Define the ITIL Service Lifecycle of Continual Service Improvement
Give this one a try later!
It's a not stopping loop between Strategy & Planning -> Design ->
Implement -> Manage & Measure -> ...
Which SABSA architectures align and enhance the Business Security Architecture?
Give this one a try later!
Contextual
Conceptual
,Define Pure Risk, Current and Target
Give this one a try later!
Pure Risk : 100% vulnerability, 100% weakness
Current : Residual risk exceeds appetite
Target : All residual risk within appetite
Name the Process Issues in Security Architecture
Give this one a try later!
- To achieve end-to-end process security the architecture layers must be
properly integrated and aligned
- Responsibility for process activities may change through the layers
- Objectives may have layer-specific interpretations but must aggregate
into the higher-level security objective of the overall process owner
- Process documentation msut be available at multiple levels
- The mans of obtaininng process feedback and measuring performance
may not be consistent from layer to layer
- Process enablers may differ from layer to layer
- To ensure Security Service Levers meet the highest level requirements,
each layer may require a unit-based Security SLA
In SABSA Risk Management, what is the Primary Risk Threshold?
Give this one a try later!
, The Primary Risk Threshold is the most important because it has the
greatest consequence.
It is the moving of attribute performance from a warning level to an
unacceptable level. From Amber to Red.
Which two (2) actions does the Claimant perform in the trust brokering model
Give this one a try later!
1. Claims identity
2. Claims authority
Name the domain in which the Trusted Third Party mandates policy for all associations
- no local interpretation is permitted
Give this one a try later!
A special type of subdomain
TRUE or FALSE : The extended application domain excludes the external logical
components.
Give this one a try later!
False, it includes them
, Align the TOGAF Architecture layer with the right SABSA View
TOGAF :
1. Business
2. Technology
3. Information Systems
4. Information Systems / Technology
5. Architecture Vision / Business
Give this one a try later!
1. Business ---> Architect
2. Technology ---> Tradesman
3. Information Systems ---> Designer
4. Information Systems / Technology ---> Builder
5. Architecture Vision / Business ---> Business
Where is the Data management security services?
Give this one a try later!
Provided within the databases and possibly considered as part of the
middleware security services
Describe the direct authentication
Give this one a try later!
Give this one a try later!
It's a not stopping loop between Strategy & Planning -> Design ->
Implement -> Manage & Measure -> ...
Which SABSA architectures align and enhance the Business Security Architecture?
Give this one a try later!
Contextual
Conceptual
,Define Pure Risk, Current and Target
Give this one a try later!
Pure Risk : 100% vulnerability, 100% weakness
Current : Residual risk exceeds appetite
Target : All residual risk within appetite
Name the Process Issues in Security Architecture
Give this one a try later!
- To achieve end-to-end process security the architecture layers must be
properly integrated and aligned
- Responsibility for process activities may change through the layers
- Objectives may have layer-specific interpretations but must aggregate
into the higher-level security objective of the overall process owner
- Process documentation msut be available at multiple levels
- The mans of obtaininng process feedback and measuring performance
may not be consistent from layer to layer
- Process enablers may differ from layer to layer
- To ensure Security Service Levers meet the highest level requirements,
each layer may require a unit-based Security SLA
In SABSA Risk Management, what is the Primary Risk Threshold?
Give this one a try later!
, The Primary Risk Threshold is the most important because it has the
greatest consequence.
It is the moving of attribute performance from a warning level to an
unacceptable level. From Amber to Red.
Which two (2) actions does the Claimant perform in the trust brokering model
Give this one a try later!
1. Claims identity
2. Claims authority
Name the domain in which the Trusted Third Party mandates policy for all associations
- no local interpretation is permitted
Give this one a try later!
A special type of subdomain
TRUE or FALSE : The extended application domain excludes the external logical
components.
Give this one a try later!
False, it includes them
, Align the TOGAF Architecture layer with the right SABSA View
TOGAF :
1. Business
2. Technology
3. Information Systems
4. Information Systems / Technology
5. Architecture Vision / Business
Give this one a try later!
1. Business ---> Architect
2. Technology ---> Tradesman
3. Information Systems ---> Designer
4. Information Systems / Technology ---> Builder
5. Architecture Vision / Business ---> Business
Where is the Data management security services?
Give this one a try later!
Provided within the databases and possibly considered as part of the
middleware security services
Describe the direct authentication
Give this one a try later!