CMIT 425 Questions and Answers
A ___________ is a potential danger which occurs when a ___________ exploits a vulnerability.
threat, threat agent
Which of the following is NOT a category of control types?
protects or assures the accuracy and reliability of information and systems.
...
which of the following is not a category of contro
Geschreven voor
Cmit
Cmit
Verkoper
Volgen
Pogba119
Ontvangen beoordelingen
Voorbeeld van de inhoud
CMIT 425 Questions and Answers
A ___________ is a potential danger which occurs when a ___________ exploits a
vulnerability. - answer threat, threat agent
Which of the following is NOT a category of control types? - answer protects or
assures the accuracy and reliability of information and systems.
Integrity is the principle that _________________. - answer
An exposure occurs when a vulnerability _____________. - answer creates the
possibility of incurring a loss or experiencing harm.
Confidentiality can be protected by implementing which of the following controls? -
answer Software digital signing to verify recipients.
Data hiding and data obscuring techniques.
Encrypting data at rest and in transit.
Clustering and load balancing are controls that ________ - answer map to the
Availability component of the AIC triad.
Balanced security refers to _____________ - answer weighing choices in controls
against the magnitude of risk presented by a variety of threats.
addressing threats and implementing controls for availability, integrity, and
confidentiality.
understanding the concepts of the AIC triad.
Which of the following best describes a security program? - answer A group of
standards, regulations, and best-practices.
An organization within an enterprise that houses business activities related to providing
security.
A framework made up of many entities that work together to provide protection for an
organization.
Which of the following is used to reduce the risk of vulnerabilities in purchased or
acquired hardware and software products? - answer Supply Chain Risk
Management
, Hashing is a control that _______ - answer maps to the Integrity component of the
AIC triad.
Which category of control types is referred to as "soft controls?" - answer
Administrative
Risk can be reduced by _____________. - answer applying countermeasures to
eliminate vulnerabilities.
Which of the following statements is true? - answer PCI-DSS is a federal law that
protects the privacy of credit card transactions.
USA Patriot Act broadens privacy protections for federal law enforcement agents and
immigration authorities.
FISMA applies to federal agencies and their contractors.
Which of the following guidance documents specifically addresses security controls
required for information systems owned by or operated for the U.S. Federal
Government? - answer NIST SP-800-53
A control is _____________ - answer used to reduce or mitigate risks.
Which of the following best describes leadership behaviors which promote ethical
behavior amongst employees? - answer Tone at the Top
Which category of control types is also referred to as "logical controls? - answer
Technical
A weakness in a system that allows malware to compromise security is called a
_________. - answer vulnerability
________ is a legal obligation applied to executives which stockholders can use to sue
company leaders who fail to protect a company's assets from harm or loss. - answer
Due notice
Due diligence
Due performance
Availability is the principle which ensures ____________. - answer reliability and
timely access to data and other resources by authorized individuals.
A ______ is a document which defines mandatory activities, actions, or rules. - answer
Standard
Voordelen van het kopen van samenvattingen bij Stuvia op een rij:
Verzekerd van kwaliteit door reviews
Stuvia-klanten hebben meer dan 700.000 samenvattingen beoordeeld. Zo weet je zeker dat je de beste documenten koopt!
Snel en makkelijk kopen
Je betaalt supersnel en eenmalig met iDeal, creditcard of Stuvia-tegoed voor de samenvatting. Zonder lidmaatschap.
Focus op de essentie
Samenvattingen worden geschreven voor en door anderen. Daarom zijn de samenvattingen altijd betrouwbaar en actueel. Zo kom je snel tot de kern!
Veelgestelde vragen
Wat krijg ik als ik dit document koop?
Je krijgt een PDF, die direct beschikbaar is na je aankoop. Het gekochte document is altijd, overal en oneindig toegankelijk via je profiel.
Tevredenheidsgarantie: hoe werkt dat?
Onze tevredenheidsgarantie zorgt ervoor dat je altijd een studiedocument vindt dat goed bij je past. Je vult een formulier in en onze klantenservice regelt de rest.
Van wie koop ik deze samenvatting?
Stuvia is een marktplaats, je koop dit document dus niet van ons, maar van verkoper Pogba119. Stuvia faciliteert de betaling aan de verkoper.
Zit ik meteen vast aan een abonnement?
Nee, je koopt alleen deze samenvatting voor €12,69. Je zit daarna nergens aan vast.