
Certified Cybersecurity Operations Analyst
Domain 2Objective 3
Cybersecurity Architecture CCOA Practice Questions (Page 6)
Part of the Domain 2: Cybersecurity Principles and Risk domain, which accounts for 20% of the CCOA exam. ISACA does not publish an official question count, but from its 240-minute exam (~95–160 total, ~19–32 in this domain), expect 5–8 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
14concepts
20%of the exam
Questions 26–30
- 26
In a military system using the Bell-LaPadula model, a general with a Top Secret clearance wants to send a message to a colonel with a Secret clearance. Which Bell-LaPadula property would prevent this action?
Select an answer first - 27
A bank's core banking system processes financial transactions. The security team wants to ensure that transactions are well-formed, and that no single employee can both create and approve a transaction. Which model directly supports these requirements?
Select an answer first - 28
A financial institution's trading application must ensure that data used for transactions is not corrupted by lower-integrity processes. The security team wants to prevent a low-integrity process from writing to high-integrity data. Which model should they implement?
Select an answer first - 29
A large enterprise is restructuring its IT architecture. The CIO wants a framework that organizes architecture descriptions from six perspectives: planner, owner, designer, builder, subcontractor, and user. Which framework should they use?
Select an answer first - 30
A security team is designing protection for a database containing sensitive customer records. They plan to implement network firewalls, database encryption, and strict access controls. Which security strategy does this represent?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CCOA” is a trademark of its owner, used for identification only.