
Certified Cybersecurity Operations Analyst
Domain 2Objective 4
Risk by Domain CCOA Practice Questions (Page 6)
Part of the Domain 2: Cybersecurity Principles and Risk domain, which accounts for 20% of the CCOA exam. ISACA does not publish an official question count, but from its 240-minute exam (~95–160 total, ~19–32 in this domain), expect 5–8 from this objective — we provide 31 practice questions to prepare you well beyond it. (estimate)
31questions here
7free pages
7concepts
20%of the exam
Questions 26–30
- 26
A hospital's patient records system runs on an older operating system that is no longer supported by the vendor. The system is isolated on a separate network segment, but a recent audit found that a few workstations on that segment are missing critical security patches. Which risk factor is MOST directly increasing the likelihood of a successful attack on the patient records system?
Select an answer first - 27
An e-commerce company stores customer order data in a database. The database is backed up nightly, but the backups are stored in the same physical location as the primary database. A fire destroys the data center. Which data risk is MOST directly increased by this backup strategy?
Select an answer first - 28
A software development team uses an open-source component that is widely used across the industry. The team does not track the version of the component they use. A critical vulnerability is disclosed in the component, and the team is unsure if they are affected. Which application risk source is MOST directly highlighted by this situation?
Select an answer first - 29
Which data risk type is most directly concerned with preventing unauthorized modification of data?
Select an answer first - 30
Which of the following best defines application risk in the context of cybersecurity?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CCOA” is a trademark of its owner, used for identification only.