CISSP Exam Details

  • Exam Code
    :CISSP
  • Exam Name
    :Certified Information Systems Security Professional (CISSP)
  • Certification
    :ISC Certifications
  • Vendor
    :ISC
  • Total Questions
    :1703 Q&As
  • Last Updated
    :Jul 16, 2026

ISC CISSP Online Questions & Answers

  • Question 1221:

    Which of the following is the MAIN difference between a network-based firewall and a host-based firewall?

    A. A network-based firewall is stateful, while a host-based firewall is stateless.
    B. A network-based firewall controls traffic passing through the device, while a host-based firewall controls traffic destined for the device.
    C. A network-based firewall verifies network traffic, while a host-based firewall verifies processes and applications.
    D. A network-based firewall blocks network intrusions, while a host-based firewall blocks malware.

  • Question 1222:

    Which of the following BEST describes a rogue Access Point (AP)?

    A. An AP that is not protected by a firewall
    B. An AP not configured to use Wired Equivalent Privacy (WEP) with Triple Data Encryption Algorithm (3DES)
    C. An AP connected to the wired infrastructure but not under the management of authorized network administrators
    D. An AP infected by any kind of Trojan or Malware

  • Question 1223:

    Which access control method is based on users issuing access requests on system resources, features assigned to those resources, the operational or situational context, and a set of policies specified in terms of those features and context?

    A. Mandatory Access Control (MAC)
    B. Role Based Access Control (RBAC)
    C. Discretionary Access Control (DAC)
    D. Attribute Based Access Control (ABAC)

  • Question 1224:

    Which one of the following affects the classification of data?

    A. Assigned security label
    B. Multilevel Security (MLS) architecture
    C. Minimum query size
    D. Passage of time

  • Question 1225:

    Which of the following BEST describes the purpose of the security functional requirements of Common Criteria?

    A. Level of assurance of the Target of Evaluation (TOE) in intended operational environment
    B. Selection to meet the security objectives stated in test documents
    C. Security behavior expected of a TOE
    D. Definition of the roles and responsibilities

  • Question 1226:

    The security team plans on using automated account reconciliation in the corporate user access review process. Which of the following must be implemented for the BEST results with fewest errors when running the audit?

    A. Removal of service accounts from review
    B. Segregation of Duties (SoD)
    C. Clear provisioning policies
    D. Frequent audits

  • Question 1227:

    Which of the following is a common risk with fiber optical communications, and what is the associated mitigation measure?

    A. Data emanation, deploying Category (CAT) 6 and higher cable wherever feasible
    B. Light leakage, deploying shielded cable wherever feasible
    C. Cable damage, deploying ring architecture wherever feasible
    D. Electronic eavesdropping, deploying end-to-end encryption wherever feasible

  • Question 1228:

    Which security feature fully encrypts code and data as it passes to the servers and only decrypts below the hypervisor layer?

    A. File-system level encryption
    B. Transport Layer Security (TLS)
    C. Key management service
    D. Trusted execution environments

  • Question 1229:

    The core component of Role Based Access Control (RBAC) must be constructed of defined data elements. Which elements are required?

    A. Users, permissions, operations, and protected objects
    B. Roles, accounts, permissions, and protected objects
    C. Users, roles, operations, and protected objects
    D. Roles, operations, accounts, and protected objects

  • Question 1230:

    What is the BEST approach to addressing security issues in legacy web applications?

    A. Debug the security issues
    B. Migrate to newer, supported applications where possible
    C. Conduct a security assessment
    D. Protect the legacy application with a web application firewall

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only ISC exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CISSP exam preparations and ISC certification application, do not hesitate to visit our Vcedump.com to find your solutions here.