
EC-CouncilCertified Chief Information Security Officer
Domain 4Objective 1
Access Controls CCISO Practice Questions (Page 1)
Part of the Information Security Core Competencies domain, which makes up ~33% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~20–33 in this domain), expect 3–4 from this objective — we provide 57 practice questions to prepare you well beyond it. (estimate)
57questions here
12free pages
10concepts
Questions 1–5
- 1
A company is deploying a new application that requires fine-grained access decisions based on user attributes, resource type, and current threat level. The CISO wants a centralized policy engine that can enforce these decisions across multiple applications. Which implementation approach is best?
Select an answer first - 2
A security analyst is investigating a data breach. The logs show that a valid user account was used to access sensitive data from an IP address in a foreign country. The user denies any involvement and claims their password was stolen. The analyst also finds that the account did not have multi-factor authentication (MFA) enabled. Which conclusion is most defensible?
Select an answer first - 3
A company's security team notices that a terminated employee's account is still active and has been used to access the corporate VPN after the termination date. The investigation reveals that the account was not disabled promptly. Which component of the IAAA framework was most directly violated?
Select an answer first - 4
A security analyst is reviewing logs and notices that a user account has successfully logged in from two different geographic locations within 10 minutes. The user is a remote employee who normally works from home. Which action should the analyst take first?
Select an answer first - 5
A regional hospital is implementing a new electronic health record (EHR) system. The compliance officer insists that only the attending physician and the assigned nurses may view a patient's record, and that any access must be logged with the user's identity and timestamp. The CIO wants to ensure that the access control system enforces this requirement consistently across all departments. Which access control approach best satisfies the stated requirement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.