Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISC2 logo

Information Systems Security Architecture Professional

Domain 1Objective 1

1.1 Identify Legal, Regulatory, Organizational, and Industry Requirements ISSAP Practice Questions (Page 1)

Part of the Governance, Risk, and Compliance (GRC) domain, which accounts for 21% of the ISSAP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~15–25 in this domain), expect 8–13 from this objective — we provide 40 practice questions to prepare you well beyond it. (estimate)

40questions here
8free pages
12concepts
21%of the exam

Questions 1–5

  1. 1foundation · easy

    Which of the following is a key element of a supply chain security program?

    Select an answer first
  2. 2foundation · easy

    What does the recovery time objective (RTO) define in disaster recovery planning?

    Select an answer first
  3. 3application · medium

    A financial institution is required by its regulator to have a business continuity plan (BCP) that is tested at least annually. The institution's security architect is responsible for ensuring the BCP is effective. Which activity is MOST critical to include in the annual test?

    Select an answer first
  4. 4foundation · easy

    What is the primary purpose of a data classification scheme?

    Select an answer first
  5. 5application · medium

    A software company offers a consumer app that collects personal data from users in California and the EU. The company wants to support user requests for data deletion. The security architect must design the data lifecycle. Which requirement must be addressed FIRST?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSAP” is a trademark of its owner, used for identification only.