Which step of a risk assessment uses the history of system attacks?
A. Step 2: Threat Identification
B. Step 3: Vulnerability Identification
C. Step 4: Control Analysis
D. Step 5: Likelihood Determination ✔✔A. Step 2
...
Which step of a risk assessment uses the history of system attacks?
A. Step 2: Threat Identification
B. Step 3: Vulnerability Identification
C. Step 4: Control Analysis
D. Step 5: Likelihood Determination ✔✔A. Step 2: Threat Identification
In which one of the following is modifying important or sensitive information categorized?
A. Confidentiality
B. Availability
C. Integrity
D. All of the above ✔✔C. Integrity
Of the risk mitigation steps, in which step does management determine the most cost-effective
control(s) for reducing risk to the organization's mission?
A. Step 3: Conduct Cost-Benefit AnalysisB. Step 4: Select Controls
C. Step 5: Assign Responsibility
D. Step 6: Develop a Safeguard Implementation Plan ✔✔B. Step 4: Select Controls
Which of the following is the set of security controls for an information system that is primarily
implemented and executed by people?
A. Operational Controls
B. Management Controls
C. Technical Controls
D. All of the above ✔✔A. Operational Controls
Software as a Service is one class of Cloud Computing.
A. True
B. False ✔✔A. True
If the availability of a service was critical to your organization, what would you say the impact
would be if the service was irrevocably destroyed?
A. High
B. Medium
C. LowD. None of the above ✔✔A. High
Low humidity within a server room could result in a static electricity build-up/discharge.
A. True
B. False ✔✔A. True
Which of the following is the ability to hide messages in existing data?
A. Cryptography
B. Scareware
C. Steganography
D. Whaling ✔✔C. Steganography
Which of the following firewall implementations is a combination of a packet filter with bastion
host?
A. Screened-subnet
B. Dual-homed
C. Boundary
D. Screened-host ✔✔D. Screened-hostCountermeasures do not reduce a threat or vulnerability.
A.
[Show More]