New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 ISSEP Exam - Topic 4 Question 86 Discussion

Actual exam question for ISC2's ISSEP exam
Question #: 86
Topic #: 4
[All ISSEP Questions]

Continuous Monitoring is the fourth phase of the security certification and accreditation process. What activities are performed in the Continuous Monitoring process Each correct answer represents a complete solution. Choose all that apply.

Show Suggested Answer Hide Answer
Suggested Answer: A, B, C

Contribute your Thoughts:

0/2000 characters
Cherelle
3 months ago
I had no idea Continuous Monitoring was so involved!
upvoted 0 times
...
Buffy
3 months ago
Totally agree with A and B, but C feels a bit off.
upvoted 0 times
...
Lauryn
3 months ago
Wait, D and E don't belong here, right?
upvoted 0 times
...
Alexis
4 months ago
I think C is also crucial for continuous monitoring.
upvoted 0 times
...
Sheridan
4 months ago
Definitely A and B are part of it!
upvoted 0 times
...
Donette
4 months ago
I feel like security accreditation documentation is important, but I’m not confident if it falls under continuous monitoring or the earlier phases.
upvoted 0 times
...
Theodora
4 months ago
Configuration management sounds familiar, but I can't recall if it's directly tied to continuous monitoring or if it's more about the initial setup.
upvoted 0 times
...
Nan
4 months ago
I think security control monitoring is a key activity in this phase, similar to what we practiced in our last mock exam.
upvoted 0 times
...
France
5 months ago
I remember that status reporting is definitely part of continuous monitoring, but I'm not entirely sure about the specifics of impact analyses.
upvoted 0 times
...
Eveline
5 months ago
Ah, I've got this! The Continuous Monitoring phase is all about maintaining the security posture of the system, so status reporting, control monitoring, and configuration management are key activities. I'll select B, C, and A to cover all the bases.
upvoted 0 times
...
Lavelle
5 months ago
Okay, let's see here. I remember from my studies that Continuous Monitoring involves ongoing assessment of the security controls and system changes. I think options B and C are definitely correct, but I'll double-check the other choices to be sure.
upvoted 0 times
...
Ozell
5 months ago
Hmm, I'm a bit unsure about this one. The question is asking about the specific activities in the Continuous Monitoring phase, so I'll need to make sure I understand the differences between the various phases to answer this correctly.
upvoted 0 times
...
Mattie
5 months ago
This looks like a straightforward question on the activities involved in the Continuous Monitoring phase of the security certification and accreditation process. I'll review the options carefully and select all the correct answers.
upvoted 0 times
...
Asuncion
5 months ago
I think this is asking about the organizational structure that combines functional and project structures. The options seem to be pointing to a matrix structure, so I'll go with that.
upvoted 0 times
...
Krystal
5 months ago
Okay, let's see here. The package.json file specifies a version range of ^1.3.0, which means any compatible version from 1.3.0 up to, but not including, 2.0.0. Based on the version information, I think the answer is B - 1.3.5.
upvoted 0 times
...
Tamekia
5 months ago
I'm a bit confused on this one. I'll have to review the material again and see if I can figure out the best approach. Creating a tile might be the way to go, but I'm not totally sure.
upvoted 0 times
...
Eun
5 months ago
Debugging ping packets seems less relevant; it might not help us directly with the ARP issue we're facing.
upvoted 0 times
...
Leslie
2 years ago
I agree with all of you. I think A, B, and C all make sense as correct answers.
upvoted 0 times
...
Armanda
2 years ago
Don't forget security control monitoring and impact analyses of changes. That's definitely part of Continuous Monitoring. Option B.
upvoted 0 times
...
Merilyn
2 years ago
I think configuration management and control should be included as well. So, option C.
upvoted 0 times
...
Armando
2 years ago
I guess status reporting and documentation are part of it. So, option A.
upvoted 0 times
...
Hoa
2 years ago
Yeah, I agree. But I think it requires us to think about what actually happens after the initial certification.
upvoted 0 times
...
Simona
2 years ago
I find this question about Continuous Monitoring quite challenging.
upvoted 0 times
...

Save Cancel