June 22 [Wed], 2016, 23:33

CISSP認定資格とは、(ISC)2(International Information Systems Security Certification Consortium)が認定を行っている国際的に認められた情報セキュリティ・プロフェッショナル認証資格です。

Novell、Deloitte Touche Tohmatsu、大手ヘルスケアサービス企業その他主要企業において、CISSP認定資格の取得が情報セキュリティ関連業務従事者の必須事項とされており、世界各国で87,000名以上(2013年4月現在)がCISSP認定資格を保持しています。

たくさんの人は順調にISCのCISSP基礎問題集を合格します。どうしてISCのCISSP基礎問題集を合格します。あなたはもしかして頑張ってISCのCISSP基礎問題集試験認証を持つと思います。では、私はあなたに教えてやります。彼らたちはISCのCISSP基礎問題集を合格します、その原因はISCのCISSP基礎問題集を使っています。

試験科目:「Certified Information Systems Security Professional」
NO.1 Which of the following BEST describes a Protection Profile (PP)?
A. A document that expresses an implementation dependent set of security requirements which
contains only the security functional requirements.
B. A document that is used to develop an IT security product from its security requirements
C. A document that represents evaluated products where there is a one-to-one correspondence
between a PP and a Security Target (ST).
D. A document that expresses an implementation independent set of security requirements for an IT
product that meets specific consumer needs.
Answer: D

NO.2 Refer to the information below to answer the question.
A security practitioner detects client-based attacks on the organization's network. A plan will be
necessary to address these concerns.
In the plan, what is the BEST approach to mitigate future internal client-based attacks?
A. Screen for harmful exploits of client-side services before implementation.
B. Block all client side web exploits at the perimeter.
C. Remove all non-essential client-side web services from the network.
D. Harden the client image before deployment.
Answer: D

NO.3 The FIRST step in building a firewall is to
A. perform a risk analysis to identify issues to be addressed.
B. define the intended audience who will read the firewall policy.
C. assign the roles and responsibilities of the firewall administrators.
D. identify mechanisms to encourage compliance with the policy.
Answer: A

NO.4 Following the completion of a network security assessment, which of the following can BEST be
A. All unpatched vulnerabilities have been identified
B. The network is compliant to industry standards
C. A penetration test of the network will fail
D. The effectiveness of controls can be accurately measured
Answer: D

