ISSAP ISSAP Information Systems Security Architecture Professional Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

A critical zero-day vulnerability has been disclosed in the organization\'s primary cloud-based Identity and Access Management (IAM) platform, which governs access to all sensitive data repositories and critical infrastructure. The vulnerability allows for potential unauthorized elevation of privileges. The Chief Information Security Officer (CISO) has tasked you, as the lead security architect, with proposing an immediate and effective architectural strategy to mitigate this threat while ensuring minimal disruption to business operations. Considering the immediate need for adaptability, strategic pivoting, and robust technical controls, which of the following architectural adjustments would represent the most comprehensive and resilient approach to address this crisis?

Implement a layered security model incorporating adaptive, context-aware authentication and authorization policies, enforcing just-in-time (JIT) privileged access with continuous monitoring for anomalous activities, and accelerating the adoption of hardware security modules for critical authentication factors.
Immediately disable all remote access capabilities and enforce strict, on-premises-only access for all users until a patch is released and thoroughly tested by the vendor, while simultaneously initiating a review of the current IAM vendor's security practices.
Deploy a secondary, less complex authentication system as a temporary overlay to the existing IAM, requiring users to authenticate through both systems for access to critical resources, and increase the frequency of security awareness training for all employees.
Mandate immediate password resets for all users with privileged access, implement static, multi-factor authentication for all administrative functions, and conduct a full penetration test of the IAM system within the next 48 hours to identify any residual risks.

About the ISSAP ISSAP Information Systems Security Architecture Professional Certification

These free practice questions are designed to help you assess your readiness for the ISSAP ISSAP Information Systems Security Architecture Professional exam by Other. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.