
Certified Cybersecurity Operations Analyst
Domain 2Objective 3
Cybersecurity Architecture CCOA Practice Questions (Page 3)
Part of the Domain 2: Cybersecurity Principles and Risk domain, which accounts for 20% of the CCOA exam. ISACA does not publish an official question count, but from its 240-minute exam (~95–160 total, ~19–32 in this domain), expect 5–8 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
14concepts
20%of the exam
Questions 11–15
- 11
What is the primary purpose of a defense-in-depth strategy?
Select an answer first - 12
A company's security team is designing a backup strategy for a critical database. They must ensure that data can be restored quickly after a ransomware attack, but they also need to protect the backups from being encrypted by the ransomware. The team has limited budget and must choose between storing backups on the same network or using an offline, air-gapped storage. Which approach best balances availability and integrity?
Select an answer first - 13
In the TOGAF ADM, which phase is responsible for defining the initial architecture vision and obtaining approval for the architecture project?
Select an answer first - 14
A company wants to improve its cybersecurity posture by implementing a framework that includes functions for identifying risks, protecting assets, detecting incidents, responding to incidents, and recovering from them. Which framework should they adopt?
Select an answer first - 15
In a Zero Trust architecture, how is access to a resource typically granted?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CCOA” is a trademark of its owner, used for identification only.