ISC2 CC Exam Actual Questions
Certified in Cybersecurity (Page 9 )

Updated On: 18-Jul-2026

Mark is configuring an automated data transfer between two hosts and is choosing an authentication technique for one host to connect to the other host.
What approach would be best-suited for this scenario?

  1. Biometric
  2. Smart Card
  3. SSH Key
  4. Hard Coded Password

Answer(s): C



Natalia is concerned about the security of his organization's domain name records and would like to adopt a technology that ensures their authenticity by adding digital signatures. Select the MOST appropriate technology to use?

  1. DNSSIGN
  2. DNSSEC
  3. CERTDNS
  4. DNS2

Answer(s): B



What cybersecurity principle focuses on granting users only the privileges necessary to perform their job functions?

  1. Least privilege (Correct)
  2. defense in depth
  3. separation of duties
  4. need-to-know basis

Answer(s): A



What is the primary purpose of a firewall in network security?

  1. Encrypt data transmissions
  2. Prevent unauthorized access
  3. Monitor network traffic
  4. Backup critical data

Answer(s): B



What is the primary goal of a risk management process in cybersecurity?

  1. to eliminate all cybersecurity risks
  2. to transfer all cybersecurity risks to a third party
  3. to identify, assess, and mitigate cybersecurity risks to an acceptable level (Correct)
  4. to ignore cybersecurity risks and focus on incident response

Answer(s): C



What is the main purpose of using digital signatures in communication security?

  1. To encrypt sensitive data during transmission
  2. To verify the identity of the sender and ensure the integrity of the message (Correct)
  3. To prevent unauthorized access to a network
  4. To compress data to reduce bandwidth usage

Answer(s): B



What is the primary goal of implementing input validation in application security?

  1. To ensure all inputs are stored in a secure database
  2. To prevent unauthorized access to the application
  3. To validate and sanitize user inputs to prevent code injection attacks (Correct)
  4. To encrypt sensitive data transmitted between the client and server

Answer(s): C



Which of the following is a common security measure to prevent Cross Site Scripting (XSS) attacks in web applications?

  1. implementing strong password policies
  2. using a firewall to block incoming traffic
  3. validating and sanitizing user input (Correct)
  4. encrypting data during transmission

Answer(s): C



Viewing page 9 of 52
Viewing questions 65 - 72 out of 407 questions


Post your Comments and Discuss ISC2 CC exam prep with other Community members:

AI Tutor AI Tutor 👋 I’m here to help!