ISC CISSP-ISSAP ISSAP Information Systems Security Architecture Professional Online Training
ISC CISSP-ISSAP Online Training
The questions for CISSP-ISSAP were last updated at Jul 09,2025.
- Exam Code: CISSP-ISSAP
- Exam Name: ISSAP Information Systems Security Architecture Professional
- Certification Provider: ISC
- Latest update: Jul 09,2025
Mark has been hired by a company to work as a Network Assistant. He is assigned the task to configure a dial-up connection. He is configuring a laptop.
Which of the following protocols should he disable to ensure that the password is encrypted during remote access?
- A . SPAP
- B . MSCHAP
- C . PAP
- D . MSCHAP V2
Which of the following disaster recovery tests includes the operations that shut down at the primary site, and are shifted to the recovery site according to the disaster recovery plan?
- A . Structured walk-through test
- B . Simulation test
- C . Full-interruption test
- D . Parallel test
In which of the following network topologies does the data travel around a loop in a single direction and pass through each device?
- A . Ring topology
- B . Tree topology
- C . Star topology
- D . Mesh topology
You are the Network Administrator for a small business. You need a widely used, but highly secure hashing algorithm.
Which of the following should you choose?
- A . AES
- B . SHA
- C . EAP
- D . CRC32
Which of the following can be configured so that when an alarm is activated, all doors lock and the suspect or intruder is caught between the doors in the dead-space?
- A . Man trap
- B . Biometric device
- C . Host Intrusion Detection System (HIDS)
- D . Network Intrusion Detection System (NIDS)
Which of the following refers to a location away from the computer center where document copies and backup media are kept?
- A . Storage Area network
- B . Off-site storage
- C . On-site storage
- D . Network attached storage
Which of the following encryption methods does the SSL protocol use in order to provide communication privacy, authentication, and message integrity? Each correct answer represents a part of the solution. Choose two.
- A . Public key
- B . IPsec
- C . MS-CHAP
- D . Symmetric
John used to work as a Network Administrator for We-are-secure Inc. Now he has resigned from the company for personal reasons. He wants to send out some secret information of the company. To do so, he takes an image file and simply uses a tool image hide and embeds the secret file within an image file of the famous actress, Jennifer Lopez, and sends it to his Yahoo mail id. Since he is using the image file to send the data, the mail server of his company is unable to filter this mail.
Which of the following techniques is he performing to accomplish his task?
- A . Email spoofing
- B . Social engineering
- C . Web ripping
- D . Steganography
Which of the following intrusion detection systems (IDS) monitors network traffic and compares it against an established baseline?
- A . Network-based
- B . Anomaly-based
- C . File-based
- D . Signature-based
Which of the following are the initial steps required to perform a risk analysis process? Each correct answer represents a part of the solution. Choose three.
- A . Estimate the potential losses to assets by determining their value.
- B . Establish the threats likelihood and regularity.
- C . Valuations of the critical assets in hard costs.
- D . Evaluate potential threats to the assets.