New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 CAP Exam - Topic 7 Question 1 Discussion

Actual exam question for ISC2's CAP exam
Question #: 1
Topic #: 7
[All CAP Questions]

System Authorization is the risk management process. System Authorization Plan (SAP) is a comprehensive and uniform approach to the System Authorization Process. What are the different phases of System Authorization Plan?

Each correct answer represents a part of the solution. Choose all that apply.

Show Suggested Answer Hide Answer
Suggested Answer: A, B, D, E

Contribute your Thoughts:

0/2000 characters
Mike
4 months ago
I thought there were more phases than just these five.
upvoted 0 times
...
Art
4 months ago
Totally agree, Authorization is key in the process!
upvoted 0 times
...
Shenika
4 months ago
Wait, are we sure about Post-certification being a phase? Seems off.
upvoted 0 times
...
Patrick
4 months ago
I think Post-Authorization is also a phase.
upvoted 0 times
...
Laurel
5 months ago
The phases include Pre-certification and Certification for sure.
upvoted 0 times
...
Latonia
5 months ago
I’m pretty confident about Authorization and Certification, but I’m a bit confused about the others. Did we cover Post-Authorization in class?
upvoted 0 times
...
Harris
5 months ago
I feel like Post-certification might be a phase too, but I can't recall if it was specifically mentioned in our study materials.
upvoted 0 times
...
Jonelle
5 months ago
I remember practicing a question that mentioned Pre-certification as a phase, so I think that one is definitely correct.
upvoted 0 times
...
Brunilda
5 months ago
I think the phases include Authorization and Certification, but I'm not completely sure about Post-Authorization.
upvoted 0 times
...
Noel
5 months ago
Okay, I've got this. The key is to focus on the prefixes of the views and what they indicate about the scope of the metadata being displayed. I think I can narrow this down to the two correct statements.
upvoted 0 times
...
Trina
5 months ago
I think this is a pretty straightforward question. The key is to focus on just getting the list of accounts, without all the opportunity details. I'd go with option B, Cross-Filter, since that seems like the best way to filter the data down to just the account list.
upvoted 0 times
...
Nichelle
5 months ago
This seems like a pretty straightforward architecture question. I'd go with option C - the stakeholder analysis and business scenario interviews seem like the best way to really understand the key requirements and concerns from each plant.
upvoted 0 times
...
Osvaldo
5 months ago
Okay, I've got this. The passage is just giving an example of different types or scopes of service-oriented architecture. The key is that it says "you could define" separate specifications, which means it's a possibility, not a requirement. So I'll go with True.
upvoted 0 times
...
Ivette
5 months ago
This one seems pretty straightforward. The key details are the use of a central tracker and how the file is distributed across multiple users. I think the answer is C, peer-to-peer network.
upvoted 0 times
...

Save Cancel