CISSP Practice Exam Tests Latest Updated on Sep-2021 [Q500-Q518]

Share

CISSP Practice Exam Tests Latest Updated on Sep-2021

Pass CISSP Exam in First Attempt Guaranteed Dumps!

NEW QUESTION 500
In a stateful inspection firewall, data packets are captured by an inspection engine that is operating at the:

  • A. Data Link Layer.
  • B. Application Layer.
  • C. Inspection Layer.
  • D. Network or Transport Layer.

Answer: D

Explanation:
Explanation/Reference:
Explanation:
A stateful firewall filters traffic based on OSI Layer 3 (Network layer) and Layer 4 (Transport layer).
Incorrect Answers:
B: A stateful firewall does not operate at the Application layer. It work at the Network or Transport Layer.
C: There is no inspection layer in the OSI model.
D: A stateful firewall does not operate at the Data link layer. It work at the Network or Transport Layer.
References:
Conrad, Eric, Seth Misenar and Joshua Feldman, CISSP Study Guide, 2nd Edition, Syngress, Waltham,
2012, p. 63

 

NEW QUESTION 501
An organization has developed a major application that has undergone accreditation testing. After receiving the results of the evaluation, what is the final step before the application can be accredited?

  • A. Acceptance of risk by the authorizing official
  • B. Approval of the System Security Plan (SSP)
  • C. Adoption of standardized policies and procedures
  • D. Remediation of vulnerabilities

Answer: A

 

NEW QUESTION 502
What is called an attach where the attacker spoofs the source IP address in an ICMP ECHO broadcast packet so it seems to have originated at the victim's system, in order to flood it with REPLY packets?

  • A. Smurf attack
  • B. Denial of Service (DOS) Attack
  • C. SYN flood attack
  • D. Ping of Dead Attack

Answer: A

Explanation:
Reference: pg 158 Hansche: Official (ISC)2 Guide to the CISSP Exam

 

NEW QUESTION 503
Business rules can be enforced within a database through the use of

  • A. Redundancy
  • B. Authentication
  • C. Proxy
  • D. Views

Answer: D

Explanation:
Explanation/Reference:
Explanation:
Business rules can run on (base) tables or on views. In database theory, a view is the result set of a stored query on the data, which the database users can query just as they would in a persistent database collection object. This pre-established query command is kept in the database dictionary.
Incorrect Answers:
A: Proxies are not use in databases. In computer networks, a proxy server is a server (computer) which clients (people or computers) use to access other computers.
B: The concept of redundancy is not used within a database to enforce business rules.
D: Business rules use views (or tables) not authentication.
References:
https://en.wikipedia.org/wiki/View_(SQL)

 

NEW QUESTION 504
An internal Service Level Agreement (SLA) covering security is signed by senior managers and is in place. When should compliance to the SLA be reviewed to ensure that a good security posture is being delivered?

  • A. At regularly scheduled meetings
  • B. Prior to a planned security audit
  • C. As part of the SLA renewal process
  • D. Immediately after a security breach

Answer: A

 

NEW QUESTION 505
Which of the following is the BEST mitigation from phishing attacks?

  • A. Corporate policy and procedures
  • B. Network activity monitoring
  • C. Strong file and directory permissions
  • D. Security awareness training

Answer: D

 

NEW QUESTION 506
What types of laws are considered standards of performance or conduct expected by government agencies from companies, industries, and certain officials.(Chose all that apply)

  • A. Tort
  • B. Criminal
  • C. Administrative
  • D. Civil
  • E. Regulatory

Answer: C,E

Explanation:
Administrative or regulatory laws are considered standards of performance or conduct expected by government agencies from companies, industries, and certain officials.

 

NEW QUESTION 507
Which one of the following is a core infrastructure and service element of Business Continuity Planning (BCP) required to effectively support the business processes of an organization?

  • A. Internal and external support functions.
  • B. Backup and restoration functions.
  • C. The risk management process.
  • D. The change management process.

Answer: C

Explanation:
Pg 383 Krutz Gold Edition. Backup is not BCP.

 

NEW QUESTION 508
The definition A relatively small amount (when compared to primary
memory) of very high speed RAM, which holds the instructions and
data from primary memory, that has a high probability of being
accessed during the currently executing portion of a program refers to
what category of computer memory?

  • A. Virtual
  • B. Secondary
  • C. Cache
  • D. Real

Answer: C

Explanation:
Cache logic attempts to predict which instructions and data in
main (primary) memory will be used by a currently executing
program. It then moves these items to the higher speed cache in
anticipation of the CPU requiring these programs and data. Properly
designed caches can significantly reduce the apparent main memory
access time and thus increase the speed of program execution.
* Answer secondary memory is a slower memory (such as a magnetic
disk) that provides non-volatile storage.
* Real or primary memory is directly addressable by the CPU and is used for the storage of instructions and data associated with the program that is being executed. This memory is usually high-speed, Random Access
Memory (RAM).
* Answer virtual memory uses secondary memory
in conjunction with primary memory to present the CPU with a
larger, apparent address space of the real memory locations.

 

NEW QUESTION 509
Which of the following can be best defined as computing techniques for inseparably embedding unobtrusive marks or labels as bits in digital data and for detecting or extracting the marks later?

  • A. Steganography
  • B. Digital signature
  • C. Digital watermarking
  • D. Digital enveloping

Answer: C

Explanation:
Explanation/Reference:
Explanation:
Digital watermarking is defined as "Computing techniques for inseparably embedding unobtrusive marks or labels as bits in digital data -- text, graphics, images, video, or audio -- and for detecting or extracting the marks later."
A "digital watermark", i.e., the set of embedded bits, is sometimes hidden, usually imperceptible, and always intended to be unobtrusive. Depending on the particular technique that is used, digital watermarking can assist in proving ownership, controlling duplication, tracing distribution, ensuring data integrity, and performing other functions to protect intellectual property rights.
Incorrect Answers:
A: Steganography is a method of hiding data in another media type so the very existence of the data is concealed. Digital Watermarking is considered to be a type of steganography. However, steganography is not what is described in the question.
C: A digital envelope is another term used to describe hybrid cryptography where a message is encrypted with a symmetric key and the symmetric key is encrypted with an asymmetric key. This is not what is described in the question.
D: A digital signature is a mathematical technique used to validate the authenticity and integrity of a message, software or digital document. This is not what is described in the question.
References:
http://tools.ietf.org/html/rfc4949

 

NEW QUESTION 510
Which choice below is NOT an example of appropriate security management practice?

  • A. Researching information on new intrusion exploits
  • B. Reviewing access logs for unauthorized behavior
  • C. Monitoring employee performance in the workplace
  • D. Promoting and implementing security awareness programs

Answer: C

Explanation:
Monitoring employee performance is not an example of security management, or a job function of the Information Security Officer. Employee performance issues are the domain of human resources and the employee's manager. The other three choices are appropriate practice for the information security area.

 

NEW QUESTION 511
Which of the following is NOT a precaution you can take to reduce static electricity?

  • A. anti-static flooding
  • B. maintain proper humidity levels
  • C. anti-static sprays
  • D. power line conditioning

Answer: D

 

NEW QUESTION 512
Which of the following is immune to the effects of electromagnetic interference (EMI) and therefore has a much longer effective usable length?

  • A. Coaxial cable
  • B. Fiber Optic cable
  • C. Twisted Pair cable
  • D. Axial cable

Answer: B

Explanation:
Fiber Optic cable is immune to the effects of electromagnetic interference
(EMI) and therefore has a much longer effective usable length (up to two kilometers in some cases).
Source: KRUTZ, Ronald L. & VINES, Russel D., The CISSP Prep Guide: Mastering the
Ten Domains of Computer Security, 2001, John Wiley & Sons, Page 72.

 

NEW QUESTION 513
Domain Name Service is a distributed database system that is used to map:

  • A. Domain Name to IP addresses.
  • B. MAC addresses to domain names.
  • C. IP addresses to MAC Addresses.
  • D. MAC Address to IP addresses.

Answer: A

Explanation:
The Domain Name Service is a distributed database system that is used to map domain names to IP addresses and IP addresses to domain names.
The Domain Name System is maintained by a distributed database system, which uses the client-server model. The nodes of this database are the name servers. Each domain has at least one authoritative DNS server that publishes information about that domain and the name servers of any domains subordinate to it. The top of the hierarchy is served by the root nameservers, the servers to query when looking up (resolving) a TLD.
Reference(s) used for this question:
KRUTZ, Ronald L. & VINES, Russel D., The CISSP Prep Guide: Mastering the Ten
Domains of Computer Security, 2001, John Wiley & Sons, Page 100.
and
https://en.wikipedia.org/wiki/Domain_Name_System

 

NEW QUESTION 514
Tim's day to day responsibilities include monitoring health of devices on the network. He uses a Network Monitoring System supporting SNMP to monitor the devices for any anomalies or high traffic passing through the interfaces. Which of the protocols would be BEST to use if some of the requirements are to prevent easy disclosure of the SNMP strings and authentication of the source of the packets?

