
Certified Data Privacy Solutions Engineer
Domain 4Objective 2
Security and Access Controls CDPSE Practice Questions (Page 8)
Part of the Privacy Engineering domain, which accounts for 39% of the CDPSE exam.
48questions here
10free pages
16concepts
39%of the exam
Questions 36–40
- 36
Which system hardening technique involves removing or disabling software components that are not required for the system's function?
Select an answer first - 37
A large e-commerce company is redesigning its order management system. The system will handle payment card data and personal customer information. The privacy engineer is leading a threat modeling workshop. The team has identified that a malicious insider with database access could modify order records to hide fraudulent transactions. Which threat modeling approach would best help the team systematically address this risk?
Select an answer first - 38
Which authorization model is best suited for environments that require fine-grained access decisions based on dynamic attributes like time of day or location?
Select an answer first - 39
In the context of IAM, which term refers to the process of verifying that a user is who they claim to be?
Select an answer first - 40
What is the purpose of key rotation in cryptographic key management?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CDPSE” is a trademark of its owner, used for identification only.