Sec+ sy0-601 Study Questions And Answers 2022/2023
Which security related phrase relates to the integrity of data? - Answer - Modification is authorized An engineer looks to implement security measures by following the five functions in the National Institute of Standards and Technology (NIST) Cybersecurity Framework. When documenting the "detect" function, what does the engineer focus on? - Answer - Ongoing proactive monitoring How might the goals of a basic network management not be well-aligned with the goals of security? - Answer - Management focuses on availability over confidentiality. Any external responsibility for an organization's security lies mainly with which individuals? - Answer - The owner The National Institute of Standards and Technology (NIST) provides a framework that classifies security-related functions. Which description aligns with the "respond" function? - Answer - Identify, analyze, and eradicate threats. A company has an annual contract with an outside firm to perform a security audit on their network. The purpose of the annual audit is to determine if the company is in compliance with their internal directives and policies for security control. Select the broad class of security control that accurately demonstrates the purpose of the audit. - Answer - Managerial The _____ requires federal agencies to develop security policies for computer systems that process confidential information. - Answer - Computer Security Act After a poorly handled security breach, a company updates its security policy to include an improved incident response plan. Which of the following security controls does this update address? - Answer - Corrective The IT department head returns from an industry conference feeling inspired by a presentation on the topic of defense in depth. A meeting is scheduled with IT staff to brainstorm ideas for implementing defense in depth throughout the organization. Which of the following ideas are consistent with this industry best practice? (Select all that apply.) - Answer - Provide user training on identifying cyber threats and Align managerial and technical controls with control functions. Which of the following has a cyber security framework (CSF) that focuses exclusively on IT security, rather than IT service provisioning? - Answer - National Institute of Standards and Technology (NIST) A company technician goes
Written for
- Institution
- Sec+ sy0-601
- Course
- Sec+ sy0-601
Document information
- Uploaded on
- November 28, 2022
- Number of pages
- 32
- Written in
- 2022/2023
- Type
- Exam (elaborations)
- Contains
- Questions & answers
Subjects
-
sec sy0 601 study questions and answers 20222023
-
which security related phrase relates to the integrity of data
-
an engineer looks to implement security measures by following the five functions in t