Labour Day Special 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: exams65

Card Production Security Assessor (CPSA) Qualification Exam Question and Answers

Card Production Security Assessor (CPSA) Qualification Exam

Last Update Apr 24, 2024
Total Questions : 0

We are offering FREE CPSA PCI SSC exam questions. All you do is to just go and sign up. Give your details, prepare CPSA free exam questions and then go for complete pool of Card Production Security Assessor (CPSA) Qualification Exam test questions that will help you more.

CPSA pdf

CPSA PDF

$35  $99.99
CPSA Engine

CPSA Testing Engine

$42  $119.99
CPSA PDF + Engine

CPSA PDF + Testing Engine

$297.5  $850
Questions 1

In relation to guards, which of the following must the vendor ensure?

Options:

A.  

A clear segregation of duties is maintained between production staff and guards

B.  

A clear segregation of duties is maintained between guard and reception related job functions

C.  

There is always at least one guard on-site, including outside of working hours, to monitor security systems and premises

D.  

There is always at least one guard in the HSA and one guard in the security control room at all times

Discussion 0
Questions 2

John works for ACME Inc Personalizers. an organization that personalizes payment cards as well as printing the corresponding PIN mailers for distribution directly to the cardholder. Which of the following statements is true?

Options:

A.  

If John is involved in card personalization then he must not be involved in the printing of the corresponding PINs

B.  

If John is involved in card personalization, then he must never be involved in the card shipment process

C.  

If John is involved in card personalization, then he must never be involved in PIN printing

D.  

If John is involved in PIN printing, then he must never be involved in the card shipment process

Discussion 0
Questions 3

In which of the following locations must the CCTV and access control servers be located?

Options:

A.  

Within the Security Control Room (SCR)

B.  

Within a room in the HSA with security controls equivalent to the SCR applied

C.  

Within the SCR or a room with equivalent security

D.  

Within the secure server room inside of the HSA

Discussion 0
Questions 4

Which of the following statements is true in relation to visitor access badges?

Options:

A.  

Each visitor entering the facility must be issued and must visibly wear a disposable ID badge that identifies them as a non-employee

B.  

Each visitor entering the facility must wear their issued access badge above waist height

C.  

Badges with access-controls must not be issued to visitors

D.  

Unissued visitor access badges must be securely stored

Discussion 0
Questions 5

A vendor’s HSA access is enforced by a security turnstile they have a logical access-control system that ensures anti pass-back. The device is functioning correctly. When must the status of the access change?

Options:

A.  

Only when an unauthorised badge is presented

B.  

Only when the person has successfully completed the access cycle

C.  

Upon initial entry of the person into the device, prior to completion of the access cycle

D.  

Upon initial presentation of an authorised badge, prior to completion of the access cycle

Discussion 0
Questions 6

A vendor discovers that a recent shipment of cards is missing a set. Which of the following responses would you expect in a compliant organization?

Options:

A.  

An immediate call is made to the issuer and the VPA who, between them, contact law enforcement and put together a joint statement

B.  

The head of security initiates a meeting, and once the VPA approves the messaging, law enforcement is notified in two days

C.  

A report is requested by the issuer, the vendor sends it to them, and the issuer handles the incident with the local police

D.  

After an incident review, the VPA, issuer and law enforcement are all notified within 24 hours

Discussion 0
Questions 7

A CPSA Company has submitted multiple reports that are incomplete and do not contain the information described in the reporting instructions. Which of the following are possible outcomes?

Options:

A.  

They may be put into remediation or revoked by the applicable payment brands

B.  

They may be put into remediation or revoked by PCI SSC

C.  

They may be fined by the applicable payment brands

D.  

They may be fined by PCI SSC

Discussion 0