100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

CISSP - Exam Practice/Study Questions Containing 146 terms and Definitions Updated . Terms like; What is the most effective defense against cross-site scripting attacks? a) Limiting account privileges b) User Authentication c) Input validation

Rating
-
Sold
-
Pages
56
Grade
A+
Uploaded on
06-01-2024
Written in
2023/2024

CISSP - Exam Practice/Study Questions Containing 146 terms and Definitions Updated . Terms like; What is the most effective defense against cross-site scripting attacks? a) Limiting account privileges b) User Authentication c) Input validation d)encryption - Answer: c) Input validation prevents cross-site scripting attacks by limiting user input to a predefined range. This prevents the attacker from including the HTML ˂SCRIPT˃ tag in the input.

Show more Read less
Institution
CISSP - Exm Practice/Study Qustions Containin
Course
CISSP - Exm Practice/Study Qustions Containin











Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
CISSP - Exm Practice/Study Qustions Containin
Course
CISSP - Exm Practice/Study Qustions Containin

Document information

Uploaded on
January 6, 2024
Number of pages
56
Written in
2023/2024
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

CISSP - Exam Practice/Study Questions




CISSP - Exam Practice/Study Questions
Containing 146 terms and Definitions
Updated 2023-2024
What is the most effective defense against cross-site scripting attacks?


a) Limiting account privileges
b) User Authentication
c) Input validation
d)encryption - Answer: c) Input validation prevents cross-site scripting attacks by
limiting user input to a predefined range. This prevents the attacker from including
the HTML ˂SCRIPT˃ tag in the input.

, CISSP - Exam Practice/Study Questions


What phase of the Electronic Discovery Reference Model puts evidence in a
format that may be shared with others?
a) production
b) processing
c) revice
d) presentation - Answer: a) Production places the information in a format that
may be shared with others.


What form of security planning is designed to focus on timeframes of
approximately one year and may include scheduling of tasks, assignment of
responsibilities, hiring plans, maintenance plans, and even acquisition plans?
a)strategic
b) operational
c) tactical
d)administrative - Answer: c.) tactical planning is designed to focus on timeframes
of approximately one year and may include scheduling of tasks, assignment of
responsibilities, hiring plans, maintenance plans, and even acquisition plans.


Which is not a part of an electronic access control lock?


A. An electromagnet
B. A credential reader
C. A door sensor
D. A biometric scanner - Answer: d -An electronic access control (EAC) lock
comprises three elements: an electromagnet to keep the door closed, a credential

, CISSP - Exam Practice/Study Questions


reader to authenticate subjects and to disable the electromagnet, and a door-
closed sensor to reenable the electromagnet.


Which one of the following items is a characteristic of hot sites but not a
characteristic of warm sites?
a.Communications circuits
B. Workstations
C. Servers
D. Current data - Answer: d- current data


Which one of the following Data Encryption Standard (DES) operating modes can
be used for large messages with the assurance that an error early in the
encryption/decryption process won't spoil results throughout the
communication?
A. Cipher Block Chaining (CBC)
B. Electronic Code Book (ECB)
C. Cipher Feedback (CFB)
D. Output feedback (OFB) - Answer: d -Output feedback (OFB) mode prevents
early errors from interfering with future encryption/decryption. Cipher Block
Chaining and Cipher Feedback modes will carry errors throughout the entire
encryption/decryption process. Electronic Code Book (ECB) operation is not
suitable for large amounts of data.


Which one of the following items is not a critical piece of information in the chain
of evidence?

, CISSP - Exam Practice/Study Questions


A. General description of the evidence
B. Name of the person collecting the evidence
C. Relationship of the evidence to the crime
D. Time and date the evidence was collected - Answer: c -The chain of evidence
does not require that the evidence collector know or document the relationship
of the evidence to the crime.


Which firewall type looks exclusively at the message header to determine whether
to transmit or drop data?
A. Static packet filtering
B. Application-level gateway
C. Stateful inspection
D. Dynamic packet filtering - Answer: a -A static packet-filtering firewall filters
traffic by examining data from a message header.


What type of information is used to form the basis of an expert system's decision-
making process?
A. A series of weighted layered computations
B. Combined input from a number of human experts, weighted according to past
performance
C. A series of "if/then" rules codified in a knowledge base
D. A biological decision-making process that simulates the reasoning process used
by the human mind - Answer: c -Expert systems use a knowledge base consisting
of a series of "if/then" statements to form decisions based on the previous
experience of human experts.

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
docmickey Alabama State University
View profile
Follow You need to be logged in order to follow users or courses
Sold
4018
Member since
2 year
Number of followers
66
Documents
2919
Last sold
15 hours ago
AUTHENTIC ACADEMIC TUTORING AGENT

Am a trusted professional TUTOR working as a study material sourcing agent, I offer AUTHENTIC exam papers directly sourced from REPUTABLE INSTITUTIONS my papers serve as INVALUABLE tools to aid aspiring nurses and many other professions in their exam preparations. Backed by my experience and expertise, I ensure that each paper is meticulously crafted. STUDY LESS STUDY SMART.

4.3

518 reviews

5
286
4
152
3
58
2
17
1
5

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions