最新の2025年04月07日試験エンジン練習問題CSP-Assessor最新の有効問題集を提供中です
試験解答はCSP-Assessor最新版テストエンジンをタダで提供します
Swift CSP-Assessor 認定試験の出題範囲:
| トピック | 出題範囲 |
|---|---|
| トピック 1 |
|
| トピック 2 |
|
| トピック 3 |
|
質問 # 18
Is the restriction of Internet access only relevant when having Swift-related components in a secure zone?
- A. Yes, because if there is no secure zone then the internet connectivity does not need to be restricted
- B. No, because there can be in-scope general operator PCs used to access a Swift-related application hosted at a service provider
正解:B
質問 # 19
A Swift user has moved from one Service Bureau to another What are the obligations of the Swift user in the CSP context?
- A. None if there is no impact in the architecture tope
- B. To inform the SB certification office at Swift WW
- C. To submit an updated attestation reflecting this change within 3 months
- D. To reflect that in the next attestation cycle
正解:C
質問 # 20
Penetration testing must be performed at application level against the Swift-related components, such as the interfaces, Swift and customer connectors?
- A. True, those are key components
- B. False, only the components as defined in Swift Testing Policy
正解:A
質問 # 21
Using the outsourcing agent diagram. Which components must be placed in a secure zone? (Choose all that apply.)

- A. Component A
- B. Component C
- C. Component D
- D. Component B
正解:A、C
質問 # 22
As a Swift CSP Certified Assessor. Swift contacted me to provide evidence on an assessment I have performed. This is required to support their quality assurance validation process. Is it allowed?
- A. No, it's confidential
- B. Yes, one of the obligations of the certification programme is that quality assessment can be performed by Swift
正解:B
質問 # 23
Which statement(s) is/are correct about the LSO/RSO accounts on a Swift Alliance Access? (Choose all that apply.)
- A. Their PKI certificates are stored either on a HSM Token or on a HSM-box
- B. They are the business profiles that can sign the Swift financial transactions
- C. They are local Security Officers
- D. They are responsible for the configuration and management of the security functions of the server
正解:A、C、D
質問 # 24
Where is the implementation of multi-factor authentication deemed sufficient to support control 4.2 compliance? (Choose all that apply.)
- A. When accessing an outsourcing agent or an L2BA Swift-related application
- B. When login on the jump server filtering access to local Swift secure zone
- C. When logging-in on an interface, a connector, or the system running such component
- D. On the General Operator PC used to access a Swift-related component
正解:A、B、C、D
質問 # 25
The only type of HSM devices offered by Swift are HSM tokens and HSM boxes.
- A. FALSE
- B. TRUE
正解:B
質問 # 26
The Physical Security protection control is also aimed at protecting the "on call" and "working from home" employees' equipment used to access the Swift-related components.
- A. FALSE
- B. TRUE
正解:B
質問 # 27
A Treasury Management System (TMS) application is installed on the same machine as the customer connector (such as MQ server) connecting towards a Service Bureau Are these applications/systems in scope of CSCF?
- A. The TMS application is the highest risk and must be secured appropriately. The MQ server should be secured on a best effort basis
- B. The TMS application, the MQ server and hosting system are in the scope of the CSCF and must be placed in a secure zone
- C. The TMS application, the MQ server and hosting system enters the scope of the CSCF advisory and should be placed in a secure zone
- D. Only the MO server application is in scope of the CSCF> The TMS application is considered as back-office
正解:B
質問 # 28
Can a Swift user choose to implement the security controls (example: logging and monitoring) in systems which are not directly in scope of the CSCE?
- A. No
- B. Yes
正解:B
質問 # 29
When hesitant on the applicability of a CSCF control to a particular component? What steps should you take? (Choose all that apply.)
- A. Open a case with Swift support via the case manager on swift com if further information or solution cannot be found in the documentation
- B. Check appendix F of the CSCF
- C. Check carefully the Introduction section of the CSCF
- D. Call your Swift contact
正解:A、B、C、D
質問 # 30
- A. 1. Customer Connector
2. Bridging Server (Middleware Server)
3. Customer Connector
4. Customer Connector - B. 1. Customer Connector
2. Customer Connector
3. Customer Connector
4. Customer Connector - C. Option C
- D. Option B
- E. Option A
- F. 1. Customer Connector
2. Bridging Server (Middleware Server)
3. Customer Connector
4. Bridging Server (Middleware Server) - G. 1. Bridging Server (Middleware Server)
2. Bridging Server (Middleware Server)
3. Bridging Server (Middleware Server)
4. Bridging Server (Middleware Server) - H. Option D
正解:E、F
質問 # 31
How many Swift Security Officers does an organization need at minimum?
- A. 0
- B. 1
- C. 2
- D. 3
正解:C
質問 # 32
From the outsourcing agent diagram, which components in the diagram are in scope and applicable for the Swift user.

- A. Components A, B, C, D and E
- B. None of the above
- C. Components C, D and E
- D. Components A and B
正解:A
質問 # 33
Which of the following infrastructures has the smallest Swift footprint?
- A. Full stack of products includinq IPLA
- B. Alliance Remote Gateway
- C. Full stack of products up to the Messaging Interface
- D. Alliance Lite2
正解:D
質問 # 34
......
CSP-Assessor試験問題集で無料サンプルは365日更新されます:https://jp.fast2test.com/CSP-Assessor-premium-file.html