Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISC2 logo

Certified Information Systems Security Professional

Domain 3Objective 3

3.3 - Select Controls Based Upon Systems Security Requirements CISSP Practice Questions (Page 6)

Part of the Security Architecture and Engineering domain, which accounts for 13% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 1–2 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)

30questions here
6free pages
7concepts
13%of the exam

Questions 26–30

  1. 26expert · hard

    A company has implemented a security control that automatically restores systems to a known good state after a malware infection. This control is part of the company's incident response plan. Which type of control is this?

    Select an answer first
  2. 27expert · hard

    A security team has implemented a new access control system that uses biometric authentication. To validate that the control is effective, they plan to test it. Which testing approach would provide the most comprehensive validation?

    Select an answer first
  3. 28application · medium

    A company is integrating a new single sign-on (SSO) solution with its existing identity management system. The security team wants to ensure that the SSO solution does not introduce new vulnerabilities. Which action is most important during the integration phase?

    Select an answer first
  4. 29application · medium

    A retail company is required to comply with the General Data Protection Regulation (GDPR) for its European customers. The company stores personal data in a cloud database. Which control is necessary to meet GDPR requirements for data protection?

    Select an answer first
  5. 30application · medium

    A company is developing a new customer relationship management (CRM) system. The security team is at the beginning of the control selection process. What is the first step they should take to ensure the controls align with the organization's security requirements?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to CISSP

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.