Free ISC2 ISSEP Exam Questions

Become ISC2 Certified with updated ISSEP exam questions and correct answers

Page:    1 / 44      
Total 220 Questions | Updated On: Jul 14, 2026
Add To Cart
Question 1

Certification and Accreditation (C&A or CnA) is a process for implementing information security. It is a systematic procedure for evaluating, describing, testing, and authorizing systems prior to or after a system is in operation. Which of the following statements are true about Certification and Accreditation? Each correct answer represents a complete solution. Choose two.


Answer: B,C
Question 2

In which of the following DIACAP phases is residual risk analyzed?


Answer: A
Question 3

Della works as a security engineer for BlueWell Inc. She wants to establish configuration management and control procedures that will document proposed or actual changes to the information system. Which of the following phases of NIST SP 800-37 C&A methodology will define the above task?


Answer: D
Question 4

Continuous Monitoring is the fourth phase of the security certification and accreditation process.
What activities are performed in the Continuous Monitoring process?
Each correct answer represents a complete solution. Choose all that apply.


Answer: A,B,C
Question 5

According to U.S. Department of Defense (DoD) Instruction 8500.2, there are eight Information
Assurance (IA) areas, and the controls are referred to as IA controls. Which of the following are
among the eight areas of IA defined by DoD?
Each correct answer represents a complete solution. Choose all that apply


Answer: A,B,C
Page:    1 / 44      
Total 220 Questions | Updated On: Jul 14, 2026
Add To Cart

© Copyrights DumpsCertify 2026. All Rights Reserved

We use cookies to ensure your best experience. So we hope you are happy to receive all cookies on the DumpsCertify.