
Certified Secure Software Lifecycle Professional
Domain 4Objective 2
Perform Secure Interface Design CSSLP Practice Questions (Page 3)
Part of the Secure Software Architecture and Design domain, which accounts for 15% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~11–18 in this domain), expect 2–3 from this objective — we provide 32 practice questions to prepare you well beyond it. (estimate)
32questions here
7free pages
9concepts
15%of the exam
Questions 11–15
- 11
What is the primary goal of threat modeling in protocol design?
Select an answer first - 12
A security operations center (SOC) collects logs from various sources into a central SIEM. The SOC team is concerned about an attacker modifying logs to cover their tracks. Which control is most effective in preventing log tampering?
Select an answer first - 13
A company is designing a management interface for its cloud infrastructure. The interface will be used by administrators to manage virtual machines, networks, and storage. The company wants to ensure that only authorized administrators can access the interface and that all management actions are logged. Which combination of controls is most appropriate?
Select an answer first - 14
Which characteristic is typical of a secure out-of-band management implementation?
Select an answer first - 15
What should be considered when selecting a protocol for a new application?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.