
Certified Information Systems Security Professional
Domain 3Objective 1
3.1 - Research, Implement and Manage Engineering Processes Using Secure Design Principles CISSP Practice Questions (Page 1)
Part of the Security Architecture and Engineering domain, which accounts for 13% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 1–2 from this objective — we provide 24 practice questions to prepare you well beyond it. (estimate)
24questions here
5free pages
11concepts
13%of the exam
Questions 1–5
- 1
A multinational company has employees working from various locations and using cloud-based applications. The security team wants to provide secure access to these applications based on user identity and context, while also simplifying network management. Which solution BEST meets these requirements?
Select an answer first - 2
A company is implementing a zero trust architecture. They have a mix of on-premises and cloud-based applications. The security team is evaluating different access control solutions. Which solution BEST aligns with the zero trust model?
Select an answer first - 3
A company is developing a new fitness tracking app. The app will collect users' health data, including heart rate and exercise routines. The company wants to comply with privacy regulations and build user trust. Which approach BEST demonstrates privacy by design?
Select an answer first - 4
What is the primary purpose of threat modeling in the system design process?
Select an answer first - 5
Which of the following is an example of a fail-secure design?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.