• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 4 out of 174 pages
Exam (elaborations)

Test Bank for Computer Security Principles and Practice, 5th edition by William Stallings, Chapters 1-24

Document preview thumbnail
Preview 4 out of 174 pages

Test Bank for Computer Security Principles and Practice, 5th edition by William Stallings, Chapters 1-24. Full Chapters Include;....Overview Cryptographic Tools User Authentication Access Control Database and Data Center Security Malicious Software Denial-of-Service Attacs Intrusion Detection Firewalls and Intrusion Prevention Systems Buffer Overflow Software Security Operating Systems Security Cloud and IoT Security IT Security Management and Risk Assessment IT Security Controls, plans, and Procedures Physical and Infrastructure Security Human Resources Security Security Auiditing Legal and Ethical Aspects Symmetric Encryption and Message Confidentiality Public-Key Cryptography and Message Authentication Internet Security Protocols and Standards Internet Authentication Applications Wireless Network Security

Content preview

Computer Security: Principles and Practice, 5th edition, William Stallings




TEST BANK
M
ED

Computer Security Principles and
CO

Practice, 5th edition

Authors: William Stallings
NN

◊ ALL CHAPTERS
OI

◊ PDF DOWNLOAD💯💯💯

◊ ORIGINAL FROM PUBLISHER
SS
EU
R

MEDCONNOISSEUR

,Computer Security: Principles and Practice, 5th Edition Chapter 1

Chapter 1 – Overview


TRUE/FALSE QUESTIONS:
T F 1. Threats are attacks carried out.
M
T F 2. Computer security is protection of the integrity, availability, and
confidentiality of information system resources.

T F 3. Data integrity assures that information and programs are changed only
ED
in a specified and authorized manner.

T F 4. Availability assures that systems works promptly and service is not
denied to authorized users.
C
T F 5. The “A” in the CIA triad stands for “authenticity”.

T F 6. The more critical a component or service, the higher the level of
ON
availability required.

T F 7. Computer security is essentially a battle of wits between a perpetrator
who tries to find holes and the administrator who tries to close them.

T F 8. Security mechanisms typically do not involve more than one particular
NO
algorithm or protocol.

T F 9. Many security administrators view strong security as an impediment to
efficient and user-friendly operation of an information system.

T F 10. In the context of security our concern is with the vulnerabilities of
IS
system resources.

T F 11. Hardware is the most vulnerable to attack and the least susceptible to
SE
automated controls.

T F 12. Contingency planning is a functional area that primarily requires
computer security technical measures.
U
T F 13. An attack surface consists of the reachable and exploitable
vulnerabilities in a system.
R
T F 14. The first step in devising security services and mechanisms is to
develop a security policy.

T F 15. Assurance is the process of examining a computer product or system
with respect to certain criteria.


Copyright © 2024, 2018, 2015 by Pearson Education, Inc. or its affiliates.

,Computer Security: Principles and Practice, 5th Edition Chapter 1

MULTIPLE CHOICE QUESTIONS:
1. __________ assures that individuals control or influence what information related
to them may be collected and stored and by whom and to whom that information
may be disclosed.
A. Availability B. System Integrity
M
C. Privacy D. Data Integrity
2. ________ assures that a system performs its intended function in an unimpaired
manner, free from deliberate or inadvertent unauthorized manipulation of the
ED
system.
A. System Integrity B. Data Integrity
C. Availability D. Confidentiality
C
3. A loss of _________ is the unauthorized disclosure of information.
A. confidentiality B. integrity
ON
C. authenticity D. availability
4. A ________ level breach of security could be expected to have a severe or
catastrophic adverse effect on organizational operations, organizational assets, or
individuals.
NO
A. low B. normal
C. moderate D. high
5. A flaw or weakness in a system’s design, implementation, or operation and
management that could be exploited to violate the system’s security policy is
IS
a(n) __________.
A. countermeasure B. vulnerability
SE
C. adversary D. risk
6. An assault on system security that derives from an intelligent act that is a
deliberate attempt to evade security services and violate the security policy of a
system is a(n) __________.
U
A. risk B. asset
R
C. attack D. vulnerability




Copyright © 2024, 2018, 2015 by Pearson Education, Inc. or its affiliates.

, Computer Security: Principles and Practice, 5th Edition Chapter 1

7. A(n) __________ is an action, device, procedure, or technique that reduces a
threat, a vulnerability, or an attack by eliminating or preventing it, by minimizing
the harm it can cause, or by discovering and reporting it so that correct action can
be taken.
A. attack B. countermeasure
M
C. adversary D. protocol
8. A(n) _________ is an attempt to learn or make use of information from the system
that does not affect system resources.
ED
A. passive attack B. inside attack
C. outside attack D. active attack
9. Masquerade, falsification, and repudiation are threat actions that cause
__________ threat consequences.
C
A. unauthorized disclosure B. deception
ON
C. disruption D. usurpation
10. A threat action in which sensitive data are directly released to an unauthorized
entity is __________.
A. corruption B. disruption
NO
C. intrusion D. exposure
11. An example of __________ is an attempt by an unauthorized user to gain access
to a system by posing as an authorized user.
A. masquerade B. interception
IS
C. repudiation D. inference
12. The _________ prevents or inhibits the normal use or management of
SE
communications facilities.
A. passive attack B. traffic encryption
C. denial of service D. masquerade
U
13. A __________ is any action that compromises the security of information owned
by an organization.
R
A. security mechanism B. security attack
C. security policy D. security service




Copyright © 2024, 2018, 2015 by Pearson Education, Inc. or its affiliates.

Document information

Uploaded on
December 16, 2024
Number of pages
174
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$20.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
MedConnoisseur
4.0
(214)
Sold
2878
Followers
1745
Items
2929
Last sold
8 hours ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions