
Certified Secure Software Lifecycle Professional
Domain 3Objective 3
Identify Data Classification Requirements CSSLP Practice Questions (Page 4)
Part of the Secure Software Requirements domain, which accounts for 13% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 1–2 from this objective — we provide 20 practice questions to prepare you well beyond it. (estimate)
20questions here
4free pages
5concepts
13%of the exam
Questions 16–20
- 16
Which label is most appropriate for a dataset containing customer credit card numbers?
Select an answer first - 17
Which sequence correctly represents the data lifecycle stages?
Select an answer first - 18
A company is building a data lake to store both structured data from transactional systems and unstructured data from social media feeds. The security team wants to apply consistent classification labels across both types, but the data engineering team argues that the classification approach must differ. What is the best way to reconcile these views?
Select an answer first - 19
A government agency is implementing a data classification program. They have a dataset of citizen records that is classified as 'restricted'. The agency's data custodian is responsible for implementing access controls, but the data owner is responsible for defining who should have access. A new system is being deployed, and the custodian needs to know the access requirements. What should the custodian do?
Select an answer first - 20
How should publicly available information be handled compared to PII?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CSSLP
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.