ExamDumpster

Free AFC-CERT sample questions

Real questions from the Anti-Fraud Controls Certificate Program practice bank, with the correct answer and an explanation for each one. No junk, no filler.

Try them in the simulator Same questions, with study, timed and flashcard modes.

Showing 6 of 12 free sample questions.

Question 1Choose one

A multinational corporation is migrating its customer relationship management (CRM) system to a SaaS cloud provider. The Chief Risk Officer is concerned about data security responsibilities. Under the shared responsibility model for SaaS, which of the following security controls remains the primary responsibility of the customer organization?

Question 2Choose one

A financial institution is implementing a Bring Your Own Device (BYOD) policy. To mitigate the risk of corporate data leakage on personal devices without violating employee privacy, which technical control is most appropriate?

Question 3Choose one

While auditing logical access controls, an auditor discovers that a senior database administrator (DBA) has the ability to both modify the database schema and delete audit logs. This violation of the principle of least privilege poses a significant risk of:

Question 4Choose one

An organization detects a spear-phishing campaign targeting its accounts payable department. The emails appear to come from the CFO and request urgent wire transfers. This attack vector leverages information likely gathered from:

Question 5Choose 2

Which of the following are primary components of a comprehensive Data Loss Prevention (DLP) strategy? (Select TWO)

Question 6Choose one

True or False: In a high-security data center, biometric access controls (such as fingerprint or retina scanners) are considered a 'what you have' authentication factor.

6 more free samples are waiting

Create a free account to unlock the whole AFC-CERT sample bank, or get full access to all 108 practice questions in the simulator.

Create account