CISSP

Asset Security & Security Architecture

47 practice questions with explanations — 15 free to try

PassNova has 47 CISSP practice questions on Asset Security & Security Architecture, each with a clear explanation. A 15-question taster is free with no sign-up; the full bank is part of PassNova Premium. Updated for 2026.

Sample questions

Asset Security & Security Architecture: example questions & answers

2 worked examples with answers and explanations below. Try 15 CISSP questions free in the browser; the full 47-question Asset Security & Security Architecture bank is part of PassNova Premium.

  1. In data lifecycle management, which role is ultimately accountable for classifying data and determining its protection requirements?

    • AEnd user
    • BData custodian
    • CData owner
    • DData processor

    Answer: The data owner holds accountability for the data, including classifying it and defining protection requirements; the custodian implements those controls.

  2. An organization wants to ensure that decommissioned solid-state drives (SSDs) cannot have their data recovered. Because of wear-leveling, which method is MOST reliable for sanitizing an SSD?

    • AReformatting the file system and then rebuilding the partition table on the drive
    • BDegaussing the drive using a certified magnetic field generator at a secure site
    • CA single-pass overwrite of each logical block address with zeros, then verify
    • DCryptographic erase (destroying the encryption key) or physical destruction

    Answer: Wear-leveling prevents overwrites from reliably reaching all cells and degaussing does not affect flash memory, so cryptographic erase or physical destruction is the reliable method for SSDs.

Start practising Asset Security & Security Architecture →