ISC SSCP - Systems Security Certified Practitioner
Which of the following test makes sure the modified or new system includes appropriate access controls and does not introduce any security holes that might compromise other systems?
Which of the following is NOT a common integrity goal?
Configuration Management controls what?
Which of the following choices describe a condition when RAM and Secondary storage are used together?
Which of the following embodies all the detailed actions that personnel are required to follow?
Which of the following best corresponds to the type of memory addressing where the address location that is specified in the program instruction contains the address of the final desired location?
Which of the following phases of a software development life cycle normally addresses Due Care and Due Diligence?
A 'Pseudo flaw' is which of the following?
What security problem is most likely to exist if an operating system permits objects to be used sequentially by multiple users without forcing a refresh of the objects?
What is the main purpose of Corporate Security Policy?
The control of communications test equipment should be clearly addressed by security policy for which of the following reasons?
What can best be defined as high-level statements, beliefs, goals and objectives?
Which of the following are the steps usually followed in the development of documents such as security policy, standards and procedures?
Which of the following is not a component of a Operations Security "triples"?
When attempting to establish Liability, which of the following would be describe as performing the ongoing maintenance necessary to keep something in proper working order, updated, effective, or to abide by what is commonly expected in a situation?
Which of the following is commonly used for retrofitting multilevel security to a database management system?
Who is responsible for initiating corrective measures and capabilities used when there are security violations?
Who of the following is responsible for ensuring that proper controls are in place to address integrity, confidentiality, and availability of IT systems and data?
Which of the following is based on the premise that the quality of a software product is a direct function of the quality of its associated software development and maintenance processes?
What is called a system that is capable of detecting that a fault has occurred and has the ability to correct the fault or operate around it?