ISC CISSP-ISSMP - Information Systems Security Management Professional - CISSP-ISSMP Exam Practice Test
You are the project manager of the HJK Project for your organization. You and the project team have created risk responses for many of the risk events in the project. Where should you document the proposed responses and the current status of all identified risks?
Correct Answer: C
Which of the following elements of BCP process includes the areas of plan implementation, plan testing, and ongoing plan maintenance, and also involves defining and documenting the continuity strategy?
Correct Answer: C
You are documenting your organization's change control procedures for project management. What portion of the change control process oversees features and functions of the product scope?
Correct Answer: A
In which of the following contract types, the seller is reimbursed for all allowable costs for performing the contract work and receives a fixed fee payment which is calculated as a percentage of the initial estimated project costs?
Correct Answer: B
Which of the following authentication protocols provides support for a wide range of authentication methods, such as smart cards and certificates?
Correct Answer: B
Which of the following architecturally related vulnerabilities is a hardware or software mechanism, which was installed to permit system maintenance and to bypass the system's security protections?
Correct Answer: D
Tomas is the project manager of the QWS Project and is worried that the project stakeholders will want to change the project scope frequently. His fear is based on the many open issues in the project and how the resolution of the issues may lead to additional project changes. On what document are Tomas and the stakeholders working in this scenario?
Correct Answer: C
Which of the following is a variant with regard to Configuration Management?
Correct Answer: C
Which of the following statements is true about auditing?
Correct Answer: C
What are the purposes of audit records on an information system? Each correct answer represents a complete solution. Choose two.
Correct Answer: A,B
Fill in the blank with an appropriate phrase.________ models address specifications, requirements, and design, verification and validation, and maintenance activities.
Correct Answer: A
Which of the following roles is used to ensure that the confidentiality, integrity, and availability of the services are maintained to the levels approved on the Service Level Agreement (SLA)?
Correct Answer: A