 172:

Identification and authentication are the keystones of most access control systems. Identification establishes:

Options:

A.

User accountability for the actions on the system.

B.

Top management accountability for the actions on the system.

C.

EDP department accountability for the actions of users on the system.

D.

Authentication for actions on the system

Questions # 173:

The throughput rate is the rate at which individuals, once enrolled, can be processed and identified or authenticated by a biometric system. Acceptable throughput rates are in the range of:

Options:

A.

100 subjects per minute.

B.

25 subjects per minute.

C.

10 subjects per minute.

D.

50 subjects per minute.

Questions # 174:

Which type of attack involves impersonating a user or a system?

Options:

A.

Smurfing attack

B.

Spoofing attack

C.

Spamming attack

D.

Sniffing attack

Questions # 175:

The end result of implementing the principle of least privilege means which of the following?

Options:

A.

Users would get access to only the info for which they have a need to know

B.

Users can access all systems.

C.

Users get new privileges added when they change positions.

D.

Authorization creep.

Questions # 176:

Which of the following is most appropriate to notify an internal user that session monitoring is being conducted?

Options:

A.

Logon Banners

B.

Wall poster

C.

Employee Handbook

D.

Written agreement

Questions # 177:

In the Bell-LaPadula model, the Star-property is also called:

Options:

A.

The simple security property

B.

The confidentiality property

C.

The confinement property

D.

The tranquility property

Questions # 178:

What is Kerberos?

Options:

A.

A three-headed dog from the egyptian mythology.

B.

A trusted third-party authentication protocol.

C.

A security model.

D.

A remote authentication dial in user server.

Questions # 179:

Which of the following is most appropriate to notify an external user that session monitoring is being conducted?

Options:

A.

Logon Banners

B.

Wall poster

C.

Employee Handbook

D.

Written agreement

Questions # 180:

Another type of access control is lattice-based access control. In this type of control a lattice model is applied. How is this type of access control concept applied?

Options:

A.

The pair of elements is the subject and object, and the subject has an upper bound equal or higher than the upper bound of the object being accessed.

B.

The pair of elements is the subject and object, and the subject has an upper bound lower then the upper bound of the object being accessed.

C.

The pair of elements is the subject and object, and the subject has no special upper or lower bound needed within the lattice.

D.

The pair of elements is the subject and object, and the subject has no access rights in relation to an object.

Viewing page 9 out of 14 pages
Viewing questions 161-180 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.