New Year Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Free QSA_New_V4 Questions Attempt

Page: 3 / 3
Total 40 questions

Qualified Security Assessor V4 Exam Questions and Answers

Question 9

Where can live PANs be used for testing?

Options:

A.

Production (live) environments only.

B.

Pre-production (test) environments only it located outside the CDE.

C.

Pre-production environments thatare located within the CDE.

D.

Testing with live PANs must only be performed in the OSA Company environment.

Question 10

What does the PCI PTS standard cover?

Options:

A.

Point-of-Interaction devices used to protect account data.

B.

Secure coding practices for commercial payment applications.

C.

Development of strong cryptographic algorithms.

D.

End-lo-end encryption solutions for transmission of account data.

Question 11

The Intent of assigning a risk ranking to vulnerabilities Is to?

Options:

A.

Ensure all vulnerabilities are addressed within 30 days.

B.

Replace the need for quarterly ASV scans.

C.

Prioritize the highest risk items so they can be addressed more quickly.

D.

Ensure that critical security patches are installed at least quarterly

Question 12

An organization wishes to implement multi-factor authentication for remote access, using the user's Individual password and a digital certificate. Which of the following scenarios would meet PCI DSS requirements for multi-factor authentication?

Options:

A.

Certificates are assigned only to administrative groups, and not to regular users.

B.

A different certificate is assigned to each individual user account, and certificates are not shared.

C.

Certificates are logged so they can be retrieved when the employee leaves the company.

D.

Change control processes are In place to ensure certificates are changed every 90 days.

Page: 3 / 3
Total 40 questions