CySA 003 Domain 2 Exam Questions and
Answers with Verified Solutions | Latest
Updated 2026
What federal law requires the use FISMA
of 3 multiple choice options
vulnerability scanning on
information
systems operated by federal
government agencies?
Which one of the following industry ISO 27001
standards describes a standard 3 multiple choice options
approach for setting up an
information security management
system?
What tool can administrators use Asset inventory
to 3 multiple choice options
help identify the systems present
on
a network prior to conducting
vulnerability scans?
,Tonya is configuring vulnerability Quarterly
scans for a system that is subject 3 multiple choice options
to
the PCI DSS compliance standard.
What is the minimum frequency
with
which she must conduct scans?
Which one of the following is not Snort
an 3 multiple choice options
example of a vulnerability
scanning
tool?
Bethany is the vulnerability Immediately
management specialist for a large 3 multiple choice options
retail organization. She completed
her last PCI DSS compliance scan
in
March. In April, the organization
upgraded their point-of-sale
system,
and Bethany is preparing to
conduct
new scans. When must she
complete
the new scan?
, Renee is configuring her Read-only
vulnerability 3 multiple choice options
management solution to perform
credentialed scans of servers on
her
network. What type of account
should she provide to the
scanner?
Jason is writing a report about a CPE
potential security vulnerability in a 3 multiple choice options
software product and wishes to
use
standardized product names to
ensure that other security analysts
understand the report. Which
SCAP
component can Jason turn to for
assistance?
Bill would like to run an internal Any qualified individual
vulnerability scan on a system for 3 multiple choice options
PCI DSS compliance purposes.
Who
is authorized to complete one of
these scans?
Which type of organization is the Government agency
most likely to face a regulatory 3 multiple choice options
requirement to conduct
vulnerability
scans?
Answers with Verified Solutions | Latest
Updated 2026
What federal law requires the use FISMA
of 3 multiple choice options
vulnerability scanning on
information
systems operated by federal
government agencies?
Which one of the following industry ISO 27001
standards describes a standard 3 multiple choice options
approach for setting up an
information security management
system?
What tool can administrators use Asset inventory
to 3 multiple choice options
help identify the systems present
on
a network prior to conducting
vulnerability scans?
,Tonya is configuring vulnerability Quarterly
scans for a system that is subject 3 multiple choice options
to
the PCI DSS compliance standard.
What is the minimum frequency
with
which she must conduct scans?
Which one of the following is not Snort
an 3 multiple choice options
example of a vulnerability
scanning
tool?
Bethany is the vulnerability Immediately
management specialist for a large 3 multiple choice options
retail organization. She completed
her last PCI DSS compliance scan
in
March. In April, the organization
upgraded their point-of-sale
system,
and Bethany is preparing to
conduct
new scans. When must she
complete
the new scan?
, Renee is configuring her Read-only
vulnerability 3 multiple choice options
management solution to perform
credentialed scans of servers on
her
network. What type of account
should she provide to the
scanner?
Jason is writing a report about a CPE
potential security vulnerability in a 3 multiple choice options
software product and wishes to
use
standardized product names to
ensure that other security analysts
understand the report. Which
SCAP
component can Jason turn to for
assistance?
Bill would like to run an internal Any qualified individual
vulnerability scan on a system for 3 multiple choice options
PCI DSS compliance purposes.
Who
is authorized to complete one of
these scans?
Which type of organization is the Government agency
most likely to face a regulatory 3 multiple choice options
requirement to conduct
vulnerability
scans?