{"id":22447,"date":"2026-09-26T04:47:52","date_gmt":"2026-09-26T04:47:52","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=22447"},"modified":"2026-09-26T04:47:52","modified_gmt":"2026-09-26T04:47:52","slug":"asis-psp-practice-test-questions-and-exam-dumps-part11-q201-220","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/asis-psp-practice-test-questions-and-exam-dumps-part11-q201-220\/","title":{"rendered":"ASIS PSP Practice Test Questions and Exam Dumps Part11 Q201-220"},"content":{"rendered":"<h2><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/psp-exam-dumps\"><b>ASIS PSP Exam Dumps<\/b><\/a><b> and Practice Test Dumps<\/b><\/h2>\n<p>&nbsp;<\/p>\n<p><b>Question 201.<\/b><\/p>\n<p><b>A security professional is evaluating a building where a public stairwell provides access to several restricted floors. What is the most appropriate security consideration?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Whether the stairwell has decorative finishes<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Whether floor access from the stairwell is appropriately controlled while preserving required emergency egress<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Whether employees prefer elevators<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Whether every stairwell door uses identical signage<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Stairwells can provide vertical movement that bypasses lobby or elevator access controls if floor-entry doors are not properly secured. The security professional should evaluate which floors require controlled access and how stairwell doors behave during normal operation, emergencies, fire alarms, and system failures. Any solution must preserve applicable life-safety and egress requirements. Access-control hardware, monitoring, alarms, and procedures may be appropriate depending on risk. The objective is to prevent unauthorized movement without creating unsafe conditions for occupants who need to evacuate.<\/span><\/p>\n<p><b>Question 202.<\/b><\/p>\n<p><b>What is the primary purpose of a security master plan?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> To provide a coordinated long-term framework for security objectives, priorities, systems, projects, standards, and investments<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> To list only currently installed cameras<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> To replace individual security procedures<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> To guarantee that security requirements never change<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A security master plan helps an organization coordinate physical security improvements over time rather than implementing isolated projects without a common direction. It can connect risk assessments, protection objectives, design standards, technology strategies, operational requirements, budgets, and implementation priorities. The plan should be sufficiently flexible to accommodate changes in threats, facilities, technology, and business operations. Individual projects and procedures may still require detailed documentation. The master plan provides the broader framework that helps those efforts remain consistent with organizational security goals.<\/span><\/p>\n<p><b>Question 203.<\/b><\/p>\n<p><b>A facility uses smart cards for employee access, but employees routinely lend their cards to coworkers. Which security principle is being undermined?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Natural surveillance<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Perimeter standoff<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Individual accountability and reliable association between a credential and its authorized holder<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Lighting uniformity<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Access credentials are normally issued to specific individuals so transactions can support authorization and accountability. Sharing credentials makes it difficult to determine who actually entered an area and may allow individuals to obtain privileges they were not granted. The organization should reinforce credential-use policies, investigate why sharing occurs, and address operational processes that encourage it. Depending on risk, additional authentication or entrance controls may also be appropriate. Technology cannot provide reliable accountability when users intentionally exchange the credentials on which the system depends.<\/span><\/p>\n<p><b>Question 204.<\/b><\/p>\n<p><b>A critical facility has two backup communication links, but both cables travel through the same underground conduit. What should concern the security professional?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> The cables have different manufacturers<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> The conduit is underground<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> The links use different labels<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> A single physical event could disable both supposedly redundant communication paths<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Redundancy is weakened when backup systems share a common vulnerability. Two communication circuits may appear independent logically while using the same conduit, building entrance, network room, or service provider infrastructure. Damage at that shared point could disable both simultaneously. The security professional should evaluate physical and logical path diversity when resilience is required. Appropriate separation depends on the consequences of communication loss and the threats or hazards being addressed. Effective redundancy reduces common-mode failures rather than merely duplicating equipment.<\/span><\/p>\n<p><b>Question 205.<\/b><\/p>\n<p><b>Why should a security risk assessment consider residual risk after controls are implemented?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Controls usually reduce risk rather than eliminating every possibility of loss or disruption.<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Residual risk exists only when no controls are installed.<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Residual risk is always acceptable.<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> It represents only the cost of security equipment.<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Security controls generally change the likelihood, vulnerability, consequence, or overall exposure associated with a risk, but complete elimination is uncommon. Residual risk is the risk remaining after relevant controls or treatments are considered. Management should understand this remaining exposure so it can decide whether additional mitigation, transfer, avoidance, or formal acceptance is appropriate. The analysis also helps demonstrate that installing a control does not automatically resolve the underlying risk. Residual risk should be reconsidered when threats, vulnerabilities, consequences, or control effectiveness change.