CISSP Official Practice Tests by Mike Chapple, David Seidl

(chelsyfait) #1

290 Chapter 12 ■ Practice Test 4



  1. Encapsulation is the core concept that enables what type of protocol?
    A. Bridging
    B. Multilayer
    C. Hashing
    D. Storage

  2. Which one of the following is not a key principle of the COBIT framework for IT security
    control objectives?
    A. Meeting stakeholder needs
    B. Performing exhaustive analysis
    C. Covering the enterprise end-to-end
    D. Separating governance from management

  3. Roscommon Enterprises is an Irish company that handles personal information. They
    exchange information with many other countries. Which of the following countries would
    trigger the onward transfer provisions of the EU-U.S. Privacy Shield?
    A. United States
    B. France
    C. Italy
    D. Germany

  4. Match each one of the numbered protocols with the most accurate lettered description.
    Use each answer exactly once.


Protocol


  1. TCP

  2. UDP

  3. DNS

  4. ARP


Description
A. Performs translations between MAC addresses and IP addresses
B. Performs translations between FQDNs and IP addresses
C. Transports data over a network in a connection-oriented fashion
D. Transports data over a network in a connectionless fashion


  1. NIST Special Publication 800-53A describes four types of objects that can be assessed. If
    Ben is reviewing a password standard, which of the four types of objects is he assessing?
    A. A mechanism
    B. A specification
    C. An activity
    D. An individual

Free download pdf