検証済みのCSP-Assessor試験問題集PDF [2025年最新] 成功の秘訣はここにある
ベストを体験せよ!CSP-Assessor試験問題トレーニングを提供していますPassTest
質問 # 26
How are online SwiftNet Security Officers authenticated?
- A. Via their PKI certificate
- B. Via their swift.com account and secure code card
- C. Via their swift.com account
正解:A
質問 # 27
Which operator session flows are expected to be protected in terms of confidentiality and integrity? (Choose all that apply.)
- A. System administrator sessions towards a host running a Swift related component
- B. All sessions to and from a jump server used to access a component in a secure zone
- C. All sessions towards a Swift related application run by an Outsourcing Agent, a Service Bureau or an L2BA Provider
- D. All sessions towards a secure zone (on-premises or hosted by a third-party or a Cloud Provider)
正解:A、B、C、D
質問 # 28
Select the supporting documents to conduct a CSP assessment. (Choose all that apply.)
- A. The Controls Matrix and High Level Test P an
- B. The Customer Security Controls Framework
- C. The CSP User Handbook
- D. The mapping to industry standards article
正解:B
質問 # 29
What are the conditions required to permit reliance on the compliance conclusion of a control assessed in the previous year? (Choose all that apply.)
- A. The control-design and implementation are the same
- B. The previous assessment was performed on the (correct) CSCF version of the previous year
- C. The control compliance conclusion must have already been relied on the past two years
- D. The control definition has not changed
正解:A、B、D
質問 # 30
A detailed CSP assessment report has been provided to the Swift user following the assessment. Is a completion letter also mandated to be supplied?
- A. No
- B. Yes
正解:B
質問 # 31
The internet connectivity restriction control prevents having internet access on any CSCE m-scope components.
- A. FALSE
- B. TRUE
正解:A
質問 # 32
A Swift user uses an application integrating a sFTP client to push files to a service bureau sFTP server What architecture type is the Swift user? (Choose all that apply.)
- A. A1
- B. A3
- C. B
- D. A4
正解:B、C
質問 # 33
The Physical Security protection control is also aimed at protecting the "on call" and "working from home" employees' equipment used to access the Swift-related components.
- A. TRUE
- B. FALSE
正解:A
質問 # 34
What is expected regarding Token Management when (physical or software-based) tokens are used? (Choose all that apply.)
- A. Individuals must not share their tokens. Tokens must remain under the control and supervision of its owner
- B. Similar to user accounts, individual assignment and ownership for accurate traceability and revocation in case of potential tampering, loss or in case of user role change
- C. All tokens must be stored in a safe when not used
- D. Have in place a strict token assignment process. This avoids the need to perform g a regular review of assigned tokens
正解:A、B
質問 # 35
A Swift user has moved from one Service Bureau to another What are the obligations of the Swift user in the CSP context?
- A. To submit an updated attestation reflecting this change within 3 months
- B. None if there is no impact in the architecture tope
- C. To reflect that in the next attestation cycle
- D. To inform the SB certification office at Swift WW
正解:A
質問 # 36
Which authentication methods are possible on the Alliance Interfaces? (Choose all that apply.)
- A. Radius One-time password
- B. Password and TOTP
- C. Password
- D. LDAP Authentication
正解:A、B、C、D
質問 # 37
The only type of HSM devices offered by Swift are HSM tokens and HSM boxes.
- A. TRUE
- B. FALSE
正解:A
質問 # 38
Alliance Lite2 only supports the sending and receiving of FIN messages.
- A. FALSE
- B. TRUE
正解:A
質問 # 39
The Swift user has an sFTP server to push files to an outsourcing agent hosting the Swift users own Communication interface. What is their architecture type?
- A. A1
- B. A3
- C. B
- D. A4
正解:C
質問 # 40
The objective of the Customer Environment Protection control is to separate the user's Swift infrastructure which restricts malicious access from the external world and from the General IT environment of the Swift user.
- A. TRUE
- B. FALSE
正解:A
質問 # 41
Can an internal audit department submit and approve their Swift user's attestation on the KYC-SA Swift portal?
- A. No, this is never an option
- B. Yes, an internal auditor can submit the attestation for approval provided they have the appropriate credentials for switt.com. The CISO remains in charge of the approval of the attestation
- C. Yes, with approval from the Chief auditor
- D. Yes, providing this is agreed by the head of IT operations and the CISO
正解:B
質問 # 42
What type of control effectiveness needs to be validated for an independent assessment?
- A. An independent assessment is a point in time review with possible reviews of older evidence as appropriate
- B. Operational effectiveness needs to be validated
- C. Effectiveness is never validated only the control design
- D. None of the above
正解:B
質問 # 43
How many Swift Security Officers does an organization need at minimum?
- A. 0
- B. 1
- C. 2
- D. 3
正解:C
質問 # 44
A Swift user relies on a sFTP server to connect through an externally exposed connection with a service provider or a group hub What architecture type is the Swift user? (Choose all that apply.)
- A. A2
- B. A4
- C. A1
- D. A3
正解:A、B
質問 # 45
......
最新の100%合格保証付きの素晴らしいCSP-Assessor試験問題PDF:https://www.passtest.jp/Swift/CSP-Assessor-shiken.html
練習サンプルと問題集と秘訣には2025年最新のCSP-Assessor有効なテスト問題集:https://drive.google.com/open?id=1TBvRbu2Xc56vT2vbWIi21K0Pi5uTh3j1