Free CCSP Exam Braindumps

Pass your Certified Cloud Security Professional exam with these free Questions and Answers

Page 27 of 103
QUESTION 126

- (Exam Topic 1)
Which of the following statements accurately describes VLANs?

  1. A. They are not restricted to the same data center or the same racks.
  2. B. They are not restricted to the name rack but restricted to the same data center.
  3. C. They are restricted to the same racks and data centers.
  4. D. They are not restricted to the same rack but restricted to same switches.

Correct Answer: A
A virtual area network (VLAN) can span any networks within a data center, or it can span across different physical locations and data centers.

QUESTION 127

- (Exam Topic 4)
What must SOAP rely on for security since it does not provide security as a built-in capability?

  1. A. Encryption
  2. B. Tokenization
  3. C. TLS
  4. D. SSL

Correct Answer: A
Simple Object Access Protocol (SOAP) uses Extensible Markup Language (XML) for data passing, and it must rely on the encryption of those data packages for security. TLS and SSL (before it was deprecated) represent two commons approaches to using encryption for protection of data transmissions. However, they are only two possible options and do not encapsulate the overall concept the question is looking for. Tokenization, which involves the replacement of sensitive data with opaque values, would not be appropriate for use with SOAP because the actual data is needed by the services.

QUESTION 128

- (Exam Topic 4)
Whereas a contract articulates overall priorities and requirements for a business relationship, which artifact enumerates specific compliance requirements, metrics, and response times?

  1. A. Service level agreement
  2. B. Service level contract
  3. C. Service compliance contract
  4. D. Service level amendment

Correct Answer: A
The service level agreement (SLA) articulates minimum requirements for uptime, availability, processes, customer service and support, security controls, auditing requirements, and any other key aspect or requirement of the contract. Although the other choices sound similar to the correct answer, none is the proper term for this concept.

QUESTION 129

- (Exam Topic 2)
Which of the following is a commonly used tool for maintaining system configurations?

  1. A. Maestro
  2. B. Orchestrator
  3. C. Puppet
  4. D. Conductor

Correct Answer: C
Puppet is a commonly used tool for maintaining system configurations based on policies, and done so from a centralized authority.

QUESTION 130

- (Exam Topic 2)
Which entity requires all collection and storing of data on their citizens to be done on hardware that resides within their borders?

  1. A. Russia
  2. B. France
  3. C. Germany
  4. D. United States

Correct Answer: A
Signed into law and effective starting on September 1, 2015, Russian Law 526-FZ establishes that any collecting, storing, or processing of personal information or data on Russian citizens must be done from systems and databases that are physically located with the Russian Federation.

Page 27 of 103

Post your Comments and Discuss ISC2 CCSP exam with other Community members: