Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISC2 logo

Certified Information Systems Security Professional

Domain 3Objective 4

3.4 - Understand Security Capabilities of Information Systems (IS) (e.g., Memory Protection, Trusted Platform Module (TPM), Encryption/decryption) CISSP Practice Questions (Page 5)

Part of the Security Architecture and Engineering domain, which accounts for 13% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 1–2 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)

45questions here
9free pages
15concepts
13%of the exam

Questions 21–25

  1. 21application · medium

    A security administrator is configuring a new laptop for a remote employee. The administrator wants to ensure that the laptop's hard drive is encrypted and that the encryption key is protected by a hardware component that is tied to the device. The employee should be able to log in with a password, and the drive should unlock automatically at boot without requiring a separate USB key. Which technology should the administrator use?

    Select an answer first
  2. 22expert · hard

    A multinational corporation's security team must implement a key management solution for a new payment processing system. The system requires that cryptographic keys be stored in a tamper-resistant environment, that keys be automatically rotated every 90 days, and that a designated compliance officer be able to access encrypted data if a key custodian is unavailable. The solution must also allow the compliance officer to access keys only under a dual-control process. Which solution BEST meets these requirements?

    Select an answer first
  3. 23foundation · easy

    How does Measured Boot differ from Secure Boot?

    Select an answer first
  4. 24foundation · easy

    In application-level encryption, where does the encryption and decryption of data occur?

    Select an answer first
  5. 25expert · hard

    A company encrypts its critical data with keys managed by a single key custodian. The custodian is suddenly unavailable, and the company cannot access its encrypted data. The security team must implement a solution that ensures data is recoverable in such emergencies while maintaining the confidentiality of the keys from any single individual. Which solution BEST meets these requirements?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.