CISSP-ISSMP Exam Details

  • Exam Code
    :CISSP-ISSMP
  • Exam Name
    :ISSMP - Information Systems Security Management Professional (ISSMP)
  • Certification
    :ISC Certifications
  • Vendor
    :ISC
  • Total Questions
    :218 Q&As
  • Last Updated
    :May 31, 2026

ISC CISSP-ISSMP Online Questions & Answers

  • Question 81:

    Against which of the following does SSH provide protection? Each correct answer represents a complete solution. Choose two.

    A. IP spoofing
    B. Broadcast storm
    C. Password sniffing
    D. DoS attack

  • Question 82:

    You company suspects an employee of sending unauthorized emails to competitors. These emails are alleged to contain confidential company dat a. Which of the following is the most important step for you to take in preserving the chain of custody?

    A. Preserve the email server including all logs.
    B. Seize the employee's PC.
    C. Make copies of that employee's email.
    D. Place spyware on the employee's PC to confirm these activities.

  • Question 83:

    Which of the following statements are true about a hot site? Each correct answer represents a complete solution. Choose all that apply.

    A. It can be used within an hour for data recovery.
    B. It is cheaper than a cold site but more expensive than a worm site.
    C. It is the most inexpensive backup site.
    D. It is a duplicate of the original site of the organization, with full computer systems as well as near-complete backups of user data.

  • Question 84:

    Fill in the blank with an appropriate phrase.___________ is the process of using a strategy and plan of what patches should be applied to which systems at a specified time. Correct

    A. Patch management

  • Question 85:

    Your company is covered under a liability insurance policy, which provides various liability coverage for information security risks, including any physical damage of assets, hacking attacks, etc. Which of the following risk management techniques is your company using?

    A. Risk mitigation
    B. Risk transfer
    C. Risk acceptance
    D. Risk avoidance

  • Question 86:

    You work as a Web Administrator for Perfect World Inc. The company is planning to host an E-commerce Web site. You are required to design a security plan for it. Client computers with different operating systems will access the Web server.

    How will you configure the Web server so that it is secure and only authenticated users are able to access it? Each correct answer represents a part of the solution. Choose two.

    A. Use encrypted authentication.
    B. Use the SSL protocol.
    C. Use the EAP protocol.
    D. Use Basic authentication.

  • Question 87:

    Which of the following is a process of monitoring data packets that travel across a network?

    A. Password guessing
    B. Packet sniffing
    C. Shielding
    D. Packet filtering

  • Question 88:

    Which of the following ports is the default port for Layer 2 Tunneling Protocol (L2TP) ?

    A. UDP port 161
    B. TCP port 443
    C. TCP port 110
    D. UDP port 1701

  • Question 89:

    Which of the following methods can be helpful to eliminate social engineering threat? Each correct answer represents a complete solution. Choose three.

    A. Password policies
    B. Vulnerability assessments
    C. Data encryption
    D. Data classification

  • Question 90:

    Which of the following rated systems of the Orange book has mandatory protection of the TCB?

    A. B-rated
    B. C-rated
    C. D-rated
    D. A-rated

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only ISC exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CISSP-ISSMP exam preparations and ISC certification application, do not hesitate to visit our Vcedump.com to find your solutions here.