CISSP Official Practice Tests by Mike Chapple, David Seidl

(chelsyfait) #1

Chapter 11 ■ Practice Test 3 285



  1. The ability to store and generate passwords, provide logging and auditing capabilities, and
    allow password check-in and check-out are all features of what type of system?
    A. AAA
    B. Credential management
    C. Two-factor authentication
    D. Kerberos

  2. Which one of the following components should be included in an organization’s emergency
    response guidelines?
    A. Secondary response procedures for first responders
    B. Long-term business continuity protocols
    C. Activation procedures for the organization’s cold sites
    D. Contact information for ordering equipment

  3. When Jim enters his organization’s data center, he has to use a smart card and code to
    enter and is allowed through one set of doors. The first set of doors closes, and he must
    then use his card again to get through a second set, which locks behind him. What type of
    control is this, and what is it called?
    A. A physical control; a one-way trapdoor
    B. A logical control; a dual-swipe authorization
    C. A directive control; a one-way access corridor
    D. A preventive access control; a mantrap

  4. What security control may be used to implement a concept known as two-person control?


A. Mandatory vacation
B. Separation of duties
C. Least privilege
D. Defense in depth
Free download pdf