
Certified Information Systems Security Professional
Domain 3Objective 4
3.4 - Understand Security Capabilities of Information Systems (IS) (e.g., Memory Protection, Trusted Platform Module (TPM), Encryption/decryption) CISSP Practice Questions (Page 1)
Part of the Security Architecture and Engineering domain, which accounts for 13% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 1–2 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
15concepts
13%of the exam
Questions 1–5
- 1
Which encryption mode is commonly used for authenticated encryption, providing both confidentiality and integrity in a single operation?
Select an answer first - 2
Which security control is most commonly used to protect data in transit over a network?
Select an answer first - 3
Which cryptographic mechanism provides non-repudiation by allowing the recipient to prove that a message was sent by a specific sender?
Select an answer first - 4
Which of the following is a typical use case for a Hardware Security Module (HSM)?
Select an answer first - 5
A security architect is reviewing a legacy C++ application that processes highly sensitive data. The application is known to have a buffer overflow vulnerability in a module that parses untrusted input. The architect must choose a mitigation that prevents the vulnerability from being exploited to execute arbitrary code, but the application cannot be recompiled. Which control is MOST effective in this scenario?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.