  • A. SNMP V1
  • B. SNMP V3
  • C. SNMP V2
  • D. UDP

Answer: B

Explanation:
Simple Network Management Protocol (SNMP) is an Internet-standard protocol for managing devices on IP networks. Devices that typically support SNMP include routers, switches, servers, workstations, printers, modem racks, and more. It is used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention. SNMP is a component of the Internet Protocol Suite as defined by the Internet Engineering Task Force (IETF).
SNMP V3 Although SNMPv3 makes no changes to the protocol aside from the addition of cryptographic security, it looks much different due to new textual conventions, concepts, and terminology. SNMPv3 primarily added security and remote configuration enhancements to SNMP. Security has been the biggest weakness of SNMP since the beginning. Authentication in SNMP Versions 1 and 2 amounts to nothing more than a password (community string) sent in clear text between a manager and agent. Each SNMPv3 message contains security parameters which are
encoded as an octet string. The meaning of these security parameters depends on the security
model being used.
SNMPv3 provides important security features:
Confidentiality - Encryption of packets to prevent snooping by an unauthorized source.
Integrity - Message integrity to ensure that a packet has not been tampered with in transit
including an optional packet replay protection mechanism.
Authentication - to verify that the message is from a valid source.
The following answers are incorrect:
UDP
SNMP can make use of the User Datagram Protocol (UDP) protocol but the UDP protocol by itself
is not use for network monitoring.
SNMP V1
SNMP version 1 (SNMPv1) is the initial implementation of the SNMP protocol. SNMPv1 operates
over protocols such as User Datagram Protocol (UDP), Internet Protocol (IP), OSI Connectionless
Network Service (CLNS), AppleTalk Datagram-Delivery Protocol (DDP), and Novell Internet
Packet Exchange (IPX). SNMPv1 is widely used and is the de facto network-management protocol
in the Internet community.
SNMP V2
SNMPv2 (RFC 1441-RFC 1452), revises version 1 and includes improvements in the areas of
performance, security, confidentiality, and manager-to-manager communications. It introduced
GetBulkRequest, an alternative to iterative GetNextRequests for retrieving large amounts of
management data in a single request. However, the new party-based security system in SNMPv2,
viewed by many as overly complex, was not widely accepted.
The following reference(s) were/was used to create this question:
http://en.wikipedia.org/wiki/Simple_Network_Management_Protocol
Harris, Shon (2012-10-18). CISSP All-in-One Exam Guide, 6th Edition (p. 587). McGraw-Hill.
Kindle Edition.
Hernandez CISSP, Steven (2012-12-21). Official (ISC)2 Guide to the CISSP CBK, Third Edition
((ISC)2 Press) (Kindle Locations 7434-7436). Auerbach Publications. Kindle Edition.

 

NEW QUESTION 515
Which choice below does NOT accurately describe the difference
between multi-mode and single-mode fiber optic cabling?

  • A. Both types have a longer allowable maximum transmission distance
    than UTP Cat 5.
  • B. Multi-mode fiber has a longer allowable maximum transmission
    distance than single-mode fiber.
  • C. Single-mode fiber has a longer allowable maximum transmission
    distance than multi-mode fiber.
  • D. Multi-mode fiber propagates light waves through many paths,
    single-mode fiber propagates a single light ray only.

Answer: B

Explanation:
Multi-mode fiber has a shorter allowable maximum transmission
distance than single-mode fiber (2km vs. 10km). Multi-mode
transmits the light through several different paths in the cable,
whereas single-mode uses one light path, making single mode
perform better. However, multi-mode is less expensive to install and
is used more often in short-to-medium haul networks. Category 5
unshielded twisted pair (UTP) has a maximum transmission
distance of 100 meters. Sources: Catalyst 5000 Series Installation Guide
(Cisco Systems, 1996) and Gigabit Ethernet by Jayant Kadambi, Ian
Crayford, and Mohan Kalkunte (Prentice Hall PTR, 1998).

 

NEW QUESTION 516
Which of the following is the BEST approach to take in order to effectively incorporate the concepts of business continuity into the organization?

  • A. Develop training and awareness programs that involve all stakeholders
  • B. Ensure end users are aware of the planning activities
  • C. Ensure plans do not violate the organization's cultural objectives and goals
  • D. Validate all regulatory requirements are known and fully documented

Answer: A

 

NEW QUESTION 517
Controls are implemented to:

  • A. mitigate risk and reduce the potential for loss
  • B. eliminate risk and eliminate the potential for loss
  • C. eliminate risk and reduce potential for loss
  • D. mitigate risk and eliminate the potential for loss

Answer: A

 

NEW QUESTION 518
......

ISC Certification  Free Certification Exam Material from Real4dumps with 990 Questions: https://www.real4dumps.com/CISSP_examcollection.html

CISSP Dumps Full Questions - Exam Study Guide: https://drive.google.com/open?id=1gNC6qEHc5ti-q1TdfLK0VxIeJycA5q2c