Authentic CSP-Assessor Dumps With 100% Passing Rate Practice Tests Dumps
Swift CSP-Assessor Real Exam Questions Guaranteed Updated Dump from LatestCram
Swift CSP-Assessor Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
NEW QUESTION # 21
What must a Swift user implement to comply with a CSCF security control?
- A. A solution that meets the control objectives and addresses the risk drivers for the in scope components)
- B. A solution that maps the implementation guidelines described for a controls in scope components
Answer: A
NEW QUESTION # 22
The objective of the Customer Environment Protection control is to separate the user's Swift infrastructure which restricts malicious access from the external world and from the General IT environment of the Swift user.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION # 23
As a Swift CSP Certified Assessor. Swift contacted me to provide evidence on an assessment I have performed. This is required to support their quality assurance validation process. Is it allowed?
- A. Yes, one of the obligations of the certification programme is that quality assessment can be performed by Swift
- B. No, it's confidential
Answer: A
NEW QUESTION # 24
Which authentication methods are possible on the Alliance Interfaces? (Choose all that apply.)
- A. LDAP Authentication
- B. Radius One-time password
- C. Password and TOTP
- D. Password
Answer: A,B,C,D
NEW QUESTION # 25
Which of the following statements best describe valid implementations when implementing control 2.9 Transaction Business Controls? (Choose all that apply.)
- A. Multiple measures must be implemented by the Swift user to validate the flows of transactions are in the bounds of the normal expected business
- B. Reliance on a recent business assessment or regulator response confirming the effectiveness of the control (as an example CPMI's_ requirement) is especially poignant to this control
- C. A customer designed implementation or a combination of different measures are deemed valid if they sufficiently mitigate the control risks
- D. Any solutions is acceptable so long as the CISO approves the implementation
Answer: A,B,C
NEW QUESTION # 26
What does the CSCF expect in terms of Database Integrity? (Choose all that apply.)
- A. Alerts generated from performed integrity checks are captured and analysed for appropriate treatment
- B. Nothing is needed when the messaging or connector integrates/embeds an integrity check functionality at each Swift transaction record level.
- C. When a database is used by a messaging interface or connector, the related hosted database and its supporting system must be protected as a Swift-related component and exceptions alerted
Answer: A,C
NEW QUESTION # 27
Application Hardening basically applies the following principles. (Choose all that apply.)
- A. Reduced footprint for less potential vulnerabilities
- B. Access on a need to have
- C. Least Privileges
- D. Enhanced Straight Through Processing
Answer: A,B,C
NEW QUESTION # 28
Which statement(s) is/are correct about the LSO/RSO accounts on a Swift Alliance Access? (Choose all that apply.)
- A. Their PKI certificates are stored either on a HSM Token or on a HSM-box
- B. They are the business profiles that can sign the Swift financial transactions
- C. They are local Security Officers
- D. They are responsible for the configuration and management of the security functions of the server
Answer: A,C,D
NEW QUESTION # 29
Which operator session flows are expected to be protected in terms of confidentiality and integrity? (Choose all that apply.)
- A. System administrator sessions towards a host running a Swift related component
- B. All sessions towards a Swift related application run by an Outsourcing Agent, a Service Bureau or an L2BA Provider
- C. All sessions towards a secure zone (on-premises or hosted by a third-party or a Cloud Provider)
- D. All sessions to and from a jump server used to access a component in a secure zone
Answer: A,B,C,D
NEW QUESTION # 30
The Swift HSM boxes:
- A. Are located at the Swift user premises and managed by Swift
- B. Are located at the network partner premises and managed by Swift the network partner
- C. Are located at the network partner premises and managed by Swift
- D. Are located at the Swift user premises and managed by the Swift user
Answer: D
NEW QUESTION # 31
The only type of HSM devices offered by Swift are HSM tokens and HSM boxes.
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION # 32
Select the supporting documents to conduct a CSP assessment. (Choose all that apply.)
- A. The mapping to industry standards article
- B. The Controls Matrix and High Level Test P an
- C. The Customer Security Controls Framework
- D. The CSP User Handbook
Answer: C
NEW QUESTION # 33
A Swift user has moved from one Service Bureau to another What are the obligations of the Swift user in the CSP context?
- A. None if there is no impact in the architecture tope
- B. To reflect that in the next attestation cycle
- C. To inform the SB certification office at Swift WW
- D. To submit an updated attestation reflecting this change within 3 months
Answer: D
NEW QUESTION # 34
When hesitant on the applicability of a CSCF control to a particular component? What steps should you take? (Choose all that apply.)
- A. Call your Swift contact
- B. Check appendix F of the CSCF
- C. Check carefully the Introduction section of the CSCF
- D. Open a case with Swift support via the case manager on swift com if further information or solution cannot be found in the documentation
Answer: A,B,C,D
NEW QUESTION # 35
As a Swift CSP Certified Assessor, I left the listed provider and started to work independently. Can I continue to perform CSP assessments?
- A. No, this is not allowed
- B. Yes. but not as a Swift CSP Certified assessor
- C. Yes. during the certification validity period
- D. [No, except if Swift formally provides you permission
Answer: B
NEW QUESTION # 36
In the illustration, identify which components are in scope of the CSCF? (Choose all that apply.)

- A. Components J, K, I
- B. Components F, G, H
- C. Components C, E, M
- D. Components A, B, K
Answer: C
NEW QUESTION # 37
Select the correct statement about Alliance Gateway.
- A. It is used to create messages to send over the Swift network
- B. It is used to exchange messages over the Swift network
Answer: B
NEW QUESTION # 38
A Swift user has remediated an exception reported by the assessor. What are their obligations before updating and submitting an attestation reflecting the new compliance level?
- A. The exception must be re-assessed by the same independent assessor that raised the exception
- B. The first line of defense can confirm their level of compliance using a self-assessment approach
- C. The exception must be re-assessed by an independent assessor. The assessor can be different to the one who initially raised the exception
- D. None, if the remediation has been completed, a new attestation can be submitted reflecting the compliance of the control
Answer: C
NEW QUESTION # 39
......
Verified Pass CSP-Assessor Exam in First Attempt Guaranteed: https://examboost.latestcram.com/CSP-Assessor-exam-cram-questions.html
