Geschreven door studenten die geslaagd zijn Direct beschikbaar na je betaling Online lezen of als PDF Verkeerd document? Gratis ruilen 4,6 TrustPilot
logo-home
Tentamen (uitwerkingen)

ISACA Domain 5 Exam Questions & Answers (Grade A+).docx

Beoordeling
-
Verkocht
-
Pagina's
25
Cijfer
A+
Geüpload op
22-05-2026
Geschreven in
2025/2026

ISACA Domain 5 Exam Questions & Answers (Grade A+).docx

Instelling
CISM - Certified Information Security Manager
Vak
CISM - Certified Information Security Manager

Voorbeeld van de inhoud

ISACA Domain 5 Exam Questions &
Answers (Grade A+)
The role of the certificate authority (CA) as a third party is to:
confirm the identity of the entity owning a certificate issued by that
certificate authority. - correct answer ✅The primary activity of the
CA is to issue certificates. The primary role of the CA is to check the
identity of the entity owning a certificate and to confirm the
integrity of any certificate it issued.


Web application developers sometimes use hidden fields on web
pages to save information about a client session. This technique is
used, in some cases, to store session variables that enable
persistence across web pages, such as maintaining the contents of a
shopping cart on a retail website. The most likely web based attack
due to this practice is: Parameter tampering - correct answer
✅Web application developers sometimes use hidden fields to save
information about a client session or to submit hidden parameters,
such as the language of the end user, to the underlying application.
Bc hidden form fields dont display in the browser, developers may
feel safe passing unvalidated data in hidden fields ( to be validated
later). This practice is not safe bc an attacker can intercept, modify,
and submit requests, which can discover information or perform
functions that the web developers never indented. The malicious
modification of web application parameters is known as parameter
tampering

,ISACA Domain 5 Exam Questions &
Answers (Grade A+)
Cross site scripting - correct answer ✅this involves the
compromise of the web page to redirect users to content on the
attacker web site.


Cookie poisioning - correct answer ✅refers to the interception
and modification of session cookies to impersonate the user or
steal log on credentials.


Stealth commanding - correct answer ✅is the hijacking of a
webserver by the installation of unauthorized code. the most
common server exploits involve vulnerabilities of the server
operating system or web server.


The most important difference between hashing and encryption is
that hashing: is irreversible - correct answer ✅Hashing works one
way- by applying a hashing algorithm to a message, a message
hash/digest is created. If the same hashing algorithm is applied to
the message digest it will not results in the same original message.
As such, hashing is irreversible, which encryption is reversible .
With a properly designed algorithm, there is no way to reverse the
hashing process to reveal the original password.

, ISACA Domain 5 Exam Questions &
Answers (Grade A+)
- hashing creates a fixed length outtput that is usually smaller than
the original message, and encryption creates an output that is
usually the same length as the original message


- hashing is used to verify the integrity of the message, but does not
address security


A firewall is being deployed at a new location. Which of the
following is the MOST important factor in ensuring a successful
deployment? Testing and validating the rules - correct answer ✅A
mistake in the rule set can render a firewall ineffective or insecure.
Therefore, testing and validating the rules is the most important
factor in ensuring a successful deployment.


- a regular review of logs would not start until the deployment has
been completed


A new business application requires deviation from the standard
configuration of the OS. What activity should the auditor
recommend to the security manager as a FIRST response?
Assessment of the risk and identification of compensating controls -
correct answer ✅Before approving any exception, the security

Geschreven voor

Instelling
CISM - Certified Information Security Manager
Vak
CISM - Certified Information Security Manager

Documentinformatie

Geüpload op
22 mei 2026
Aantal pagina's
25
Geschreven in
2025/2026
Type
Tentamen (uitwerkingen)
Bevat
Vragen en antwoorden

Onderwerpen

$15.99
Krijg toegang tot het volledige document:

Verkeerd document? Gratis ruilen Binnen 14 dagen na aankoop en voor het downloaden kun je een ander document kiezen. Je kunt het bedrag gewoon opnieuw besteden.
Geschreven door studenten die geslaagd zijn
Direct beschikbaar na je betaling
Online lezen of als PDF

Maak kennis met de verkoper

Seller avatar
De reputatie van een verkoper is gebaseerd op het aantal documenten dat iemand tegen betaling verkocht heeft en de beoordelingen die voor die items ontvangen zijn. Er zijn drie niveau’s te onderscheiden: brons, zilver en goud. Hoe beter de reputatie, hoe meer de kwaliteit van zijn of haar werk te vertrouwen is.
Chloelunar University Of Nevada-Las Vegas
Volgen Je moet ingelogd zijn om studenten of vakken te kunnen volgen
Verkocht
96
Lid sinds
2 jaar
Aantal volgers
6
Documenten
14296
Laatst verkocht
3 dagen geleden

Get study materials, exam answer packs, step-by-step assignment solutions, and much more. Learn more effectively and quickly. After acquiring any document, please always provide a review to ensure that our consumers are completely satisfied.Best Wishes!!!!!!

3.5

17 beoordelingen

5
7
4
4
3
1
2
0
1
5

Recent door jou bekeken

Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo makkelijk kan het dus zijn.”

Alisha Student

Bezig met je bronvermelding?

Maak nauwkeurige citaten in APA, MLA en Harvard met onze gratis bronnengenerator.

Bezig met je bronvermelding?

Veelgestelde vragen