Go Back on CISSP Exam
Available in 1, 3, 6 and 12 Months Free Updates Plans
PDF: $15 $60

Test Engine: $20 $80

PDF + Engine: $25 $99

CISSP Practice Test


Page 7 out of 298 Pages

Topic 4: . Communication and Network Security

At what level of the Open System Interconnection (OSI) model is data at rest on a Storage Area Network (SAN) located?


A.

Link layer


B.

Physical layer


C.

Session layer


D.

Application layer





D.
  

Application layer



In a Transmission Control Protocol/Internet Protocol (TCP/IP) stack, which layer is
responsible for negotiating and establishing a connection with another node?


A.

Transport layer


B.

Application layer


C.

Network layer


D.

Session layer





A.
  

Transport layer



What is the BEST approach for controlling access to highly sensitive information when employees have the same level of security clearance?


A.

Audit logs


B.

Role-Based Access Control (RBAC)


C.

Two-factor authentication


D.

Application of least privilege





B.
  

Role-Based Access Control (RBAC)



Users require access rights that allow them to view the average salary of groups of employees. Which control would prevent the users from obtaining an individual employee’s salary?


A.

Limit access to predefined queries


B.

Segregate the database into a small number of partitions each with a separate security level


C.

Implement Role Based Access Control (RBAC)


D.

Reduce the number of people who have access to the system for statistical purposes





C.
  

Implement Role Based Access Control (RBAC)



Which of the following BEST describes an access control method utilizing cryptographic keys derived from a smart card private key that is embedded within mobile devices?


A.

Derived credential


B.

Temporary security credential


C.

Mobile device credentialing service


D.

Digest authentication





A.
  

Derived credential




Page 7 out of 298 Pages
Previous