,CCC1 EXAM 2 LATEST 2026 LATEST
VERSIONS WITH COMPLETE ACTUAL EXAM
QUESTIONS AND CORRECT VERIFIED ANSWERS/
ALREADY GRADED A+ (MOST RECENT!!)
1. Which of the following best describes the primary purpose of
the CIA triad?
A) To ensure all data is encrypted at rest
B) To provide a framework for balancing security goals
C) To eliminate all cybersecurity risks
D) To prioritize availability over confidentiality
Answer: B
Rationale: The CIA triad (Confidentiality, Integrity, Availability)
is a model to guide security decisions, balancing these three core
goals. A is too narrow (encryption only addresses confidentiality).
C is impossible (risk cannot be eliminated). D is incorrect because
2
,no single element is always prioritized.
2. Which action best supports non-repudiation?
A) Encrypting a file with a symmetric key
B) Hashing a password before storage
C) Digitally signing an email with a private key
D) Backing up logs daily
Answer: C
Rationale: Non-repudiation ensures a user cannot deny an
action. Digital signatures using asymmetric cryptography (private
key signing) provide proof of origin. A provides confidentiality
only. B is for password protection. D supports availability, not
proof of action.
3. A company allows employees to work from home but requires
that all laptops have full-disk encryption. Which principle does
3
, this primarily enforce?
A) Integrity
B) Availability
C) Confidentiality
D) Non-repudiation
Answer: C
Rationale: Full-disk encryption ensures that if a laptop is lost or
stolen, data cannot be read by unauthorized parties. This
protects confidentiality. Integrity (data unaltered) is not the
primary goal here.
4. Which of the following is an example of a preventive
control?
A) Security guard checking IDs at a door
B) Firewall blocking malicious traffic
C) Log review after a breach
4