<\/span><\/p>\n<p><b>Question 206.<\/b><\/p>\n<p><b>A security manager is concerned that employees are entering restricted areas by following closely behind authorized personnel through turnstiles. Which issue should be evaluated?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Camera storage capacity only<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Piggybacking or tailgating controls, user behavior, turnstile configuration, monitoring, and enforcement<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Parking lot landscaping<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Building exterior paint<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Controlled entrances can be undermined when multiple individuals pass using one authorization. Depending on the circumstances, the behavior may involve deliberate piggybacking or unintentional tailgating. The manager should evaluate entrance hardware, throughput, employee practices, surveillance, alarms, guard procedures, and awareness. Controls should be proportionate to risk because highly restrictive solutions may affect accessibility and traffic flow. The objective is to maintain individual authorization at the boundary without creating operational conditions that encourage users to bypass the process.<\/span><\/p>\n<p><b>Question 207.<\/b><\/p>\n<p><b>A facility stores confidential records in an unlocked room accessible to numerous employees who have no business need for them. What is the most appropriate improvement?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Increase hallway lighting only<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Move the records closer to the entrance<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Restrict physical access and storage according to authorization and information sensitivity<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Remove all record inventories<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Physical protection of sensitive information should reflect legitimate business need and the consequences of unauthorized access, loss, or disclosure. Secure rooms, cabinets, access-control measures, key management, or other controls may be appropriate depending on sensitivity. Authorization should be limited to personnel who require access for their responsibilities. Records should also be handled, retained, and disposed of according to applicable organizational and legal requirements. Physical security therefore supports information protection by controlling who can reach sensitive documents and storage locations.<\/span><\/p>\n<p><b>Question 208.<\/b><\/p>\n<p><b>An organization plans to connect its video surveillance system to the corporate network. What should be considered before integration?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Only camera resolution<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Only the number of network cables<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Only monitor dimensions<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Network security, segmentation, authentication, bandwidth, availability, administrative access, updates, and system dependencies<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Modern physical security systems often rely on network infrastructure and therefore inherit cybersecurity and availability concerns. The organization should coordinate physical security and information technology requirements, including network segmentation, administrative authentication, communications protection, bandwidth, system updates, monitoring, and recovery. Security devices should not be assumed safe simply because they serve a physical protection function. Integration should also consider what happens when the corporate network experiences congestion, maintenance, cyber incidents, or outages that could affect surveillance availability.<\/span><\/p>\n<p><b>Question 209.<\/b><\/p>\n<p><b>What is an important advantage of using tamper detection on critical security equipment enclosures?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> It can provide notification when someone attempts unauthorized opening or interference with protected equipment.<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> It makes the enclosure physically indestructible.<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> It eliminates the need for access restrictions.<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> It prevents every equipment malfunction.<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Critical panels, controllers, communication equipment, and other security components may be targets for unauthorized manipulation. Tamper detection can generate an alarm when an enclosure is opened or otherwise disturbed, allowing personnel to investigate. It should complement physical locks, restricted access, surveillance, and appropriate installation rather than replace them. Tamper alarms also require suitable monitoring and response procedures. The level of protection should reflect equipment criticality and the consequences that unauthorized manipulation could have on the broader security system.<\/span><\/p>\n<p><b>Question 210.<\/b><\/p>\n<p><b>A security manager is reviewing a proposal for video analytics that claims virtually perfect detection under all conditions. What is the best response?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Purchase the system based solely on the claim<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Define required performance and validate the technology under representative site and environmental conditions<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Assume analytics eliminate the need for assessment<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Remove all conventional security controls<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Analytics performance can vary with lighting, weather, camera angle, scene complexity, target behavior, configuration, and other environmental factors. Marketing claims should therefore be evaluated against defined operational requirements and realistic site conditions. Pilot testing or acceptance testing can measure detection and nuisance alarm performance before full reliance is placed on the technology. Analytics can help direct operator attention, but detections may still require assessment and response. Technology should be incorporated into the overall security system based on demonstrated performance rather than unsupported expectations.<\/span><\/p>\n<p><b>Question 211.<\/b><\/p>\n<p><b>A security professional discovers a drainage culvert passing underneath the perimeter fence. What should be evaluated?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Only water-flow capacity<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Whether the culvert is visible from the office<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Whether the culvert creates a potential bypass route and what protection can be applied without compromising drainage requirements<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> The number of vehicles entering the facility<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Drainage structures can create openings beneath otherwise effective perimeter barriers. The security professional should evaluate dimensions, accessibility, terrain, expected water flow, maintenance requirements, and whether the opening could permit unauthorized entry. Appropriate measures may include grilles, barriers, detection, surveillance, or other controls designed so they do not create unacceptable flooding or maintenance problems. Perimeter assessments should examine utility and drainage penetrations because adversaries may exploit less obvious routes instead of attempting to defeat the main fence directly.<\/span><\/p>\n<p><b>Question 212.<\/b><\/p>\n<p><b>A facility is installing an emergency lockdown capability. Which issue is most important during design?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Making every door behave identically<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Preventing anyone from overriding the system under any circumstances<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Eliminating emergency egress<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Defining which openings lock, who can initiate or override lockdown, life-safety behavior, communications, and failure conditions<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Lockdown functionality can significantly affect occupant movement, emergency response, and life safety. The organization should define exactly what lockdown is intended to accomplish, which areas are affected, who has authority to activate it, and how doors behave during fires, evacuations, power failures, or responder access. Communications and training are also essential so personnel understand expected actions. Integrated testing should verify actual system behavior. Lockdown should be engineered as a controlled emergency capability rather than simply applying a universal lock command to every door.<\/span><\/p>\n<p><b>Question 213.<\/b><\/p>\n<p><b>Why should access privileges be reviewed when an employee changes job responsibilities?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> The employee may no longer require previous access or may need different privileges for the new role.<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Every transferred employee should retain all previous access permanently.<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Access should be reviewed only at termination.<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Job responsibilities are unrelated to physical access.<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Physical access should generally correspond to current business responsibilities. When employees transfer, receive promotions, change departments, or take on different duties, previous access may become unnecessary while new privileges may be required. If old permissions accumulate, employees can retain access far beyond legitimate need. A structured change process involving appropriate managers, human resources, and security can help maintain accurate authorization. Periodic access reviews provide an additional safeguard for permissions that were not adjusted correctly during organizational changes.<\/span><\/p>\n<p><b>Question 214.<\/b><\/p>\n<p><b>A security manager wants to improve the reliability of incident evidence obtained from access logs and video recordings. What practice is most important?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Allow all employees to edit records<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Maintain accurate timestamps, controlled access, appropriate retention, and integrity of relevant security records<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Delete records immediately after an incident<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Disable system audit trails<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Security records can support investigations only when their timing, integrity, and origin are sufficiently reliable. Systems should use appropriately synchronized time sources, and access to records should be limited to authorized personnel. Audit trails and controlled export procedures can help establish how evidence was handled. Retention should preserve records long enough for legitimate investigative and legal needs. When records are collected for a specific investigation, appropriate chain-of-custody procedures may also be necessary to document possession, transfer, and preservation.<\/span><\/p>\n<p><b>Question 215.<\/b><\/p>\n<p><b>A facility&#8217;s perimeter lighting has several failed fixtures, but no formal process exists for identifying outages. What should be implemented?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Replacement only after a security incident<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Permanent removal of lighting<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Routine inspection, reporting, repair, and verification procedures based on the lighting&#8217;s security importance<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Increased camera storage<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Lighting performance can gradually degrade as lamps fail, fixtures become dirty, vegetation grows, or equipment is damaged. Without routine inspection, significant dark areas may persist unnoticed. A maintenance process should identify failures, establish repair priorities, document corrective action, and verify restoration. Critical areas may require faster response than locations where lighting has limited security significance. Periodic nighttime inspections can reveal problems that are difficult to recognize during daylight. Security controls require ongoing maintenance to sustain the performance assumed during design.<\/span><\/p>\n<p><b>Question 216.<\/b><\/p>\n<p><b>A security professional is reviewing remote vendor access to an electronic security management system. What is the best approach?