Latihan Keamanan CISSP

Latih 60 soal CISSP tentang tata kelola, risiko, keamanan aset, arsitektur, jaringan, IAM, operasi, dan pengembangan aman.

Tingkat: CISSP Kesulitan: advanced 60 soal 60 mnt
Jawab setiap soal CISSP, pilih atau ketik jawaban, lalu periksa penjelasannya. Jawaban salah disimpan secara lokal.
Hari beruntun: 0 hari Tersimpan hanya di perangkat ini
Kemajuan 0 / 60
Soal 1

Which CISSP domain covers security governance, risk management, and legal compliance?

Pilih jawaban
Soal 2

Which access principle means users receive only the permissions required for their role?

Pilih jawaban
Soal 3

Which type of security control detects and reports a security incident?

Pilih jawaban
Soal 4

What is the primary purpose of a risk assessment?

Pilih jawaban
Soal 5

What is residual risk?

Pilih jawaban
Soal 6

Which security document states management expectations and is typically high-level?

Pilih jawaban
Soal 7

What is separation of duties designed to prevent?

Pilih jawaban
Soal 8

What is defense in depth?

Pilih jawaban
Soal 9

Which security goal protects data from unauthorized disclosure?

Pilih jawaban
Soal 10

Which security goal ensures data is not modified without authorization?

Pilih jawaban
Soal 11

Which security goal ensures systems remain accessible to authorized users?

Pilih jawaban
Soal 12

What is authentication?

Pilih jawaban
Soal 13

What is authorization?

Pilih jawaban
Soal 14

Which mechanism provides non-repudiation?

Pilih jawaban
Soal 15

What is the main purpose of cryptography?

Pilih jawaban
Soal 16

Which encryption type uses the same key for encryption and decryption?

Pilih jawaban
Soal 17

In public-key cryptography, which key is used to encrypt a message sent to a recipient?

Pilih jawaban
Soal 18

What is a cryptographic hash primarily used for?

Pilih jawaban
Soal 19

Which network device filters traffic based on rules?

Pilih jawaban
Soal 20

What is a VLAN used for?

Pilih jawaban
Soal 21

Which protocol provides encrypted communication for web traffic?

Pilih jawaban
Soal 22

Which technology creates an encrypted tunnel for remote network access?

Pilih jawaban
Soal 23

What is a DMZ?

Pilih jawaban
Soal 24

Which concept describes classifying data and applying protection based on its sensitivity?

Pilih jawaban
Soal 25

What is Identity and Access Management (IAM)?

Pilih jawaban
Soal 26

What is a directory service?

Pilih jawaban
Soal 27

Which authentication factor is described as something the user knows?

Pilih jawaban
Soal 28

Which authentication factor is described as something the user has?

Pilih jawaban
Soal 29

Which authentication factor is described as something the user is?

Pilih jawaban
Soal 30

What is single sign-on (SSO)?

Pilih jawaban
Soal 31

What is multi-factor authentication?

Pilih jawaban
Soal 32

What is privileged access management?

Pilih jawaban
Soal 33

What does SIEM provide?

Pilih jawaban
Soal 34

What does SOAR stand for?

Pilih jawaban
Soal 35

What is a vulnerability scan?

Pilih jawaban
Soal 36

What is a penetration test?

Pilih jawaban
Soal 37

Which incident response activity limits the scope of an incident?

Pilih jawaban
Soal 38

What is the purpose of a business continuity plan (BCP)?

Pilih jawaban
Soal 39

What is a disaster recovery plan (DRP)?

Pilih jawaban
Soal 40

Which secure coding practice prevents injection attacks?

Pilih jawaban
Soal 41

Which of the following are core security objectives in the CIA triad? Select all that apply.

Pilih jawaban
Soal 42

Which of the following are access control models? Select all that apply.

Pilih jawaban
Soal 43

Which of the following are authentication factors? Select all that apply.

Pilih jawaban
Soal 44

Which of the following are symmetric encryption algorithms? Select all that apply.

Pilih jawaban
Soal 45

Which of the following are asymmetric cryptography algorithms? Select all that apply.

Pilih jawaban
Soal 46

Which of the following are phases of incident response? Select all that apply.

Pilih jawaban
Soal 47

Which of the following are secure development practices? Select all that apply.

Pilih jawaban
Soal 48

Confidentiality means information is available to everyone at all times.

Pilih jawaban
Soal 49

A vulnerability is the same thing as an exploit.

Pilih jawaban
Soal 50

Data remanence is a concern when decommissioning storage media.

Pilih jawaban
Soal 51

Symmetric encryption is generally faster than asymmetric encryption.

Pilih jawaban
Soal 52

The principle of least privilege means granting all users administrator access by default.

Pilih jawaban
Soal 53

The security goal that protects data from unauthorized modification is ___.

Soal 54

The process of confirming a user claimed identity is ___.

Soal 55

A ___ encrypts traffic between a user and a remote network.

Soal 56

The access control model that grants rights based on user roles is ___.

Soal 57

A documented plan to restore IT systems after a disaster is the ___ recovery plan.

Soal 58

Match each security control type to its example.

Soal 59

Match each cryptography concept to its purpose.

Soal 60

Match each IAM concept to its meaning.