Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

System Security Practitioner (SSCP) Final Test - CET 2688C well answered to pass

Rating
-
Sold
-
Pages
34
Grade
A+
Uploaded on
21-09-2024
Written in
2024/2025

System Security Practitioner (SSCP) Final Test - CET 2688C well answered to pass

Institution
SSCP - Systems Security Certified Practitioner
Course
SSCP - Systems Security Certified Practitioner

Content preview

System Security Practitioner (SSCP)
Final Test - CET 2688C

Host-based IDS



An HIDS (host-based intrusion detection system) is considered as technical/logical control. It monitors
activity on a single computer only, including process calls and information recorded in system,
application, security, and host-based firewall logs. - correct answer ✔✔Which of the following items is
not considered as a physical access control?



Vulnerabilities: Shortcomings in a system



Risks: Measured by the likelihood that any particular threat may be carried out



Threats: Possible violations - correct answer ✔✔What factors must you consider for the design and
implementation of access control mechanisms?



Detective - correct answer ✔✔Which of the following types of access control seeks to discover evidence
of an unwanted, unauthorized, or illicit behavior or an activity?



Security Awareness Program



Information Security Policy - correct answer ✔✔What are the examples of administrative access
controls?



Each correct answer represents a complete solution. Choose all that apply



Biba

,The Biba model, also called the Biba Integrity model, is a formal state transition system of computer
security policy used to depict a set of access control rules designed for ensuring data integrity. - correct
answer ✔✔Which of the following models is designed for ensuring data integrity?



Access control matrix - correct answer ✔✔A large table includes multiple subjects and objects and
identifies the access to various objects. What is this table called?



KryptoKnight



Kerberos



SESAME - correct answer ✔✔Single sign-on (SSO) is a centralized access control technique that allows a
subject to be authenticated only once on a system. Which of the following are examples of SSO?



Each correct answer represents a complete solution. Choose all that apply.



Mandatory - correct answer ✔✔Which type of access control defines the statement below?



"It uses a predefined set of access privileges for an object of the system."



Principle of least privilege - correct answer ✔✔Which of the following ensures that a user is assigned
with only required access and permission to complete their work?



- Do not share computer accounts or passwords with others.

- Do not use the same password for more than one account.

- Do not ever write down a password.

- Do not communicate a password by telephone, email, or instant messaging.

- Change passwords whenever there is a doubt, as they may have been compromised.

- Use alpha-numeric passwords. - correct answer ✔✔What are the guidelines of a good password policy?

,Each correct answer represents a complete solution. Choose all that apply.



It follows the principle of least privilege



It indicates about the privileges granted to users - correct answer ✔✔Which of the following statements
are true about entitlement?



Each correct answer represents a complete solution. Choose two.



Promote and preserve public trust and confidence in information and systems.



Promote the understanding and acceptance of prudent information security measures.



Preserve and strengthen the integrity of the public infrastructure. - correct answer ✔✔Which of the
following 'Code of Ethics Canons' are described under 'Protect society, the commonwealth, and the
infrastructure'?



Each correct answer represents a complete solution. Choose all that apply.



Asset management - correct answer ✔✔Which of the following specifies systems that inspects and
maintains things that are of value to an entity or group?



Confidential

Private

Sensitive

Public - correct answer ✔✔Which of the following levels are included in the commercial
business/private sector data classification?



Each correct answer represents a complete solution. Choose all that apply.

, It specifies the step that manages important items within an organization.



It helps organizations to track hardware and software of the systems. - correct answer ✔✔Which of the
following statements are true about asset management?



Each correct answer represents a complete solution. Choose all that apply.



Life cycle assurance: Ensures that a trusted computer base is designed with the controlled standards



Operational assurance: Concerned with the basic features and architecture of a system - correct answer
✔✔Which type of assurances are defined by the TCSEC (Trusted Computer System Evaluation Criteria)
book?



Each correct answer represents a complete solution. Choose all that apply.



It involves a computer-to-computer transaction



It controls the transfer of business documents



Electronic Data Interchange is a set of standards that involves only a computer-to-computer transaction
for controlling the exchange of business documents, such as purchase orders, invoices, and sales orders,
between organizations. This standard is used for American domestic trade. - correct answer ✔✔Which
of the following statements are related to EDI?



Each correct answer represents a complete solution. Choose all that apply.



Confidentiality - correct answer ✔✔Which of the following principles prevents the disclosure of
information to unauthorized individuals or systems?



Sniffing - correct answer ✔✔Which of the following is a process that captures network packets, break
them apart, and examine the contents?

Written for

Institution
SSCP - Systems Security Certified Practitioner
Course
SSCP - Systems Security Certified Practitioner

Document information

Uploaded on
September 21, 2024
Number of pages
34
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$20.49
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF


Also available in package deal

Thumbnail
Package deal
SSCP-SYSTEMS SECURITY CERTIFIED PRACTITIONER EXAM (package deal ) 2024/2025 already passed!
-
10 2024
$ 185.90 More info

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
StuviaExamHub Havard School
View profile
Follow You need to be logged in order to follow users or courses
Sold
469
Member since
4 year
Number of followers
356
Documents
19161
Last sold
2 weeks ago
EXAM HUB (LATEST UPDATE)

QUALITY WORK OF ALL KIND OF QUIZ or EXAM WITH GUARANTEE OF AN A+ latest updates Im an expert on major courses especially; psychology,Nursing, Human resource Management & Project writing. Assisting students with quality work is my first priority. I ensure scholarly standards in my documents . I assure a GOOD GRADE if you will use my work. Feel free to purchase n recommend others for 100% pass EXAMS!

3.7

90 reviews

5
43
4
10
3
17
2
7
1
13

Trending documents

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions