Free CISSP Exam Braindumps (page: 12)

Page 11 of 122

Which of the following is the BEST option to reduce the network attack surface of a system?

  1. Disabling unnecessary ports and services
  2. Ensuring that there are no group accounts on the system
  3. Uninstalling default software on the system
  4. Removing unnecessary system user accounts

Answer(s): A



The security architect is designing and implementing an internal certification authority to generate digital certificates for all employees. Which of the following is the
BEST solution to securely store the private keys?

  1. Physically secured storage device
  2. Trusted Platform Module (TPM)
  3. Encrypted flash drive
  4. Public key infrastructure (PKI)

Answer(s): B



The existence of physical barriers, card and personal identification number (PIN) access systems, cameras, alarms, and security guards BEST describes this security approach?

  1. Access control
  2. Security information and event management (SIEM)
  3. Defense-in-depth
  4. Security perimeter

Answer(s): C



A hospital enforces the Code of Fair Information Practices. What practice applies to a patient requesting their medical records from a web portal?

  1. Purpose specification
  2. Collection limitation
  3. Use limitation
  4. Individual participation

Answer(s): D






Post your Comments and Discuss ISC CISSP exam with other Community members: