
Information Systems Security Architecture Professional
Domain 3Objective 2
3.2 Architect Infrastructure and System Security ISSAP Practice Questions (Page 5)
Part of the Infrastructure and System Security Architecture domain, which accounts for 32% of the ISSAP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~22–38 in this domain), expect 7–13 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)
42questions here
9free pages
14concepts
32%of the exam
Questions 21–25
- 21
Which of the following is an example of an out-of-band communication method for IT management?
Select an answer first - 22
Which physical security control is specifically designed to detect and record the movement of individuals within a facility, providing both a deterrent and an evidentiary record?
Select an answer first - 23
A data center is being designed to house a high-security application. The security architect must ensure that only authorized personnel can physically access the server racks. The facility already has a perimeter fence and security guards. Which additional physical control should be implemented to provide the most granular access control at the rack level?
Select an answer first - 24
A financial services firm is migrating a customer relationship management (CRM) application to a public cloud SaaS provider. The firm's compliance team requires that customer data be encrypted at rest and that the firm retain the ability to revoke access to the data if the SaaS contract is terminated. The SaaS provider offers built-in encryption with provider-managed keys. Which additional control should the security architect recommend to meet the compliance requirement?
Select an answer first - 25
During a major security incident, the primary corporate network is under a distributed denial-of-service (DDoS) attack, and the incident response team suspects that the network is also compromised. The team needs a reliable way to communicate and coordinate the response without relying on the compromised infrastructure. Which strategy should the security architect have implemented in advance?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSAP” is a trademark of its owner, used for identification only.