
Use the best ways of preparing for CPSA Exam Dumps with DumpsTorrent PCI CPSA dump PDF [2024]
PCI CPSA exam candidates will surely pass the Exam if they consider the CPSA dumps learning material presented by DumpsTorrent.
NEW QUESTION # 24
An assessor must provide which of the following to their client at the start of every assessment?
- A. CPSA Feedback Form
- B. Quality Assurance Manual
- C. Attestation of Compliance
- D. Vendor Release Agreement
Answer: C
NEW QUESTION # 25
For each requirement listed in a ROC, which types of findings must have a full narrative response?
- A. All types of findings
- B. New or Closed findings only
- C. Non-compliant findings only
- D. All types except Not Applicable findings
Answer: D
NEW QUESTION # 26
Which of the following statements is true about the facility's non-emergency exits?
- A. They must be contact-alarm monitored only when card production activities are taking place
- B. They may be left unlocked when a guard is present
- C. They must be configured to prevent staff tailgating
- D. They must be fitted with biometric access-control devices
Answer: C
NEW QUESTION # 27
How frequently must alarms on external doors of a card production and provisioning vendor environment be tested?
- A. Every day
- B. Every week
- C. Every month
- D. Every 3 months
Answer: D
NEW QUESTION # 28
Which of these is a requirement of the security control room?
- A. Access must be monitored in real-time
- B. Access must be controlled by a physical key (in case of power-failure)
- C. At least one guard must be present at all times
- D. Dual-control must be used to grant entry
Answer: D
NEW QUESTION # 29
During an assessment you walk the perimeter of the building with a guard you find an emergency exit door from the facility and ask the guard what is on the other side. The guard can't remember, and so uses their assigned, secure key to open the door and show you a corridor within the facility. What most concerns you about the situation?
- A. The guard should not have forgotten where the door leads to
- B. The guard should have sought permission from their manager before opening the door
- C. The exit door should not be capable of being opened from the outside
- D. The exit door should not lead into the facility
Answer: B
NEW QUESTION # 30
A card production vendor employs a contracted guard service from an outside source. What is one of the responsibilities of the contracted service?
- A. Maintain their own liability insurance in case of losses to card material
- B. Provide only certified guards
- C. Register their service with the VPA
- D. Undergo their own Card Production assessment and provide evidence of a passing result
Answer: A
NEW QUESTION # 31
Which of the following principles must be enforce by the HSA Access Control system?
- A. Dual guard entry when required
- B. Dual presence
- C. Dual control and dual presence
- D. Dual control
Answer: C
NEW QUESTION # 32
Which of the following personnel changes must result in the vendor notifying the Vendor Program Administration (VPA)?
- A. Adding additional rights to someone's role to give them access to the mam production vault
- B. Promoting someone to senior management level
- C. Any change to a role that directly affects the security of card products and related components
- D. Hiring someone that will directly interact with the card issuers
Answer: C
NEW QUESTION # 33
To liberate a person detected inside of the inner shipping delivery room and stop the alarm, the software monitoring the access-control system must only allow the opening of which door?
- A. The least secure door
- B. The internal facing door
- C. The last activated door
- D. The external facing door
Answer: B
NEW QUESTION # 34
When must HSA motion detectors generate an alarm event?
- A. Each time movement is detected
- B. Each time movement is detected and the access-control system indicates the room is not occupied
- C. Each time movement is detected outside of regular business hours
- D. Each time movement is detected and the access-control system indicates the room is occupied
Answer: B
NEW QUESTION # 35
Which of the following statements is true in relation to visitor access badges?
- A. Each visitor entering the facility must be issued and must visibly wear a disposable ID badge that identifies them as a non-employee
- B. Each visitor entering the facility must wear their issued access badge above waist height
- C. Badges with access-controls must not be issued to visitors
- D. Unissued visitor access badges must be securely stored
Answer: A
NEW QUESTION # 36
Which of the following must every assessor do to maintain their CPSA certification?
- A. Earn and document at least 20 hours of Continuing Professional Education (CPE) over 3 years
- B. Earn an additional professional certification from List A or B of the Qualification Requirements (QRs)
- C. Submit evidence of internal training in a relevant area (as per the QRs)
- D. Complete annual requalification training or complete 3 assessments for different facilities each year
Answer: A
NEW QUESTION # 37
A vendor's HSA access is enforced by a security turnstile they have a logical access-control system that ensures anti pass-back. The device is functioning correctly. When must the status of the access change?
- A. Only when the person has successfully completed the access cycle
- B. Only when an unauthorised badge is presented
- C. Upon initial presentation of an authorised badge, prior to completion of the access cycle
- D. Upon initial entry of the person into the device, prior to completion of the access cycle
Answer: C
NEW QUESTION # 38
Which of the following must be used by the vendor to protect doors that provide access to buildings containing air conditioning equipment?
- A. Physical locks with a limited set of keys under constant supervision by a guard in the security control-room
- B. Security tape that will leave an observable trace each time a door is opened
- C. Electrical contacts that log each open and close event to a secure system memory
- D. Magnetic contacts that are permanently alarmed and that are connected to the security control-room panels
Answer: A
NEW QUESTION # 39
A vendor discovers that a recent shipment of cards is missing a set. Which of the following responses would you expect in a compliant organization?
- A. The head of security initiates a meeting, and once the VPA approves the messaging, law enforcement is notified in two days
- B. A report is requested by the issuer, the vendor sends it to them, and the issuer handles the incident with the local police
- C. After an incident review, the VPA, issuer and law enforcement are all notified within 24 hours
- D. An immediate call is made to the issuer and the VPA who, between them, contact law enforcement and put together a joint statement
Answer: C
NEW QUESTION # 40
Which of these are guards allowed access to?
- A. Audit logs
- B. Loading bays
- C. HSAs
- D. Physical master keys that provide access to card production or provisioning areas
Answer: D
NEW QUESTION # 41
Under which circumstances may boxes containing card stock remain unsealed within the vault?
- A. This is never permitted
- B. Where the stock from those boxes will be pulled once at the beginning of production
- C. Where stock from those boxes will be pulled multiple times per day
- D. Always, as long as an accurate inventory is being maintained
Answer: D
NEW QUESTION # 42
Which of the following statements about unsolicited visitors is true?
- A. They must complete an NDA before entry is granted
- B. They must be turned away
- C. They must be able to prove a legitimate reason for their visit prior to entry
- D. They must be registered, their identities confirmed, and must be allocated an escort before entry
Answer: D
NEW QUESTION # 43
You are driving to a vendor for their first assessment. The facility is in a rural area, twenty miles away from the nearest large town. What most concerns you about the location?
- A. There may not be adequate retail outlets, which may cause problems when sourcing lunch items for onsite personnel
- B. Power blackouts may affect security systems
- C. The local fire service may not be able to reach the facility within 15 minutes
- D. Law enforcement services may not be able to reach the facility in a timely manner
Answer: D
NEW QUESTION # 44
......
Full CPSA Practice Test and 52 unique questions with explanations waiting just for you, get it now: https://drive.google.com/open?id=1QXAekO3QELZg4lQyutQ_JJ1ARWjBN9TK
Accurate & Verified Answers As Seen in the Real Exam here: https://www.dumpstorrent.com/CPSA-exam-dumps-torrent.html