Security
/ /
Certified
/ /
Practitioner
/ /
(SSCP) -
/ // /
Exam Prep Questions With Correct Answers
/ // // // // //
Access /
Control
/ /
Object -
/ // /
CORRECT
/ /
ANSWERS(S)✔✔A
/ /
passive entity that typically receives or contains some form of data.
/ // // // // // // // // // //
Access /
Control
/ /
Subject -
/ // /
CORRECT
/ /
ANSWERS(S)✔✔An
/ /
active
/ /
entity
/ /
and
/ /
can
/ /
be
/ /
,/ any /
/ user, /
/ program, /
/ or/
/ process /
/ that /
/ requests /
/ permission /
/ to/
/ cause /
/ data /
/ to/
/ flow /
/ from /
/ an /
/ access /
/ control /
/ object /
/ to the access control subject or between access control objects.
// // // // // // // // //
Asynchronous Password Token - CORRECT ANSWERS(S)✔✔A one- // // // // // //
time /
password
/ /
is generated without the use of a clock, either from a one-
/ // // // // // // // // // // //
time pad or cryptographic algorithm.
// // // //
,Authorization - // /
CORRECT
/ /
ANSWERS(S)✔✔Determines whether a user is permitted to access a
/ // // // // // // // //
particular resource.
// //
Connected /
Tokens -
/ // /
CORRECT
/ /
ANSWERS(S)✔✔Must
/ /
be
/ /
physically
/ /
connected to the computer to which the user is authenticating.
/ // // // // // // // // //
Contactless /
Tokens -
/ // /
CORRECT
/ /
ANSWERS(S)✔✔Form
/ //
a /
logical
/ /
connection
/ /
to the client computer but do not require a physical connection.
/ // // // // // // // // // //
Disconnected /
Tokens -
/ // /
CORRECT
/ /
, / ANSWERS(S)✔✔Have /
/ neither a physical nor logical connection to the client computer.
// // // // // // // // //
Entitlement - // /
CORRECT
/ /
ANSWERS(S)✔✔A
/ /
set
/ /
of
/ /
rules,
/ /
defined
/ /
by
/ /
the
/ /
resource
/ /
owner,
/ /
for
/ /
managing
/ /
access
/ /
to a resource (asset, service, or entity) and for what purpose.
/ // // // // // // // // // //
Identity /
/Management - // /
/CORRECT /
/ANSWERS(S)✔✔The /
/task of controlling information about users on computers.
// // // // // // //