ACTUAL Exam Questions and CORRECT
Answers
CASP+ - CORRECT ANSWER - An advanced-level cybersecurity certification for
security architects and senior security engineers responsible for enhancing an enterprise's
cybersecurity readiness.
Exam Description - CORRECT ANSWER - Covers the technical knowledge and skills
needed to architect, engineer, integrate, and implement secure solutions across complex
environments, considering governance, risk, and compliance requirements.
Four Domains - CORRECT ANSWER - 1. Security Architecture (29%) 2. Security
Operations (30%) 3. Security Engineering and Cryptography (26%) 4. Governance, Risk, and
Compliance (15%)
Exam Details - CORRECT ANSWER - Up to 90 questions in 165 minutes, including
multiple-choice and performance-based/simulations. Recommended experience includes
CompTIA A+/Network+/Security+/CySA+/PenTest+ Certifications, along with 5 years of IT
security experience or 10 years of general IT experience. Released on October 6, 2021.
Data Security - CORRECT ANSWER - Involves confidentiality (preventing unauthorized
data disclosure), integrity (protecting data from modifications), and availability (ensuring data
accessibility).
Data Classification - CORRECT ANSWER - Classifies data based on organizational value
and sensitivity, including categories like Public, Sensitive, Private, and Confidential Data.
Unclassified Data - CORRECT ANSWER - Information that can be released to the public
under the Freedom of Information Act.
, Controlled Unclassified Information (CUI) - CORRECT ANSWER - Unclassified data
that requires protection from public disclosure.
Personally Identifiable Information (PII) - CORRECT ANSWER - Any data that could
potentially identify a specific individual.
Data Format - CORRECT ANSWER - The organization of information into preset
structures or specifications, including Structured Data (e.g., comma-separated value list) and
Unstructured Data (e.g., PowerPoint slide).
Data State - CORRECT ANSWER - Refers to the location of data within a processing
system, including Data at Rest (stored on a hard drive), Data in Motion (moving over a network),
and Data in Use.
Data Retention - CORRECT ANSWER - Controls data to comply with policies and
regulations
Short-Term Retention - CORRECT ANSWER - Frequency of overwriting youngest media
sets
Long-Term Retention - CORRECT ANSWER - Archiving data to prevent overwriting,
considering storage space
Recovery Point Objective (RPO) - CORRECT ANSWER - Max time lost after recovery
from disaster, influencing redundancy decisions
Data Destruction - CORRECT ANSWER - Process of making data inaccessible, including
removal and sanitization
Data Owner - CORRECT ANSWER - Executive responsible for data confidentiality,
integrity, availability