We provide CCSP Exam Questions which are the best for clearing CCSP test, and to get certified by ISC2 Certified Cloud Security Professional. The CCSP Free Practice Questions covers all the knowledge points of the real CCSP exam. Crack your ISC2 CCSP Exam with latest dumps, guaranteed!

Check CCSP free dumps before getting the full version:

NEW QUESTION 1
Under EU law, a cloud customer who gives sensitive data to a cloud provider is still legally responsible for the damages resulting from a data breach caused by the provider; the EU would say that it is the cloud customer’s fault for choosing the wrong provider.
This is an example of insufficient ______ .

  • A. Proof
  • B. Evidence
  • C. Due diligence
  • D. Application of reasonableness

Answer: C

NEW QUESTION 2
The Cloud Security Alliance (CSA) publishes, the Notorious Nine, a list of common threats to organizations participating in cloud computing.
According to the CSA, all of the following activity can result in data loss except ______ .

  • A. Misplaced crypto keys
  • B. Improper policy
  • C. Ineffectual backup procedures
  • D. Accidental overwrite

Answer: B

NEW QUESTION 3
What does nonrepudiation mean? Response:

  • A. Prohibiting certain parties from a private conversation
  • B. Ensuring that a transaction is completed before saving the results
  • C. Ensuring that someone cannot turn off auditing capabilities while performing a function
  • D. Preventing any party that participates in a transaction from claiming that it did not

Answer: D

NEW QUESTION 4
You are a consultant performing an external security review on a large manufacturing firm. You determine that its newest assembly plant, which cost $24 million, could be completely destroyed by a fire but that a fire suppression system could effectively protect the plant.
The fire suppression system costs $15 million. An insurance policy that would cover the full replacement cost of the plant costs $1 million per month.
In order to establish the true annualized loss expectancy (ALE), you would need all of the following information except ______ .
Response:

  • A. The amount of revenue generated by the plant
  • B. The rate at which the plant generates revenue
  • C. The length of time it would take to rebuild the plant
  • D. The amount of product the plant creates

Answer: D

NEW QUESTION 5
What is the main reason virtualization is used in the cloud? Response:

  • A. VMs are easier to administer
  • B. If a VM is infected with malware, it can be easily replaced
  • C. With VMs, the cloud provider does not have to deploy an entire hardware device for every new user
  • D. VMs are easier to operate than actual devices

Answer: C

NEW QUESTION 6
A firewall can use all of the following techniques for controlling traffic except:

  • A. Rule sets
  • B. Behavior analysis
  • C. Content filtering
  • D. Randomization

Answer: D

NEW QUESTION 7
Data transformation in a cloud environment should be of great concern to organizations considering cloud migration because ______ could affect data classification processes/implementations.
Response:

  • A. Multitenancy
  • B. Virtualization
  • C. Remote access
  • D. Physical distance

Answer: B

NEW QUESTION 8
What is the term used to describe loss of access to data because the cloud provider has ceased operation? Response:

  • A. Closing
  • B. Vendor lock-out
  • C. Vendor lock-in
  • D. Masking

Answer: B

NEW QUESTION 9
Which of the following should occur at each stage of the SDLC?

  • A. Added functionality
  • B. Management review
  • C. Verification and validation
  • D. Repurposing of any newly developed components

Answer: C

NEW QUESTION 10
A honeypot should contain data______.
Response:

  • A. Raw
  • B. Production
  • C. Useless
  • D. Sensitive

Answer: C

NEW QUESTION 11
At which phase of the SDLC process should security begin participating? Response:

  • A. Requirements gathering
  • B. Requirements analysis
  • C. Design
  • D. Testing

Answer: A

NEW QUESTION 12
You are the security manager for a small retail business involved mainly in direct e-commerce transactions with individual customers (members of the public). The bulk of your market is in Asia, but you do fulfill orders globally.
Your company has its own data center located within its headquarters building in Hong Kong, but it also uses a public cloud environment for contingency backup and archiving purposes. Your company has decided to expand its business to include selling and monitoring life-support equipment for medical providers.
What characteristic do you need to ensure is offered by your cloud provider? Response:

  • A. Full automation of security controls within the cloud data center
  • B. Tier 4 of the Uptime Institute certifications
  • C. Global remote access
  • D. Prevention of ransomware infections

Answer: B

NEW QUESTION 13
Which of the following would probably best aid an organization in deciding whether to migrate from a legacy environment to a particular cloud provider?
Response:

  • A. Rate sheets comparing a cloud provider to other cloud providers
  • B. Cloud provider offers to provide engineering assistance during the migration
  • C. The cost/benefit measure of closing the organization’s relocation site (hot site/warm site) and using the cloud for disaster recovery instead
  • D. SLA satisfaction surveys from other (current and past) cloud customers

Answer: D

NEW QUESTION 14
You are the security policy lead for your organization, which is considering migrating from your
on-premises, legacy environment into the cloud. You are reviewing the Cloud Security Alliance Cloud Controls Matrix (CSA CCM) as a tool for your organization.
Which of the following benefits will the CSA CCM offer your organization? Response:

  • A. Simplifying regulatory compliance
  • B. Collecting multiple data streams from your log files
  • C. Ensuring that the baseline configuration is applied to all systems
  • D. Enforcing contract terms between your organization and the cloud provider

Answer: A

NEW QUESTION 15
You are the security manager of a small firm that has just purchased a DLP solution to implement in your cloud-based production environment.
In order to increase the security value of the DLP, you should consider combining it with ______.
Response:

  • A. Digital rights management (DRM) and security event and incident management (SIEM) tools
  • B. An investment in upgraded project management software
  • C. Digital insurance policies
  • D. The Uptime Institute’s Tier certification

Answer: A

NEW QUESTION 16
Which of the following BCDR testing methodologies is least intrusive? Response:

  • A. Walk-through
  • B. Simulation
  • C. Tabletop
  • D. Full test

Answer: C

NEW QUESTION 17
Your organization is developing software for wide use by the public. You have decided to test it in a cloud environment, in a PaaS model. Which of the following should be of particular concern to your organization for this situation?
Response:

  • A. Vendor lock-in
  • B. Backdoors
  • C. Regulatory compliance
  • D. High-speed network connectivity

Answer: B

Thanks for reading the newest CCSP exam dumps! We recommend you to try the PREMIUM Certleader CCSP dumps in VCE and PDF here: https://www.certleader.com/CCSP-dumps.html (353 Q&As Dumps)