CAP Dumps

CAP Free Practice Test

ISC2 CAP: ISC2 CAP Certified Authorization Professional

QUESTION 66

What component of the change management system is responsible for evaluating, testing, and documenting changes created to the project scope?

Correct Answer: A

QUESTION 67

Which of the following processes provides a standard set of activities, general tasks, and a management structure to certify and accredit systems, which maintain the information assurance and the security posture of a system or site?

Correct Answer: B

QUESTION 68

Penetration testing (also called pen testing) is the practice of testing a computer system, network, or Web application to find vulnerabilities that an attacker could exploit. Which of the following areas can be exploited in a penetration test?
Each correct answer represents a complete solution. Choose all that apply.

Correct Answer: ABDEFG

QUESTION 69

DIACAP applies to the acquisition, operation, and sustainment of any DoD system that collects, stores, transmits, or processes unclassified or classified information since December 1997. What phases are identified by DIACAP?
Each correct answer represents a complete solution. Choose all that apply.

Correct Answer: ABCD

QUESTION 70

Which of the following is a standard that sets basic requirements for assessing the effectiveness of computer security controls built into a computer system?

Correct Answer: B