
Systems Security Certified Practitioner
Domain 7Objective 1
7.1 - Identify and Analyze Malicious Code and Activity SSCP Practice Questions (Page 3)
Part of the Systems and Application Security domain, which accounts for 15% of the SSCP exam. ISC2 does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 2–2 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)
25questions here
5free pages
7concepts
15%of the exam
Questions 11–15
- 11
Which type of malware is specifically designed to hide its presence and maintain privileged access by intercepting and modifying system calls or operating system functions?
Select an answer first - 12
Which type of malicious activity is best described as a long-term, targeted intrusion by a well-funded adversary that aims to steal sensitive data or maintain persistent access over an extended period?
Select an answer first - 13
How does behavior analytics, such as machine learning, help detect malicious activity that traditional signature-based tools might miss?
Select an answer first - 14
A security operations center (SOC) is evaluating a new detection tool. The tool learns the normal behavior of each user (e.g., login times, file access patterns, and data transfer volumes) and then flags deviations from that baseline. Which detection approach is the tool using?
Select an answer first - 15
Which social engineering method is characterized by targeting senior executives with highly personalized phishing emails to trick them into revealing sensitive information or authorizing fraudulent transfers?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “SSCP” is a trademark of its owner, used for identification only.