Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 2 out of 8 pages
Exam (elaborations)

security essentials Exam With Correct Answers

Document preview thumbnail
Preview 2 out of 8 pages

security essentials Exam With Correct Answers The Computer ____ and Abuse Act of 1986 is the cornerstone of many computer-related federal laws and enforcement efforts. - Answer - Fraud The most successful kind of top-down approach involves a formal development strategy referred to as a ____. - Answer - systems development life cycle In file hashing, a file is read by a special algorithm that uses the value of the bits in the file to compute a single large number called a ____ value. - Answer - hash The first phase of risk management is ____. - Answer - risk identification The Security Area Working Group acts as an advisory board for the protocols and areas developed and promoted by the Internet Society and the ____. - Answer - IETF Which of the following acts defines and formalizes laws to counter threats from computer related acts and offenses? - Answer - Computer Fraud and Abuse Act A computer is the ____ of an attack when it is used to conduct the attack. - Answer - subject A(n) ____ plan deals with the identification, classification, response, and recovery from an incident. - Answer - IR Risk ____ is the application of controls to reduce the risks to an organization's data and information systems. - Answer - control A(n) ____ is an authorization issued by an organization for the repair, modification, or update of a piece of equipment. - Answer - FCO Redundancy can be implemented at a number of points throughout the security architecture, such as in ____. - Answer - All of the above The National Information Infrastructure Protection Act of 1996 modified which Act? - Answer - Computer Fraud and Abuse Act Security ____ are the areas of trust within which users can freely communicate. - Answer - domains In a(n) ____, each information asset is assigned a score for each of a set of assigned critical factor. - Answer - weighted factor analysis Strategic planning is the process of moving the organization towards its ____. - Answer - vision In SESAME, the user is first authenticated to an authentication server and receives a token. The token is then presented to a privilege attribute server as proof of identity to gain a(n) ____. - Answer - PAC A(n) ____ is "a private data network that makes use of the public telecommunication infrastructure, maintaining privacy through the use of a tunneling protocol and security procedures." - Answer - VPN The dominant architecture used to secure network access today is the ____ firewall. - Answer - screened subnet A ____ site provides only rudimentary services and facilities. - Answer - cold In ____ mode, the data within an IP packet is encrypted, but the header information is not. - Answer - transport Which of the following acts is also widely known as the Gramm-Leach-Bliley Act? - Answer - Financial Services Modernization Act The restrictions most commonly implemented in packet-filtering firewalls are based on ____. - Answer - All of the above An alert ____ is a document containing contact information for the people to be notified in the event of an incident. - Answer - roster Since the bastion host stands as a sole defender on the network perimeter, it is commonly referred to as the ____ host. - Answer - sacrificial The military uses a ____-level classification scheme. - Answer - five During the ____ phase, specific technologies are selected to support the alternatives identified and evaluated in the logical design. - Answer - physical design One form of online vandalism is ____ operations, which interfere with or disrupt systems to protest the operations, policies, or actions of an organization or government agency. - Answer - hacktivist Acts of ____ can lead to unauthorized real or virtual actions that enable information gatherers to enter premises or systems they have not been authorized to enter. - Answer - trespass Laws and policies and their associated penalties only deter if which of the following conditions is present? - Answer - All of the above The ____ Portability and Accountability Act Of 1996, also known as the Kennedy-Kassebaum Act, protects the confidentiality and security of health care data by establishing and enforcing standards and by standardizing electronic data interchange. - Answer - Health Insurance The ____ is based on and directly supports the mission, vision, and direction of the organization and sets the strategic direction, scope, and tone for all security efforts. - Answer - EISP "4-1-9" fraud is an example of a ____ attack. - Answer - social engineering The ____ security policy is a planning document that outlines the process of implementing security in the organization. - Answer - program

Content preview

Security Essentials Exam With Correct
Answers
The Computer ____ and Abuse Act of 1986 is the cornerstone of many computer-
related federal laws and enforcement efforts. - Answer - ✔Fraud

The most successful kind of top-down approach involves a formal development strategy
referred to as a ____. - Answer - ✔systems development life cycle

In file hashing, a file is read by a special algorithm that uses the value of the bits in the
file to compute a single large number called a ____ value. - Answer - ✔hash

The first phase of risk management is ____. - Answer - ✔risk identification

The Security Area Working Group acts as an advisory board for the protocols and areas
developed and promoted by the Internet Society and the ____. - Answer - ✔IETF

Which of the following acts defines and formalizes laws to counter threats from
computer related acts and offenses? - Answer - ✔Computer Fraud and Abuse Act

A computer is the ____ of an attack when it is used to conduct the attack. - Answer -
✔subject

A(n) ____ plan deals with the identification, classification, response, and recovery from
an incident. - Answer - ✔IR

Risk ____ is the application of controls to reduce the risks to an organization's data and
information systems. - Answer - ✔control

A(n) ____ is an authorization issued by an organization for the repair, modification, or
update of a piece of equipment. - Answer - ✔FCO

Redundancy can be implemented at a number of points throughout the security
architecture, such as in ____. - Answer - ✔All of the above

The National Information Infrastructure Protection Act of 1996 modified which Act? -
Answer - ✔Computer Fraud and Abuse Act

Security ____ are the areas of trust within which users can freely communicate. -
Answer - ✔domains

, In a(n) ____, each information asset is assigned a score for each of a set of assigned
critical factor. - Answer - ✔weighted factor analysis

Strategic planning is the process of moving the organization towards its ____. - Answer
- ✔vision

In SESAME, the user is first authenticated to an authentication server and receives a
token. The token is then presented to a privilege attribute server as proof of identity to
gain a(n) ____. - Answer - ✔PAC

A(n) ____ is "a private data network that makes use of the public telecommunication
infrastructure, maintaining privacy through the use of a tunneling protocol and security
procedures." - Answer - ✔VPN

The dominant architecture used to secure network access today is the ____ firewall. -
Answer - ✔screened subnet

A ____ site provides only rudimentary services and facilities. - Answer - ✔cold

In ____ mode, the data within an IP packet is encrypted, but the header information is
not. - Answer - ✔transport

Which of the following acts is also widely known as the Gramm-Leach-Bliley Act? -
Answer - ✔Financial Services Modernization Act

The restrictions most commonly implemented in packet-filtering firewalls are based on
____. - Answer - ✔All of the above

An alert ____ is a document containing contact information for the people to be notified
in the event of an incident. - Answer - ✔roster

Since the bastion host stands as a sole defender on the network perimeter, it is
commonly referred to as the ____ host. - Answer - ✔sacrificial

The military uses a ____-level classification scheme. - Answer - ✔five

During the ____ phase, specific technologies are selected to support the alternatives
identified and evaluated in the logical design. - Answer - ✔physical design

One form of online vandalism is ____ operations, which interfere with or disrupt systems
to protest the operations, policies, or actions of an organization or government agency. -
Answer - ✔hacktivist

Document information

Uploaded on
February 5, 2025
Number of pages
8
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$11.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Sold
0
Followers
0
Items
52
Last sold
-


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions