Certified in Cybersecurity
Validates foundational knowledge, skills, and abilities for entry-level and junior cybersecurity roles. Covers five domains: security principles, business continuity and disaster recovery, access controls, network security, and security operations. No prior work experience required, making it accessible to IT professionals, career changers, and recent graduates. ISC2 offers free exam and training through the One Million Certified in Cybersecurity initiative. Accredited under ISO/IEC 17024.
Sample questions
A free preview of 15 source-grounded questions from this exam — answers and explanations included.
- Q1Security Principlesmedium
An organization is designing its security program and the CISO insists the strategy must integrate people, technology, and operations rather than relying on a single tool. Which concept is the CISO describing?
- A.Risk tolerance, the level of risk an organization is willing to accept to pursue its objectives
- B.Single sign-on, a convenience feature that consolidates many logins behind one credential
- C.Defense in depth, integrating people, technology, and operations across multiple layersCorrect answer
- D.Continuous monitoring, the ongoing tracking of a system's security state after authorization
Sources
Questions are grounded in 150 references from official and authoritative materials.