Official Bank 0/1456

Certified Information Systems Security Professional (CISSP) (CISSP) - ISC2 Exam Questions

Last updated on July 22, 2026

97% Exam Compliance
1456 Total Questions
1
Question
Which of the following security objectives for industrial control systems (ICS) can be adapted to securing any Internet of Things (IoT) system?
Options
A Prevent unauthorized modification of data.
B Protect individual components from exploitation
C Restore the system after an incident.
D Detect security events and incidents.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
When writing security assessment procedures, what is the MAIN purpose of the test outputs and reports?
Options
A To identify malware or hidden code within the test results
B To force the software to fail and document the process
C To find areas of compromise in confidentiality and integrity
D To allow for objective pass or fail decisions
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
Which of the following is the MOST effective countermeasure against data remanence?
Options
A Destruction
B Encryption
C Clearing
D Purging
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
Which of the following is the BEST way to verify the integrity of a software patch?
Options
A Cryptographic checksums
B Vendor assurance
C Automatic updates
D Version numbering
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
A federal agency has hired an auditor to perform penetration testing on a critical system as part of the mandatory, annual Federal Information Security Management Act (FISMA) security assessments. The auditor is new to this system but has extensive experience with all types of penetration testing. The auditor has decided to begin with sniffing network traffic. What type of penetration testing is the auditor conducting?
Options
A Red box testing
B White box testing
C Gray box testing
D Black box testing
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.