CISSP試験無料問題集「ISC Certified Information Systems Security Professional (CISSP) 認定」

Which term describes the amount of time an organization determines it can tolerate the loss of data, typically measured backward from the point of disruption?

解説: (GoShiken メンバーにのみ表示されます)
Which of the following BEST describes "Golden Ticket" attacks in a Kerberos environment?

解説: (GoShiken メンバーにのみ表示されます)
Single sign-on (SSO) for federated identity management (FIM) must be implemented and managed so that authorization mechanisms protect access to privileged information using OpenID Connect (OIDC) token or Security Assertion Markup Language (SAML) assertion. What is the BEST method to use to protect them?

Internet protocol security (IPSec), point-to-point tunneling protocol (PPTP), and secure sockets Layer (SSL) all use Which of the following to prevent replay attacks?

解説: (GoShiken メンバーにのみ表示されます)
Which of the following is an initial consideration when developing an information security management system?

解説: (GoShiken メンバーにのみ表示されます)
The World Trade Organization's (WTO) agreement on Trade-Related Aspects of Intellectual Property Rights (TRIPS) requires authors of computer software to be given the

解説: (GoShiken メンバーにのみ表示されます)
An organization implements a Remote Access Server (RAS). Once users correct to the server, digital certificates are used to authenticate their identity. What type of Extensible Authentication Protocol (EAP) would the organization use dring this authentication?

解説: (GoShiken メンバーにのみ表示されます)
Which of the following BEST describes the purpose of Border Gateway Protocol (BGP)?

解説: (GoShiken メンバーにのみ表示されます)
The process of mutual authentication involves a computer system authenticating a user and authenticating the

解説: (GoShiken メンバーにのみ表示されます)
At a MINIMUM, audits of permissions to individual or group accounts should be scheduled

解説: (GoShiken メンバーにのみ表示されます)
How long should the records on a project be retained?

解説: (GoShiken メンバーにのみ表示されます)
Which of the following BEST describes the concept of "chain of custody" in digital forensics?

解説: (GoShiken メンバーにのみ表示されます)
Which of the following techniques BEST prevents buffer overflows?

解説: (GoShiken メンバーにのみ表示されます)
An organization has decided to contract with a cloud-based service provider to leverage their identity as a service offering. They will use Open Authentication (OAuth) 2.0 to authenticate external users to the organization's services. As part of the authentication process, which of the following must the end user provide?

解説: (GoShiken メンバーにのみ表示されます)
A project manager for a large software firm has acquired a government contract that generates large amounts of Controlled Unclassified Information (CUI). The organization's information security manager has received a request to transfer project-related CUI between systems of differing security classifications. What role provides the authoritative guidance for this transfer?

解説: (GoShiken メンバーにのみ表示されます)