- (Exam Topic 1)
Which of the following statements accurately describes VLANs?
Correct Answer:
A
A virtual area network (VLAN) can span any networks within a data center, or it can span across different physical locations and data centers.
- (Exam Topic 4)
What must SOAP rely on for security since it does not provide security as a built-in capability?
Correct Answer:
A
Simple Object Access Protocol (SOAP) uses Extensible Markup Language (XML) for data passing, and it must rely on the encryption of those data packages for security. TLS and SSL (before it was deprecated) represent two commons approaches to using encryption for protection of data transmissions. However, they are only two possible options and do not encapsulate the overall concept the question is looking for. Tokenization, which involves the replacement of sensitive data with opaque values, would not be appropriate for use with SOAP because the actual data is needed by the services.
- (Exam Topic 4)
Whereas a contract articulates overall priorities and requirements for a business relationship, which artifact enumerates specific compliance requirements, metrics, and response times?
Correct Answer:
A
The service level agreement (SLA) articulates minimum requirements for uptime, availability, processes, customer service and support, security controls, auditing requirements, and any other key aspect or requirement of the contract. Although the other choices sound similar to the correct answer, none is the proper term for this concept.
- (Exam Topic 2)
Which of the following is a commonly used tool for maintaining system configurations?
Correct Answer:
C
Puppet is a commonly used tool for maintaining system configurations based on policies, and done so from a centralized authority.
- (Exam Topic 2)
Which entity requires all collection and storing of data on their citizens to be done on hardware that resides within their borders?
Correct Answer:
A
Signed into law and effective starting on September 1, 2015, Russian Law 526-FZ establishes that any collecting, storing, or processing of personal information or data on Russian citizens must be done from systems and databases that are physically located with the Russian Federation.