Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Customer Security Programme Assessor Certification(CSPAC)

Last Update 3 hours ago Total Questions : 116

The Customer Security Programme Assessor Certification(CSPAC) content is now fully updated, with all current exam questions added 3 hours ago. Deciding to include CSP-Assessor practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our CSP-Assessor exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these CSP-Assessor sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Customer Security Programme Assessor Certification(CSPAC) practice test comfortably within the allotted time.

Question # 1

Which of the following infrastructures has the smallest SWIFT footprint? (Select the correct answer)

• Connectivity

• Generic

• Products Cloud

• Products OnPrem

• Security

A.

Full stack of products up to the Messaging Interface

B.

Alliance Remote Gateway

C.

Lite 2 or Alliance Cloud

D.

A user with a Messaging Interface behind a Service Bureau

Question # 2

Intrusion Detection Control can be met through the following technology. (Select the correct answer)

• Swift Customer Security Controls Policy

• Swift Customer Security Controls Framework v2025

• Independent Assessment Framework

• Independent Assessment Process for Assessors Guidelines

• Independent Assessment Framework - High-Level Test Plan Guidelines

• Outsourcing Agents - Security Requirements Baseline v2025

• CSP Architecture Type - Decision tree

• CSP_controls_matrix_and_high_test_plan_2025

• Assessment template for Mandatory controls

• Assessment template for Advisory controls

A.

NIDS

B.

HIDS

C.

EDR and XDR

D.

A combination of all of the above

Question # 3

Can an internal audit department submit and approve their SWIFT user’s attestation on the KYC-SA SWIFT portal? (Select the correct answer)

• Swift Customer Security Controls Policy

• Swift Customer Security Controls Framework v2025

• Independent Assessment Framework

• Independent Assessment Process for Assessors Guidelines

• Independent Assessment Framework - High-Level Test Plan Guidelines

• Outsourcing Agents - Security Requirements Baseline v2025

• CSP Architecture Type - Decision tree

• CSP_controls_matrix_and_high_test_plan_2025

• Assessment template for Mandatory controls

• Assessment template for Advisory controls

• CSCF Assessment Completion Letter

• Swift_CSP_Assessment_Report_Template

A.

Yes, providing this is agreed by the head of IT operations and the CISO

B.

No, this is never an option

C.

Yes, an internal auditor can submit the attestation for approval provided they have the appropriate credentials for swift.com. The CISO remains in charge of the approval of the attestation

D.

Yes, with approval from the Chief Auditor

Question # 4

A Treasury Management System (TMS) application is installed on the same machine as the customer connector (such as MQ server) connecting towards a Service Bureau Are these applications/systems in scope of CSCF?

A.

The TMS application, the MQ server and hosting system are in the scope of the CSCF and must be placed in a secure zone

B.

The TMS application, the MQ server and hosting system enters the scope of the CSCF advisory and should be placed in a secure zone

C.

Only the MO server application is in scope of the CSCF > The TMS application is considered as back-office

D.

The TMS application is the highest risk and must be secured appropriately. The MQ server should be secured on a best effort basis

Question # 5

Which statements are true of Alliance Messaging Hub (AMH)? (Select the correct answer)

• Connectivity

• Generic

• Products Cloud

• Products OnPrem

• Security

A.

AMH is highly resilient, and can consist of multiple instances and sites in parallel

B.

AMH provides advanced integration capabilities

C.

AMH is a messaging interface able to connect to other financial networks, not only SWIFT

D.

All of the above

Question # 6

In the illustration, identify the component type of each of the numbered components.

A.

1. Customer Connector

2. Bridging Server (Middleware Server)

3. Customer Connector

4. Bridging Server (Middleware Server)

B.

1. Customer Connector

2. Bridging Server (Middleware Server)

3. Customer Connector

4. Customer Connector

C.

1. Bridging Server (Middleware Server)

2. Bridging Server (Middleware Server)

3. Bridging Server (Middleware Server)

4. Bridging Server (Middleware Server)

D.

1. Customer Connector

2. Customer Connector

3. Customer Connector

4. Customer Connector

Question # 7

For each of the following setups, the responsible party is identified to protect the virtualization or cloud underlying platform. Which one of the combinations is not correct?

• Swift Customer Security Controls Policy

• Swift Customer Security Controls Framework v2025

• Independent Assessment Framework

• Independent Assessment Process for Assessors Guidelines

• Independent Assessment Framework - High-Level Test Plan Guidelines

• Outsourcing Agents - Security Requirements Baseline v2025

• CSP Architecture Type - Decision tree

• CSP_controls_matrix_and_high_test_plan_2025

• Assessment template for Mandatory controls

• Assessment template for Advisory controls

• CSCF Assessment Completion Letter

• Swift_CSP_Assessment_Report_Template

A.

For on-premises virtualization platform: by the platform provider

B.

For virtualization platform deployed at a third party on which user’s SWIFT-related components are virtually hosted: by the third party

C.

For on-premises container platform: by the SWIFT user

D.

For Cloud Provider: the cloud provider

Question # 8

Which of the following infrastructures has the smallest Swift footprint?

A.

Full stack of products up to the Messaging Interface

B.

Alliance Remote Gateway

C.

Alliance Lite2

D.

Full stack of products includinq IPLA

Question # 9

Which encryption methods are used to secure the communications between the SNL host and HSM boxes?

A.

NTLS and SSH

B.

Telnet and SSL

C.

NTLS and Telnet

D.

MPLS and SSL

Question # 10

What type of keys does the HSM box store? (Select the correct answer)

• Connectivity

• Generic

• Products Cloud

• Products OnPrem

• Security

A.

Private keys

B.

Public keys

C.

Both private and public keys

Go to page: