2025-2026 LDR414 training CISSP Official training
exam 800 questions and answers SANS institute
Correct
Incorrect
, 1 of 800
Term
82. Tom is planning to terminate an employee this afternoon for
fraud and expects that the meeting will be somewhat hostile. He is
coordinating the meeting with Human Resources and wants to
protect the company against damage.
Which one of the following steps is most important to coordinate in
time with the termination meeting?
A. Informing other employees of the termination
B. Retrieval of photo ID
C. Calculation of final paycheck
D. Revocation of electronic access rights
Give this one a try later!
D.
Electronic access to company resources must be carefully coordinated. An
employee who retains access after being terminated may use that access
to take retaliatory action. On the other hand, if access is terminated too
early, the employee may figure out that he or she is about to be terminated.
A. Verifying information that an individual should know about themselves using
thirdparty factual information (a Type 1 authentication factor) is sometimes known
as dynamic knowledge-based authentication and is a type of identity proofing.
Out-ofband identity proofing would use another means of contacting the user,
like a text message or phone call, and password verification requires a password.
,C. The audit finding indicates that the backup administrator may not be
monitoring backup logs and taking appropriate action based on what they
report, thus resulting in potentially unusable backups. Issues with review,
, logging, or being aware of the success or failure of backups are less important
than not having usable backups.
D. The Biba model focuses only on protecting integrity and does not provide
protection against confidentiality or availability threats. It also does not provide
protection against covert channel attacks. The Biba model focuses on external
threats and assumes that internal threats are addressed programatically.
Don't know?
2 of 800
Term
58. A new customer at a bank that uses fingerprint scanners to
authenticate its users is surprised when he scans his fingerprint and
is logged in to another customer's account. What type of biometric
factor error occurred?
A. A registration error
B. A Type 1 error
C. A Type 2 error
D. A time of use, method of use error
Give this one a try later!
C. Type 2 errors occur in biometric systems when an invalid subject is
incorrectly authenticated as a valid user. In this case, nobody except the
actual customer should be validated when fingerprints are scanned. Type 1
errors occur when a valid subject is not authenticated; if the existing
customer was rejected, it would be a Type 1 error.
Registration is the process of adding users, but registration errors and time
of use, method of use errors are not specific biometric authentication
terms.
exam 800 questions and answers SANS institute
Correct
Incorrect
, 1 of 800
Term
82. Tom is planning to terminate an employee this afternoon for
fraud and expects that the meeting will be somewhat hostile. He is
coordinating the meeting with Human Resources and wants to
protect the company against damage.
Which one of the following steps is most important to coordinate in
time with the termination meeting?
A. Informing other employees of the termination
B. Retrieval of photo ID
C. Calculation of final paycheck
D. Revocation of electronic access rights
Give this one a try later!
D.
Electronic access to company resources must be carefully coordinated. An
employee who retains access after being terminated may use that access
to take retaliatory action. On the other hand, if access is terminated too
early, the employee may figure out that he or she is about to be terminated.
A. Verifying information that an individual should know about themselves using
thirdparty factual information (a Type 1 authentication factor) is sometimes known
as dynamic knowledge-based authentication and is a type of identity proofing.
Out-ofband identity proofing would use another means of contacting the user,
like a text message or phone call, and password verification requires a password.
,C. The audit finding indicates that the backup administrator may not be
monitoring backup logs and taking appropriate action based on what they
report, thus resulting in potentially unusable backups. Issues with review,
, logging, or being aware of the success or failure of backups are less important
than not having usable backups.
D. The Biba model focuses only on protecting integrity and does not provide
protection against confidentiality or availability threats. It also does not provide
protection against covert channel attacks. The Biba model focuses on external
threats and assumes that internal threats are addressed programatically.
Don't know?
2 of 800
Term
58. A new customer at a bank that uses fingerprint scanners to
authenticate its users is surprised when he scans his fingerprint and
is logged in to another customer's account. What type of biometric
factor error occurred?
A. A registration error
B. A Type 1 error
C. A Type 2 error
D. A time of use, method of use error
Give this one a try later!
C. Type 2 errors occur in biometric systems when an invalid subject is
incorrectly authenticated as a valid user. In this case, nobody except the
actual customer should be validated when fingerprints are scanned. Type 1
errors occur when a valid subject is not authenticated; if the existing
customer was rejected, it would be a Type 1 error.
Registration is the process of adding users, but registration errors and time
of use, method of use errors are not specific biometric authentication
terms.