
Information Systems Security Architecture Professional
Domain 1Objective 1
1.1 Identify Legal, Regulatory, Organizational, and Industry Requirements ISSAP Practice Questions (Page 3)
Part of the Governance, Risk, and Compliance (GRC) domain, which accounts for 21% of the ISSAP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~15–25 in this domain), expect 8–13 from this objective — we provide 40 practice questions to prepare you well beyond it. (estimate)
40questions here
8free pages
12concepts
21%of the exam
Questions 11–15
- 11
Which mechanism allows a system to continue operating without interruption when a component fails?
Select an answer first - 12
An e-commerce platform experiences a surge in traffic during a flash sale, causing the application to become unresponsive. The architecture uses a single load balancer and a pool of web servers. The security architect is asked to improve resilience. Which change provides the MOST immediate improvement in fault tolerance?
Select an answer first - 13
A financial services firm outsources its customer support operations to a third-party call center. The call center will have access to customer account information. The firm's security architect must ensure the outsourcing agreement includes appropriate security obligations. Which clause is MOST critical to include?
Select an answer first - 14
What is the purpose of vendor assurance processes in supply chain security?
Select an answer first - 15
A retail company processes credit card payments in-store and via an e-commerce platform. It also shares transaction data with a third-party analytics vendor. The company is subject to PCI DSS. The security architect must design the data flow to minimize compliance scope. Which approach is most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSAP” is a trademark of its owner, used for identification only.