Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 3 fuera de 23 páginas
Examen

SYSTEMS SECURITY CERTIFIED PRACTITIONER (SSCP) - EXAM PREP QUESTIONS COMPLETE WITH OUTLINED ANSWERS

Document preview thumbnail
Vista previa 3 fuera de 23 páginas

SYSTEMS SECURITY CERTIFIED PRACTITIONER (SSCP) - EXAM PREP QUESTIONS COMPLETE WITH OUTLINED ANSWERS Q.Access Control Object - ANSWERS-A passive entity that typically receives or contains some form of data. Q.Access Control Subject - ANSWERS-An active entity and can be any user, program, or process that requests permission to cause data to flow from an access control object to the access control subject or between access control objects. Q.Asynchronous Password Token - ANSWERS-A one-time password is generated without the use of a clock, either from a one-time pad or cryptographic algorithm. Q.Authorization - ANSWERS-Determines whether a user is permitted to access a particular resource. Q.Connected Tokens - ANSWERS-Must be physically connected to the computer to which the user is authenticating. Q.Contactless Tokens - ANSWERS-Form a logical connection to the client computer but do not require a physical connection. Q.Disconnected Tokens - ANSWERS-Have neither a physical nor logical connection to the client computer. Q.Entitlement - ANSWERS-A set of rules, defined by the resource owner, for managing access to a resource (asset, service, or entity) and for what purpose. Q.Identity Management - ANSWERS-The task of controlling information about users on computers. Q.Proof of Identity - ANSWERS-Verify people's identities before the enterprise issues them accounts and credentials. Q.Kerberos - ANSWERS-A popular network authentication protocol for indirect (third-party) authentication services. Q.Lightweight Directory Access Protocol (LDAP) - ANSWERS-A client/server-based directory query protocol loosely based on X.500, commonly used to manage user information. LDAP is a front end and not used to manage or synchronize data per se as opposed to DNS. Q.Single Sign-On (SSO) - ANSWERS-Designed to provide strong authentication using secret-key cryptography, allowing a single identity to be shared across multiple applications. Q.Static Password Token - ANSWERS-The device contains a password that is physically hidden (not visible to the possessor) but that is transmitted for each authentication. Q.Synchronous Dynamic Password Token - ANSWERS-A timer is used to rotate through various combinations produced by a cryptographic algorithm. Q.Trust Path - ANSWERS-A series of trust relationships that authentication requests must follow between domains Q.Availability - ANSWERS-Refers to the ability to access and use information systems when and as needed to support an organization's operations. Q.Breach - ANSWERS-The intentional or unintentional release of secure information to an untrusted environment. Q.CMDB - ANSWERS-A configuration management database (CMDB) is a repository that contains a collection of IT assets that are referred to as configuration items. Q.Compensating Controls - ANSWERS-Introduced when the existing capabilities of a system do not support the requirements of a policy.

Vista previa del contenido

SYSTEMS SECURITY CERTIFIED
PRACTITIONER (SSCP) - EXAM PREP
QUESTIONS COMPLETE WITH OUTLINED
ANSWERS



\Q\.Access Control Object - ANSWERS✔-A passive entity that typically receives or
contains some form of data.



\Q\.Access Control Subject - ANSWERS✔-An active entity and can be any user,
program, or process that requests permission to cause data to flow from an access
control object to the access control subject or between access control objects.



\Q\.Asynchronous Password Token - ANSWERS✔-A one-time password is
generated without the use of a clock, either from a one-time pad or cryptographic
algorithm.



\Q\.Authorization - ANSWERS✔-Determines whether a user is permitted to access
a particular resource.



\Q\.Connected Tokens - ANSWERS✔-Must be physically connected to the
computer to which the user is authenticating.

,\Q\.Contactless Tokens - ANSWERS✔-Form a logical connection to the client
computer but do not require a physical connection.



\Q\.Disconnected Tokens - ANSWERS✔-Have neither a physical nor logical
connection to the client computer.



\Q\.Entitlement - ANSWERS✔-A set of rules, defined by the resource owner, for
managing access to a resource (asset, service, or entity) and for what purpose.



\Q\.Identity Management - ANSWERS✔-The task of controlling information about
users on computers.



\Q\.Proof of Identity - ANSWERS✔-Verify people's identities before the enterprise
issues them accounts and credentials.



\Q\.Kerberos - ANSWERS✔-A popular network authentication protocol for indirect
(third-party) authentication services.



\Q\.Lightweight Directory Access Protocol (LDAP) - ANSWERS✔-A client/server-
based directory query protocol loosely based on X.500, commonly used to
manage user information. LDAP is a front end and not used to manage or
synchronize data per se as opposed to DNS.



\Q\.Single Sign-On (SSO) - ANSWERS✔-Designed to provide strong authentication
using secret-key cryptography, allowing a single identity to be shared across
multiple applications.

, \Q\.Static Password Token - ANSWERS✔-The device contains a password that is
physically hidden (not visible to the possessor) but that is transmitted for each
authentication.



\Q\.Synchronous Dynamic Password Token - ANSWERS✔-A timer is used to rotate
through various combinations produced by a cryptographic algorithm.



\Q\.Trust Path - ANSWERS✔-A series of trust relationships that authentication
requests must follow between domains



\Q\.Availability - ANSWERS✔-Refers to the ability to access and use information
systems when and as needed to support an organization's operations.



\Q\.Breach - ANSWERS✔-The intentional or unintentional release of secure
information to an untrusted environment.



\Q\.CMDB - ANSWERS✔-A configuration management database (CMDB) is a
repository that contains a collection of IT assets that are referred to as
configuration items.



\Q\.Compensating Controls - ANSWERS✔-Introduced when the existing
capabilities of a system do not support the requirements of a policy.

Información del documento

Subido en
5 de febrero de 2026
Número de páginas
23
Escrito en
2025/2026
Tipo
Examen
Contiene
Preguntas y respuestas
$12.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
IszackBd
5.0
(3)
Vendido
45
Seguidores
3
Artículos
5820
Última venta
1 día hace



Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes