New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 CAP Exam - Topic 5 Question 66 Discussion

Actual exam question for ISC2's CAP exam
Question #: 66
Topic #: 5
[All CAP Questions]

The Information System Security Officer (ISSO) and Information System Security Engineer (ISSE) play the role of a supporter and advisor, respectively. Which of the following statements are true about ISSO and ISSE?

Each correct answer represents a complete solution. Choose all that apply.

Show Suggested Answer Hide Answer
Suggested Answer: C, D, E

Contribute your Thoughts:

0/2000 characters
Marta
4 months ago
Yep, ISSE is all about continuous monitoring advice!
upvoted 0 times
...
Hector
4 months ago
Wait, can an ISSE really manage security? That seems off.
upvoted 0 times
...
Brinda
4 months ago
Totally agree, ISSO is more about implementation!
upvoted 0 times
...
Yuki
4 months ago
I thought ISSO handled the C&A process?
upvoted 0 times
...
Maybelle
4 months ago
ISSE definitely advises on system changes.
upvoted 0 times
...
Ashley
5 months ago
I feel like both roles overlap a bit, especially with system changes, but I’m uncertain about which one manages C&A.
upvoted 0 times
...
Wilda
5 months ago
I practiced a similar question where the ISSO was involved in system changes, so I think option B might be correct.
upvoted 0 times
...
Torie
5 months ago
I think the ISSE definitely advises on continuous monitoring, but I can't recall if they manage security for C&A.
upvoted 0 times
...
Maile
5 months ago
I remember that the ISSO is more focused on the overall security management, but I'm not sure if they handle C&A directly.
upvoted 0 times
...
Buck
5 months ago
I feel pretty confident about this one. The objective of the Hi test environment is to find non-functional errors, not just functional errors, so option A is incorrect. And the HiL environment is more complex than the MiL or SiL environments, so option B is also wrong. I think the correct answer is D.
upvoted 0 times
...
Shanda
5 months ago
I feel pretty confident about this one. If Sarah was unaware that she was infringing, then she should not be found guilty. The key is establishing her state of mind.
upvoted 0 times
...
Cheryl
5 months ago
This question seems straightforward, I think the key is to identify the two required steps from the options provided.
upvoted 0 times
...
Stephanie
5 months ago
Using the customer organization's processes could work, but I'm not sure if that aligns with the service provider's own ways of working. Might be better to use their own as a starting point.
upvoted 0 times
...
Svetlana
5 months ago
Wait, I'm a bit confused. What exactly are we looking for that's "useless" when evaluating the exit criteria? I need to make sure I understand the question properly.
upvoted 0 times
...

Save Cancel