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Provide the vendor with a permanent shared administrator account<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Allow unrestricted remote access from any device<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Disable logging to simplify maintenance<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Limit remote access through authorized, authenticated, monitored, and controlled procedures appropriate to the risk<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Remote maintenance can be useful, but unrestricted vendor access can create a pathway to critical physical security systems. Access should be limited to legitimate support needs and protected using suitable authentication, authorization, monitoring, and network controls. Organizations may also restrict when connections are enabled and require approval for sensitive changes. Individual accounts and audit logs improve accountability compared with shared credentials. Vendor access should be removed when no longer required. Physical security system administration deserves protection comparable to the importance of the functions being controlled.<\/span><\/p>\n<p><b>Question 217.<\/b><\/p>\n<p><b>What is the primary purpose of a tabletop security exercise?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> To discuss a simulated scenario and evaluate plans, decisions, coordination, responsibilities, and information needs in a controlled setting<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> To test physical barriers destructively<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> To replace all operational drills<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> To measure camera resolution<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A tabletop exercise allows participants to work through a simulated event without deploying all operational resources. It can reveal unclear responsibilities, communication problems, missing information, conflicting procedures, or gaps in escalation and decision-making. Facilitators typically present scenario developments and ask participants to explain how they would respond. Tabletop exercises are particularly useful for validating plans and preparing for more complex drills or full-scale exercises. Findings should be documented, assigned for corrective action, and reviewed to confirm that meaningful improvements are implemented.<\/span><\/p>\n<p><b>Question 218.<\/b><\/p>\n<p><b>A security manager must choose between repairing an obsolete access-control platform and replacing it. Which factor should receive the broadest consideration?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Original purchase price alone<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Lifecycle cost, reliability, supportability, security, integration, operational requirements, and future needs<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> The age of the building alone<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> The appearance of new readers<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">An obsolete platform may continue functioning while becoming increasingly difficult or expensive to support. The organization should compare repair and replacement options using lifecycle considerations such as maintenance, spare parts, vendor support, cybersecurity, reliability, compatibility, scalability, training, migration, and expected service life. Immediate purchase cost is only one part of the decision. A planned transition can also reduce the operational risk associated with sudden failure of unsupported equipment. Decisions should ultimately support current and anticipated security requirements.<\/span><\/p>\n<p><b>Question 219.<\/b><\/p>\n<p><b>An employee requests temporary access to a highly restricted area for a one-week assignment. What is the most appropriate approach?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Give the employee permanent access to avoid future requests<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Provide a shared master credential<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Authorize only the necessary temporary access for the required period and ensure it expires or is removed afterward<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Disable access logging during the assignment<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Temporary access should follow the principles of least privilege and limited duration. The employee should receive only the access necessary for the assignment and only for the period during which that access is justified. Appropriate authorization should be documented, and the privilege should expire automatically or be promptly removed when the assignment ends. This reduces the accumulation of unnecessary permissions. Access activity should remain appropriately logged, particularly for sensitive areas where accountability and investigation capability are important.<\/span><\/p>\n<p><b>Question 220.<\/b><\/p>\n<p><b>A physical security assessment identifies several vulnerabilities but the organization cannot correct all of them immediately. What is the most appropriate management approach?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Address vulnerabilities in alphabetical order<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2.<\/b><span style=\"font-weight: 400;\"> Correct only those that are easiest to fix<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3.<\/b><span style=\"font-weight: 400;\"> Ignore all vulnerabilities until sufficient funding exists for every correction<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.<\/b><span style=\"font-weight: 400;\"> Prioritize actions based on risk and use appropriate interim or compensating controls where necessary<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Organizations frequently have more potential security improvements than can be implemented immediately. Risk-based prioritization helps direct available resources toward vulnerabilities with the most significant combination of threat, weakness, and consequence. High-priority deficiencies may require temporary compensating controls while permanent solutions are designed or funded. Management should document decisions, responsibilities, target dates, and residual risk. Lower-priority items should remain tracked rather than disappearing from consideration. This approach supports deliberate resource allocation while maintaining visibility of unresolved security exposure.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full ASIS PSP Exam Dumps and Practice Test Dumps &nbsp; Question 201. A security professional is evaluating a building where a public stairwell provides access to several restricted floors. What is the most appropriate security consideration? Whether the stairwell has decorative finishes 2. Whether floor access from the stairwell is appropriately controlled while preserving [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/22447"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=22447"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/22447\/revisions"}],"predecessor-version":[{"id":22448,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/22447\/revisions\/22448"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=22447"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=22447"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=22447"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}