Authentic CSP-Assessor Dumps With 100% Passing Rate Practice Tests Dumps [Q21-Q39]

Share

Authentic CSP-Assessor Dumps With 100% Passing Rate Practice Tests Dumps

Swift CSP-Assessor Real Exam Questions Guaranteed Updated Dump from LatestCram


Swift CSP-Assessor Exam Syllabus Topics:

TopicDetails
Topic 1
  • Understanding the methodology and assessment deliverables: This section is designed for independent auditors working with Swift systems. It tests the candidate's grasp of the Assessor's role and obligations when conducting a CSP assessment. The section evaluates knowledge of key elements to consider during the assessment process.
Topic 2
  • Understanding Swift: This section of the exam measures the skills of Swift network administrators and covers Swift's crucial role in the international financial community, including the structure and operations of the Swift network and its infrastructure.
Topic 3
  • Understanding the Swift Customer Security Programme: This domain is targeted at compliance officers, and risk managers involved in Swift operations. It evaluates the candidate's comprehension of the CSP controls framework and their ability to determine the appropriate architecture type and related scope as outlined in the Customer Security Controls Framework (CSCF).

 

NEW QUESTION # 21
What must a Swift user implement to comply with a CSCF security control?

  • A. A solution that meets the control objectives and addresses the risk drivers for the in scope components)
  • B. A solution that maps the implementation guidelines described for a controls in scope components

Answer: A


NEW QUESTION # 22
The objective of the Customer Environment Protection control is to separate the user's Swift infrastructure which restricts malicious access from the external world and from the General IT environment of the Swift user.

  • A. FALSE
  • B. TRUE

Answer: B


NEW QUESTION # 23
As a Swift CSP Certified Assessor. Swift contacted me to provide evidence on an assessment I have performed. This is required to support their quality assurance validation process. Is it allowed?

  • A. Yes, one of the obligations of the certification programme is that quality assessment can be performed by Swift
  • B. No, it's confidential

Answer: A


NEW QUESTION # 24
Which authentication methods are possible on the Alliance Interfaces? (Choose all that apply.)

  • A. LDAP Authentication
  • B. Radius One-time password
  • C. Password and TOTP
  • D. Password

Answer: A,B,C,D


NEW QUESTION # 25
Which of the following statements best describe valid implementations when implementing control 2.9 Transaction Business Controls? (Choose all that apply.)

  • A. Multiple measures must be implemented by the Swift user to validate the flows of transactions are in the bounds of the normal expected business
  • B. Reliance on a recent business assessment or regulator response confirming the effectiveness of the control (as an example CPMI's_ requirement) is especially poignant to this control
  • C. A customer designed implementation or a combination of different measures are deemed valid if they sufficiently mitigate the control risks
  • D. Any solutions is acceptable so long as the CISO approves the implementation

Answer: A,B,C


NEW QUESTION # 26
What does the CSCF expect in terms of Database Integrity? (Choose all that apply.)

  • A. Alerts generated from performed integrity checks are captured and analysed for appropriate treatment
  • B. Nothing is needed when the messaging or connector integrates/embeds an integrity check functionality at each Swift transaction record level.
  • C. When a database is used by a messaging interface or connector, the related hosted database and its supporting system must be protected as a Swift-related component and exceptions alerted

Answer: A,C


NEW QUESTION # 27
Application Hardening basically applies the following principles. (Choose all that apply.)

  • A. Reduced footprint for less potential vulnerabilities
  • B. Access on a need to have
  • C. Least Privileges
  • D. Enhanced Straight Through Processing

Answer: A,B,C


NEW QUESTION # 28
Which statement(s) is/are correct about the LSO/RSO accounts on a Swift Alliance Access? (Choose all that apply.)

  • A. Their PKI certificates are stored either on a HSM Token or on a HSM-box
  • B. They are the business profiles that can sign the Swift financial transactions
  • C. They are local Security Officers
  • D. They are responsible for the configuration and management of the security functions of the server

Answer: A,C,D


NEW QUESTION # 29
Which operator session flows are expected to be protected in terms of confidentiality and integrity? (Choose all that apply.)

  • A. System administrator sessions towards a host running a Swift related component
  • B. All sessions towards a Swift related application run by an Outsourcing Agent, a Service Bureau or an L2BA Provider
  • C. All sessions towards a secure zone (on-premises or hosted by a third-party or a Cloud Provider)
  • D. All sessions to and from a jump server used to access a component in a secure zone

Answer: A,B,C,D


NEW QUESTION # 30
The Swift HSM boxes:

  • A. Are located at the Swift user premises and managed by Swift
  • B. Are located at the network partner premises and managed by Swift the network partner
  • C. Are located at the network partner premises and managed by Swift
  • D. Are located at the Swift user premises and managed by the Swift user

Answer: D


NEW QUESTION # 31
The only type of HSM devices offered by Swift are HSM tokens and HSM boxes.

  • A. FALSE
  • B. TRUE

Answer: B


NEW QUESTION # 32
Select the supporting documents to conduct a CSP assessment. (Choose all that apply.)

  • A. The mapping to industry standards article
  • B. The Controls Matrix and High Level Test P an
  • C. The Customer Security Controls Framework
  • D. The CSP User Handbook

Answer: C


NEW QUESTION # 33
A Swift user has moved from one Service Bureau to another What are the obligations of the Swift user in the CSP context?

  • A. None if there is no impact in the architecture tope
  • B. To reflect that in the next attestation cycle
  • C. To inform the SB certification office at Swift WW
  • D. To submit an updated attestation reflecting this change within 3 months

Answer: D


NEW QUESTION # 34
When hesitant on the applicability of a CSCF control to a particular component? What steps should you take? (Choose all that apply.)

  • A. Call your Swift contact
  • B. Check appendix F of the CSCF
  • C. Check carefully the Introduction section of the CSCF
  • D. Open a case with Swift support via the case manager on swift com if further information or solution cannot be found in the documentation

Answer: A,B,C,D


NEW QUESTION # 35
As a Swift CSP Certified Assessor, I left the listed provider and started to work independently. Can I continue to perform CSP assessments?

  • A. No, this is not allowed
  • B. Yes. but not as a Swift CSP Certified assessor
  • C. Yes. during the certification validity period
  • D. [No, except if Swift formally provides you permission

Answer: B


NEW QUESTION # 36
In the illustration, identify which components are in scope of the CSCF? (Choose all that apply.)

  • A. Components J, K, I
  • B. Components F, G, H
  • C. Components C, E, M
  • D. Components A, B, K

Answer: C


NEW QUESTION # 37
Select the correct statement about Alliance Gateway.

  • A. It is used to create messages to send over the Swift network
  • B. It is used to exchange messages over the Swift network

Answer: B


NEW QUESTION # 38
A Swift user has remediated an exception reported by the assessor. What are their obligations before updating and submitting an attestation reflecting the new compliance level?

  • A. The exception must be re-assessed by the same independent assessor that raised the exception
  • B. The first line of defense can confirm their level of compliance using a self-assessment approach
  • C. The exception must be re-assessed by an independent assessor. The assessor can be different to the one who initially raised the exception
  • D. None, if the remediation has been completed, a new attestation can be submitted reflecting the compliance of the control

Answer: C


NEW QUESTION # 39
......

Verified Pass CSP-Assessor Exam in First Attempt Guaranteed: https://examboost.latestcram.com/CSP-Assessor-exam-cram-questions.html