nerdexam
(ISC)2(ISC)2

CSSLP · Question #300

CSSLP Question #300: Real Exam Question with Answer & Explanation

The correct answer is A: Identification and authentication. The question asks to identify important areas addressed by a software system's security policy, which defines rules for protecting the system and its data.

Secure Software Concepts

Question

Which of the following are the important areas addressed by a software system's security policy? Each correct answer represents a complete solution. Choose all that apply.

Options

  • AIdentification and authentication
  • BPunctuality
  • CData protection
  • DAccountability
  • EScalability
  • FAccess control

Explanation

The question asks to identify important areas addressed by a software system's security policy, which defines rules for protecting the system and its data.

Common mistakes.

  • B. Punctuality, while important for project management or service delivery, is not a direct security policy area for a software system.
  • E. Scalability refers to a system's ability to handle increased load or growth, which is a performance and architecture concern, not a primary area of a security policy.

Concept tested. Software system security policy areas

Reference. https://learn.microsoft.com/en-us/windows/security/operating-system-security/system-spirit-and-philosophy/security-policy-principles

Topics

#Security Policy#Access Control#Identification & Authentication#Data Protection

Community Discussion

No community discussion yet for this question.

Full CSSLP PracticeBrowse All CSSLP Questions