CMIT COMPREHENSIVE EXAM TEST
PAPER WITH SOLVED QUESTIONS
GRADED A+
◉ A weakness in a system that allows malware to compromise
security is called a _________.
Answer: vulnerability
◉ ________ is a legal obligation applied to executives which
stockholders can use to sue company leaders who fail to protect a
company's assets from harm or loss.
Answer: Due notice
Due diligence
Due performance
◉ Availability is the principle which ensures ____________.
Answer: reliability and timely access to data and other resources
by authorized individuals.
◉ A ______ is a document which defines mandatory activities,
actions, or rules.
Answer: Standard
◉ What is "security through obscurity?"
, Answer: A security practice that uses tricks and other information
hiding practices as is based upon the assumption that adversaries
are not as smart as you and will not be able to figure things out.
◉ A risk is __________
Answer: the probability that a vulnerability will be successfully
exploited by a threat agent causing a business to experience loss
or harm.
◉ _______ is a series of international standards that, among other
things, provides guidance for managing security controls.
Answer: ISO/IEC 27000
◉ Which of the following are NOT examples of physical controls?
Answer: Bar codes and scanners
◉ Which of the following best describes the AIC principles?
Answer: Availability, Integrity, and Confidentiality
Security controls, mechanisms, and safeguards
Risks, threats, and vulnerabilities
PAPER WITH SOLVED QUESTIONS
GRADED A+
◉ A weakness in a system that allows malware to compromise
security is called a _________.
Answer: vulnerability
◉ ________ is a legal obligation applied to executives which
stockholders can use to sue company leaders who fail to protect a
company's assets from harm or loss.
Answer: Due notice
Due diligence
Due performance
◉ Availability is the principle which ensures ____________.
Answer: reliability and timely access to data and other resources
by authorized individuals.
◉ A ______ is a document which defines mandatory activities,
actions, or rules.
Answer: Standard
◉ What is "security through obscurity?"
, Answer: A security practice that uses tricks and other information
hiding practices as is based upon the assumption that adversaries
are not as smart as you and will not be able to figure things out.
◉ A risk is __________
Answer: the probability that a vulnerability will be successfully
exploited by a threat agent causing a business to experience loss
or harm.
◉ _______ is a series of international standards that, among other
things, provides guidance for managing security controls.
Answer: ISO/IEC 27000
◉ Which of the following are NOT examples of physical controls?
Answer: Bar codes and scanners
◉ Which of the following best describes the AIC principles?
Answer: Availability, Integrity, and Confidentiality
Security controls, mechanisms, and safeguards
Risks, threats, and vulnerabilities