Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

ISSC 363 Quiz week 4: Questions and answers | latest 100% 2026.

Rating
-
Sold
-
Pages
13
Grade
A+
Uploaded on
22-06-2026
Written in
2025/2026

Question 1 5 / 5 points Why is a risk assessment valuable for an organization? Question options: Selected Helps protect assets Unselected Helps plan employee vacation timing Unselected Identifies future capital investments Unselected Helps protect management Hide question 1 feedback Feedback pg. 114 Question 2 5 / 5 points Which of the following statements regarding a risk assessment (RA) is true? Question options: Unselected Ideally an RA will not be limited by a scope Selected An RA provides an assessment for a point in time Unselected An RA is designed to eliminate risk UnselectedAn RA is an ongoing process Hide question 2 feedback Feedback pg. 114 Question 3 5 / 5 points What type of risk assessment uses a subjective method to assess a risk? Question options: Unselected Probability-based Unselected Ongoing Selected Qualitative Unselected Quantitative Hide question 3 feedback Feedback pg. 118 Question 4 5 / 5 points What type of risk assessment uses terms such as ALE, SLE, and ARO? Question options: Unselected QualitativeUnselected Risk Matrix Selected Quantitative Unselected Delphi Hide question 4 feedback Feedback pg. 118 Question 5 5 / 5 points A company issues laptop computers to 100 employees. The value of each laptop including hardware, software, and data is $1,000. On average, employees lose one laptop a month. Management determines that it can purchase hardware locks for a total of $1,000 and reduce the number of lost laptops to one per year. Should they purchase the locks? Question options: Selected Yes, because the savings is greater than the cost of the control. Unselected Yes, because the cost of the control is greater than the savings. Unselected No, because the savings is greater than the cost of the control. Unselected No, because the cost of the control is greater than the savings. Hide question 5 feedbackFeedback pg. 118-119 Question 6 5 / 5 points Which of the following is not a step within a risk assessment? Question options: Unselected Identify assets Unselected Identify threats and vulnerabilities Unselected Identify countermeasures Selected Implement countermeasures Hide question 6 feedback Feedback pg. 139 Question 7 5 / 5 points What is a primary concern when evaluating operational characteristics? Question options: Selected Current documentation Unselected Profitability assessment UnselectedSurvivability assessment Unselected Effectiveness of planned countermeasures Hide question 7 feedback Feedback pg. 140, 141 Question 8 5 / 5 points During a risk assessment, you determine that a critical business function must be operational at any given time. If it fails, operations must continue at an alternate location within the shortest period of time. What will meet this requirement? Question options: Unselected Cold site Selected Hot site Unselected Warm site Unselected Clustering site Hide question 8 feedback Feedback pg. 149 Question 9 5 / 5 pointsWhich of the following methods are not included in a typical vulnerability assessment? Question options: Unselected Identify IP addresses Unselected Identify operating systems Selected Identify users Unselected Identify open ports Hide question 9 feedback Feedback pg. 151, 152 Question 10 5 / 5 points Which of the following is a common tool used for vulnerability assessments? Question options: Unselected Delphi Selected Nmap Unselected SatVul Unselected NexusHide question 10 feedback Feedback pg. 152 Question 11 5 / 5 points Job rotation helps employees build skills in different areas of a company. What is a security-related goal of job rotation? Question options: Unselected Eliminates need to hire new personnel Unselected Reduces need for cross training Selected Helps an organization detect fraudulent activities Unselected Provides separation of duties Hide question 11 feedback Feedback pg. 175 Question 12 5 / 5 points Of the following, what are two primary methods of protecting data? Question options: Unselected Access controls and data warehousingUnselected Data mining and data warehousing Selected Access controls and backups Unselected Data warehousing and backups Hide question 12 feedback Feedback pg. 175 Question 13 5 / 5 points Which among the following is an asset that needs to be protected? Question options: Selected Personnel files Unselected System logs and audit trails Unselected Security plans Unselected System availability Hide question 13 feedback Feedback pg. 177Question 14 5 / 5 points What methods are used to retrieve meaningful data from very large databases? Question options: Unselected Warehousing and retrieving Selected Warehousing and mining Unselected Selecting and mining Unselected Extracting and transforming Hide question 14 feedback Feedback pg. 179 Question 15 5 / 5 points What includes the details needed to recover a system from a disaster? Question options: Selected DRP Unselected BCP Unselected BIA UnselectedNone of the above Hide question 15 feedback Feedback pg. 189 Question 16 5 / 5 points Of the following choices, what is the primary method used to identify and evaluate potential threats? Question options: Unselected Risk management Unselected Risk assessment Unselected Vulnerability modeling Selected Threat assessment Hide question 16 feedback Feedback pg. 195 Question 17 5 / 5 points Which of the following is a technique for identifying threats? Question options: SelectedReview historical data Unselected System testing Unselected Qualitative method Unselected Quantitative method Hide question 17 feedback Feedback pg. 196 Question 18 5 / 5 points What is a targeted phishing attempt that looks like it is coming from someone within a company? Question options: Selected Spear-phishing Unselected Rogueware Unselected Trojan Unselected Whaling Hide question 18 feedback Feedbackpg. 197 Question 19 5 / 5 points What principle specifies that users are granted only the rights that they need to perform their job? Question options: Unselected Least rights Selected Least privilege Unselected Separation of duties Unselected Need-to-know Hide question 19 feedback Feedback pg. 198 Question 20 5 / 5 points What principle specifies that users have access only to the data they need? Question options: Unselected Least privilege Unselected Least rights SelectedNeed-to-know Unselected Separation of duties

Show more Read less

Content preview

Question 1 points

Why is a risk assessment valuable for an organization?

Question options:

Selected

Helps protect assets

Unselected

Helps plan employee vacation timing

Unselected

Identifies future capital investments

Unselected

Helps protect management



Hide question 1 feedback

Feedback

pg. 114



Question 2 points

Which of the following statements regarding a risk assessment (RA) is true?

Question options:

Unselected

Ideally an RA will not be limited by a scope

Selected

An RA provides an assessment for a point in time

Unselected

An RA is designed to eliminate risk

Unselected

, An RA is an ongoing process



Hide question 2 feedback

Feedback

pg. 114



Question 3 points

What type of risk assessment uses a subjective method to assess a risk?

Question options:

Unselected

Probability-based

Unselected

Ongoing

Selected

Qualitative

Unselected

Quantitative



Hide question 3 feedback

Feedback

pg. 118



Question 4 points

What type of risk assessment uses terms such as ALE, SLE, and ARO?

Question options:

Unselected

Qualitative

Document information

Uploaded on
June 22, 2026
Number of pages
13
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$14.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
MindCraft Nightingale College
View profile
Follow You need to be logged in order to follow users or courses
Sold
339
Member since
1 year
Number of followers
6
Documents
2688
Last sold
6 hours ago
All Academic Solutions 100% non -Ai.

Above all i'm here genuinely to help you in your course work. Do not hesitate to purchase or reach out to me, i'll absolutely get what you need. Get all latest solutions and answer keys, 100% non- ai, all the best.

3.7

44 reviews

5
20
4
9
3
6
2
0
1
9

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions