PRINCIPLES OF INFORMATION SECURITY EXAM QUESTIONS AND ANSWERS %
GUARANTEED SUCCESS.
Accuracy answer >> an attribute of information that describes how data
is free of errors and has the value that the user expects.
Authenticity answer >> an attribute of information that describes how
data is genuine or original rather than reproduced or fabricated.
Availability answer >> an attribute of information that describes how
data is accessible and correctly formatted for use without interference
or obstruction.
Bottom-up approach answer >> a method of establishing security
policies that begins as a grassroots effort in which systems
administrators attempt to improve the security of their systems.
C.I.A. triad answer >> the industry standard for computer security since
the development of the mainframe. The standard is based on three
characteristics that describe the utility of information: confidentiality,
integrity, and availability.
Chief information officer (CIO) answer >> an executive-level position
that oversees the organization's computing technology and strives to
, PRINCIPLES OF INFORMATION SECURITY
create efficiency in the processing and access of the organization's
information.
Chief information security officer (CISO) answer >> typically considered
the top information security officer in an organization. The CISO is
usually not an executive-level position, and frequently the person in
this role reports to the CIO.
Communications security answer >> the protection of all
communications media, technology, and content.
Community of interest answer >> a group of people who are united by
similar interests or values within an organization and who share a
common goal of helping the organization to meet its objectives.
Computer security answer >> in the early days of computers, this term
specified the need to secure the physical location of computer
technology from outside threats. This term later came to represent all
actions taken to preserve computer systems from losses. It has evolved
into the current concept of information security as the scope of
protecting information in an organization has expanded.
Confidentiality answer >> an attribute of information that describes
how data is protected from disclosure or exposure to unauthorized
individuals or systems.