100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached
logo-home
CISSP Chapter 1 Exam Questions And Accurate Answers $9.99   Add to cart

Exam (elaborations)

CISSP Chapter 1 Exam Questions And Accurate Answers

 7 views  0 purchase
  • Course
  • CISSP Chapter 1
  • Institution
  • CISSP Chapter 1

CISSP Chapter 1 Exam Questions And Accurate Answers...

Preview 2 out of 14  pages

  • November 1, 2024
  • 14
  • 2024/2025
  • Exam (elaborations)
  • Questions & answers
  • CISSP Chapter 1
  • CISSP Chapter 1
avatar-seller
Easton
CISSP Chapter 1 Exam Questions And
Accurate Answers

Which of the following contains the primary goals and objectives of security?



A. A network's border perimeter

B. The CIA Triad

C. A stand-alone system

D. The Internet - Answer B. The primary goals and objectives of security are
confidentiality, integrity, availability commonly referred to as the CIA Triad .



Which of the following is vulnerabilities and risks assessed based on their threats
against?



A. One or more of the CIA Triad principles

B. Information utility

C. Due care

D. Liability limitation - A. The CIA Triad risks and vulnerabilities are evaluated based
upon the threats they pose against one or more principles of the CIA Triad.



Which of the following is a principle of the CIA Triad that refers to subjects being given
the timely and uninterrupted access to objects, if this is their authorization?



A. Identification

B. Availability

C. Encryption

D. Layering - Answer B. Availability refers to authorized subjects' ability to have timely

, and uninterrupted access to objects.



Which of the following is NOT a type of confidentiality violation?



A. Password theft

B. Eavesdropping

C. Hardware destruction

D. Social engineering - Answer C. Hardware destruction is considered an attack on
availability, and possibly integrity. Confirma- tions of traffic in a network, password file
theft, social engineering, port scanning, shoulder surfing, eavesdropping, and sniffing
are examples of violations in confidentiality.



Which of the following statements is not true?



A. Human errors are a type of violation of confidentiality.

B. Management oversight is a type of violation of confidentiality.

C. Violations of confidentiality are restricted to direct intentional attacks.

D. A poorly encrypted transmission can result in breaches of confidentiality. - Answer C.
Breaches in confidentiality do not have to be because of active intentional attacks. Most
cases of unauthorized information disclosure regarding sensitive or classified
information are actually caused by human error, omission, or incompetence.



STRIDE is generally related to application or operating system threat analysis. What is
NOT part of STRIDE?



A. Spoofing

B. Elevation of privilege

C. Repudiation

D. Disclosure - Answer D. Disclosure is not an element of STRIDE. The elements of
STRIDE are spoofing, tampering, repudiation, information disclosure, denial of service,
and elevation of privilege.

The benefits of buying summaries with Stuvia:

Guaranteed quality through customer reviews

Guaranteed quality through customer reviews

Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.

Quick and easy check-out

Quick and easy check-out

You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.

Focus on what matters

Focus on what matters

Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!

Frequently asked questions

What do I get when I buy this document?

You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.

Satisfaction guarantee: how does it work?

Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.

Who am I buying these notes from?

Stuvia is a marketplace, so you are not buying this document from us, but from seller Easton. Stuvia facilitates payment to the seller.

Will I be stuck with a subscription?

No, you only buy these notes for $9.99. You're not tied to anything after your purchase.

Can Stuvia be trusted?

4.6 stars on Google & Trustpilot (+1000 reviews)

67866 documents were sold in the last 30 days

Founded in 2010, the go-to place to buy study notes for 14 years now

Start selling
$9.99
  • (0)
  Add to cart