ISC2 CC • Timed Practice Test 1
This is a timed practice session. You have 10 minutes to answer 10 questions — approximately 1 minute per question, matching real ISC2 CC exam pace. Answer every question before time expires.
Time remaining
10:00
Exam-pace drill
Allow 1 minute per question. On the real ISC2 CC exam you have approximately 72 seconds per question — this session trains you to maintain that pace under pressure.
A small e-commerce company hosts its web application on a single server with a public IP address. The server runs a Linux OS with Apache, MySQL, and PHP. The company recently experienced a data breach where an attacker gained access to the customer database. The investigation reveals that the attacker exploited a vulnerability in the PHP application to execute arbitrary commands. The server logs show that the attacker used an unauthenticated HTTP POST request to a legacy script that should have been removed. Additionally, the server had default firewall rules allowing all inbound traffic on ports 80 and 443. The company wants to prevent future breaches without redesigning the entire application. Which course of action is the most effective?
10 minute time limit — choose an answer to begin.
10 questions · 10 minute exam-pace drill.