Security & Risk Management
36 practice questions with explanations — 15 free to try
PassNova has 36 CISSP practice questions on Security & Risk Management, each with a clear explanation. A 15-question taster is free with no sign-up; the full bank is part of PassNova Premium. Updated for 2026.
Security & Risk Management: example questions & answers
2 worked examples with answers and explanations below. Try 15 CISSP questions free in the browser; the full 36-question Security & Risk Management bank is part of PassNova Premium.
In the context of the CIA triad, which security objective is primarily compromised when an attacker successfully performs an unauthorized modification of data in transit?
- ANon-repudiation
- BConfidentiality
- CIntegrity✓
- DAvailability
Answer: Integrity ensures data is not altered by unauthorized parties; modifying data in transit is a direct violation of integrity.
An organization calculates that a particular threat will occur twice per year and that each occurrence will cause a $10,000 loss to a $50,000 asset. What is the Annualized Loss Expectancy (ALE)?
- A$20,000✓
- B$50,000
- C$100,000
- D$10,000
Answer: ALE = SLE x ARO. With SLE of $10,000 and ARO of 2, ALE = $10,000 x 2 = $20,000.