
Certified in Cybersecurity
Domain 1Objective 3
1.3 - Understand Security Controls CC Practice Questions (Page 3)
Part of the Security Principles domain, which accounts for 26% of the CC exam. ISC2 does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–21 in this domain), expect 3–4 from this objective — we provide 12 practice questions to prepare you well beyond it. (estimate)
12questions here
3free pages
3concepts
26%of the exam
Questions 11–12
- 11
A hospital is updating its security program. The CISO mandates that all staff complete a phishing-awareness course before receiving network credentials. The IT team simultaneously deploys an email gateway that quarantines suspicious messages. Which statement best describes the relationship between these two controls?
Select an answer first - 12
A company's security team is implementing a data loss prevention (DLP) solution that scans outbound emails for sensitive data and blocks them if they contain credit card numbers. The team also updates the employee handbook to include a section on proper handling of customer data. Which statement accurately describes the DLP solution?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CC
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CC” is a trademark of its owner, used for identification only.