
Certified Information Systems Security Professional
Domain 3Objective 4
3.4 - Understand Security Capabilities of Information Systems (IS) (e.g., Memory Protection, Trusted Platform Module (TPM), Encryption/decryption) CISSP Practice Questions (Page 3)
Part of the Security Architecture and Engineering domain, which accounts for 13% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 1–2 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
15concepts
13%of the exam
Questions 11–15
- 11
Which database encryption approach allows different encryption keys for different columns, providing more granular control over access to sensitive data?
Select an answer first - 12
What is the role of a Certificate Authority (CA) in a Public Key Infrastructure (PKI)?
Select an answer first - 13
What is the primary purpose of a secure enclave (e.g., Intel SGX) in a computing system?
Select an answer first - 14
What is the primary purpose of Secure Boot in a modern computer system?
Select an answer first - 15
Which process ensures that cryptographic keys are replaced with new keys after a defined period or after a suspected compromise?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.