最新的ISC Certified Secure Software Lifecycle Professional Practice Test - CSSLP免費考試真題
Which of the following security related areas are used to protect the confidentiality, integrity, and availability of federal information systems and information processed by those systems?
正確答案: A,B,C,D,E
說明:(僅 Fast2test 成員可見)
Which of the following test methods has the objective to test the IT system from the viewpoint of a threat-source and to identify potential failures in the IT system protection schemes?
正確答案: D
說明:(僅 Fast2test 成員可見)
FITSAF stands for Federal Information Technology Security Assessment Framework. It is a methodology for assessing the security of information systems. Which of the following FITSAF levels shows that the procedures and controls are tested and reviewed?
正確答案: E
說明:(僅 Fast2test 成員可見)
Which of the following process areas does the SSE-CMM define in the 'Project and Organizational Practices' category? Each correct answer represents a complete solution. Choose all that apply.
正確答案: A,B,C
說明:(僅 Fast2test 成員可見)
You are the project manager of QSL project for your organization. You are working with your project team and several key stakeholders to create a diagram that shows how various elements of a system interrelate and the mechanism of causation within the system. What diagramming technique are you using as a part of the risk identification process?
正確答案: C
說明:(僅 Fast2test 成員可見)
Joseph works as a Software Developer for WebTech Inc. He wants to protect the algorithms and the techniques of programming that he uses in developing an application. Which of the following laws are used to protect a part of software?
正確答案: D
說明:(僅 Fast2test 成員可見)
An assistant from the HR Department calls you to ask the Service Hours & Maintenance Slots for your ERP system. In which document will you most probably find this information?
正確答案: B
說明:(僅 Fast2test 成員可見)
In 2003, NIST developed a new Certification & Accreditation (C&A) guideline known as FIPS 199. What levels of potential impact are defined by FIPS 199? Each correct answer represents a complete solution. Choose all that apply.
正確答案: B,C,D
說明:(僅 Fast2test 成員可見)
The National Information Assurance Certification and Accreditation Process (NIACAP) is the minimum standard process for the certification and accreditation of computer and telecommunications systems that handle U.S. national security information. What are the different types of NIACAP accreditation? Each correct answer represents a complete solution. Choose all that apply.
正確答案: B,C,D
說明:(僅 Fast2test 成員可見)