CISSP Official Practice Tests by Mike Chapple, David Seidl

(chelsyfait) #1

224 Chapter 9 ■ Practice Test 1



  1. What type of testing would validate support for all the web browsers that are supported by
    a web application?
    A. Regression testing
    B. Interface testing
    C. Fuzzing
    D. White box testing

  2. Kathleen is implementing an access control system for her organization and builds the
    following array:


Reviewers: update files, delete files

Submitters: upload files

Editors: upload files, update files

Archivists: delete files

What type of access control system has Kathleen implemented?
A. Role-based access control
B. Task-based access control
C. Rule-based access control
D. Discretionary access control


  1. Alan is installing a fire suppression system that will kick in after a fire breaks out and pro-
    tect the equipment in the data center from extensive damage. What metric is Alan attempt-
    ing to lower?
    A. Likelihood
    B. RTO
    C. RPO
    D. Impact

  2. Alan’s Wrenches recently developed a new manufacturing process for its product. They
    plan to use this technology internally and not share it with others. They would like it to
    remain protected for as long as possible. What type of intellectual property protection is
    best suited for this situation?
    A. Patent
    B. Copyright
    C. Trademark
    D. Trade secret

  3. Ben wants to interface with the National Vulnerability Database using a standardized
    protocol. What option should he use to ensure that the tools he builds work with the data
    contained in the NVD?
    A. X ACML
    B. SCML

Free download pdf