ISC CISSP-ISSAP ISSAP Information Systems Security Architecture Professional Online Training
ISC CISSP-ISSAP Online Training
The questions for CISSP-ISSAP were last updated at Jul 12,2025.
- Exam Code: CISSP-ISSAP
- Exam Name: ISSAP Information Systems Security Architecture Professional
- Certification Provider: ISC
- Latest update: Jul 12,2025
Which of the following protocols uses the Internet key Exchange (IKE) protocol to set up security associations (SA)?
- A . IPSec
- B . L2TP
- C . LEAP
- D . ISAKMP
Sam is creating an e-commerce site. He wants a simple security solution that does not require each customer to have an individual key.
Which of the following encryption methods will he use?
- A . Asymmetric encryption
- B . Symmetric encryption
- C . S/MIME
- D . PGP
Computer networks and the Internet are the prime mode of Information transfer today.
Which of the following is a technique used for modifying messages, providing Information and Cyber security, and reducing the risk of hacking attacks during communications and message passing over the Internet?
- A . Risk analysis
- B . Firewall security
- C . Cryptography
- D . OODA loop
An organization wants to allow a certificate authority to gain access to the encrypted data and create digital signatures on behalf of the user. The data is encrypted using the public key from a user’s certificate.
Which of the following processes fulfills the above requirements?
- A . Key escrow
- B . Key storage
- C . Key revocation
- D . Key recovery
Which of the following are the primary components of a discretionary access control (DAC) model? Each correct answer represents a complete solution. Choose two.
- A . User’s group
- B . File and data ownership
- C . Smart card
- D . Access rights and permissions
Which of the following encryption modes can make protocols without integrity protection even more susceptible to replay attacks, since each block gets decrypted in exactly the same way?
- A . Cipher feedback mode
- B . Cipher block chaining mode
- C . Output feedback mode
- D . Electronic codebook mode
You work as a technician for Trade Well Inc. The company is in the business of share trading. To enhance security, the company wants users to provide a third key (apart from ID and password) to access the company’s Web site.
Which of the following technologies will you implement to accomplish the task?
- A . Smart cards
- B . Key fobs
- C . VPN
- D . Biometrics
Which of the following layers of the OSI model corresponds to the Host-to-Host layer of the TCP/IP model?
- A . The transport layer
- B . The presentation layer
- C . The session layer
- D . The application layer
You are the Network Administrator for a college. You watch a large number of people (some not even students) going in and out of areas with campus computers (libraries, computer labs, etc.). You have had a problem with laptops being stolen.
What is the most cost effective method to prevent this?
- A . Smart card access to all areas with computers.
- B . Use laptop locks.
- C . Video surveillance on all areas with computers.
- D . Appoint a security guard.
The ATM of a bank is robbed by breaking the ATM machine.
Which of the following physical security devices can now be used for verification and historical analysis of the ATM robbery?
- A . Key card
- B . Biometric devices
- C . Intrusion detection systems
- D . CCTV Cameras