nerdexam
(ISC)2(ISC)2

CSSLP · Question #259

CSSLP Question #259: Real Exam Question with Answer & Explanation

The correct answer is C: Sherwood Applied Business Security Architecture. This question asks for the specific methodology a CSO would use to develop a risk-driven enterprise information security architecture and deliver security solutions aligned with business initiatives.

Secure Software Architecture and Design

Question

You work as a CSO (Chief Security Officer) for Tech Perfect Inc. You want to perform the following tasks: Develop a risk-driven enterprise information security architecture. Deliver security infrastructure solutions that support critical business initiatives. Which of the following methods will you use to accomplish these tasks?

Options

  • AService-oriented modeling and architecture
  • BService-oriented modeling framework
  • CSherwood Applied Business Security Architecture
  • DService-oriented architecture

Explanation

This question asks for the specific methodology a CSO would use to develop a risk-driven enterprise information security architecture and deliver security solutions aligned with business initiatives.

Common mistakes.

  • A. Service-oriented modeling and architecture (SOMA) focuses on defining services within a Service-Oriented Architecture (SOA), not specifically on security architecture.
  • B. Service-oriented modeling framework (SOMF) is a general framework for service-oriented modeling, broader than just security architecture.
  • D. Service-oriented architecture (SOA) is an architectural style for building business applications as loosely coupled services, not a specific methodology for enterprise security architecture.

Concept tested. SABSA security architecture framework

Reference. https://sabsa.org/

Topics

#Enterprise Security Architecture#SABSA#Security Frameworks#Risk-driven Architecture

Community Discussion

No community discussion yet for this question.

Full CSSLP PracticeBrowse All CSSLP Questions