
Information Systems Security Engineering Professional
Domain 5Objective 3
Participate in Change Management ISSEP Practice Questions (Page 4)
Part of the Secure Operations, Change Management and Disposal domain, which accounts for 14% of the ISSEP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~10–17 in this domain), expect 3–4 from this objective — we provide 19 practice questions to prepare you well beyond it. (estimate)
19questions here
4free pages
4concepts
14%of the exam
Questions 16–19
- 16
A proposed change to the firewall rules will allow outbound HTTPS traffic from a specific subnet to a new cloud service. During the change review, the security team identifies that this subnet also hosts a legacy application that is not patched and is known to be vulnerable to command injection. What is the most critical additional impact to assess?
Select an answer first - 17
Why is it important to identify dependencies and affected components during a change impact assessment?
Select an answer first - 18
A proposed change will move a critical database from an on-premises data center to a cloud provider. The change review must consider the impact on data residency requirements. Which of the following is the most important factor to assess?
Select an answer first - 19
After implementing a change to the database connection pooling settings, the operations team reports that the application is now experiencing intermittent timeouts. The change was approved and deployed, but the verification step was skipped due to time pressure. What is the most appropriate immediate action?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to ISSEP
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSEP” is a trademark of its owner, used for identification only.