exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 353 discussion

Actual exam question from Isaca's CISM
Question #: 353
Topic #: 1
[All CISM Questions]

The PRIMARY advantage of performing black-box control tests as opposed to white-box control tests is that they:

  • A. require less IT staff preparation
  • B. identify more threats
  • C. simulate real-world attacks
  • D. cause fewer potential production issues
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
afb4b17
1 month ago
Selected Answer: A
Look at this question from a management perspective. Black- box testing requires less efforts for preparation. Next to that it simulate real-world attacks.
upvoted 1 times
...
Jess20
7 months, 2 weeks ago
Selected Answer: C
C. simulate real-world attacks
upvoted 1 times
...
oluchecpoint
10 months, 1 week ago
C. simulate real-world attacks Black-box control tests simulate real-world attacks because they are conducted with limited knowledge of the internal workings of the system or application being tested. Testers approach the system as an external entity, similar to a potential attacker who doesn't have insider knowledge. This helps identify vulnerabilities and weaknesses that might be exploited by real attackers. White-box control tests, on the other hand, involve testing with knowledge of the internal structure and code of the system, which may not always reflect how a real-world attacker would interact with the system.
upvoted 1 times
...
Agamennore
10 months, 2 weeks ago
Selected Answer: C
I don’t understand why the system say different. In my opinion is C for sure
upvoted 1 times
...
[Removed]
1 year ago
Selected Answer: C
another vote for C
upvoted 1 times
...
richck102
1 year ago
C. simulate real-world attacks
upvoted 1 times
...
sedardna
1 year, 1 month ago
Selected Answer: C
eS c sin duda
upvoted 1 times
...
Abhey
1 year, 2 months ago
Selected Answer: C
The PRIMARY advantage of performing black-box control tests as opposed to white-box control tests is that they simulate real-world attacks. Black-box testing is conducted with no prior knowledge of the system under test, simulating the perspective of an external attacker. This approach provides a realistic assessment of an organization's security posture and identifies vulnerabilities that might not be uncovered through other testing methods. In contrast, white-box testing is performed with full knowledge of the system's architecture, design, and source code, making it less realistic and less able to detect external threats.
upvoted 2 times
...
baranikumar_v
1 year, 6 months ago
C. They Simulate real-world scenarios.
upvoted 2 times
...
aokisan
1 year, 6 months ago
Selected Answer: C
clearly, C.
upvoted 2 times
...
EZPASS
1 year, 8 months ago
Selected Answer: C
C is the correct answer.
upvoted 2 times
...
Ziggybooboo
1 year, 8 months ago
Black box is no information shared, so C for me
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago