QUESTIONS AND ANSWERS GRADED A+
✔✔Which of the following is a drawback of cloud computing in which a customer
depends on a dealer for products and services due to technical or nontechnical
constraints?
A Cryptographic erasure
B Vendor lock-in
C Resiliency
D Data overwriting - ✔✔B
✔✔Which is not a principle of GAAP?
A Principle of Compensation
B Principle of Sincerity
C Principle of Regularity
D Principle of Consistency - ✔✔A
✔✔HIPAA, SOX, and PCI DSS are examples of:
A Regulatory compliance
B Cloud security tools
C Governance
D SLAs - ✔✔A
✔✔What is the biggest concern for migration of services during BCDR?
A Security
B Resources
C Location
D Vendor Lockin - ✔✔C
✔✔IRM allows for the following except:
A Encryption
B Protection
C Auditing
D Policy Control - ✔✔A
✔✔The following are Data States as referred to by DLP except:
A Data in Transit
B Data in use
C Data at rest
,D Data in transmission - ✔✔D
✔✔Which of the following will help achieve redundancy in virtual switches?
Each correct answer represents a complete solution. Choose all that apply.
1) Kerberos
2) CHAP
3) Port channeling
4) Physical NICs
A 3,4
B 1,2 - ✔✔A
✔✔Which is the correct order of the Cloud Secure Data Lifecycle?
A Create, Use, Store, Share, Archive, Destroy
B Create, Store, Share, Use, Archive, Destroy
C Create, Share, Store, Use, Archive, Destroy
D Create, Store, Use, Share, Archive, Destroy - ✔✔D
✔✔Where would the monitoring engine be deployed when using a network-based DLP
system?
A On a VLAN
B Near the organizational gateway
C In the storage system
D On a user's workstation - ✔✔B
✔✔Which body establishes optimal temperature and humidity levels?
A ASHAE
B ASHRAE
C ASHAPE
D ASHARE - ✔✔B
✔✔What defines what is to be covered in the audit?
A Requirements for the Audit
B Audit Statement
C Audit report
D Scope of audit - ✔✔D
✔✔Which of the following are the data classification categories?
, Each correct answer represents a complete solution. Choose three.
1) Obligation for retention and preservation
2)Ownership
3) Data type
4) Parameter type
A 2,3,4
B 1,2,3 - ✔✔B
✔✔Which of the following are the key regulations applicable to the CSP facility?
Each correct answer represents a complete solution. Choose two.
1) COBRA
2) HITRUST CSF
3) PCI DSS
4) HIPAA
A 3,4
B 1,2 - ✔✔A
✔✔This device is used to offload processing of XML from the application:
A XML Processor
B XML Accelerator
C XML Broker
D XML Firewall - ✔✔B
✔✔This is the amount of services that is required to be restored to meet the
requirements of a BCDR plan:
A RTO
B RTL
C RPO
D RSL - ✔✔D - Recovery Service Level
✔✔Assessing Risk
Monitoring Risk
Responding to Risk
Framing Risk - ✔✔Components of the risk-management process
✔✔In which of the following components of the data retention policy do data-retention
considerations depend heavily on the required compliance administration associated
with the data type?