Cybersecurity Pre Course Assessment questions and answers verified and updated.
Cybersecurity Pre Course Assessment questions and answers verified and updated. Glen is an (ISC)² member. Glen receives an email from a company offering a set of answers for an (ISC)² certification exam. What should Glen do? - correct answers.Inform (ISC)² Zarma is an (ISC)² member and a security analyst for Triffid Corporation. One of Zarma's colleagues is interested in getting an (ISC)2 certification and asks Zarma what the test questions are like. What should Zarma do? - correct answers.Explain the style and format of the questions, but no detail A system that collects transactional information and stores it in a record in order to show which users performed which actions is an example of providing - correct answers.Non-repudiation The city of Grampon wants to ensure that all of its citizens are protected from malware, so the city council creates a rule that anyone caught creating and launching malware within the city limits will receive a fine and go to jail. What kind of rule is this? - correct answers.Law The Payment Card Industry (PCI) Council is a committee made up of representatives from major credit card providers (Visa, Mastercard, American Express) in the United States. The PCI Council issues rules that merchants must follow if the merchants choose to accept payment via credit card. These rules describe best practices for securing credit card processing technology, activities for securing credit card information, and how to protect customers' personal data. This set of rules is a _____. - correct answers.Standard Tina is an (ISC)² member and is invited to join an online group of IT security enthusiasts. After attending a few online sessions, Tina learns that some participants in the group are sharing malware with each other, in order to use it against other organizations online. What should Tina do? - correct answers.Stop participating in the group Which of the following probably poses the most risk? - correct answers.A high-likelihood, high-impact event Druna is a security practitioner tasked with ensuring that laptops are not stolen from the organization's offices. Which sort of security control would probably be best for this purpose? - correct answers.Physical Aphrodite is a member of (ISC)² and a data analyst for Triffid Corporation. While Aphrodite is reviewing user log data, Aphrodite discovers that another Triffid employee is violating the acceptable use policy and watching streaming videos during work hours. What should Aphrodite do? - correct answers.Inform Triffid management Preenka works at an airport. There are red lines painted on the ground next to the runway; Preenka has been instructed that nobody can step or drive across a red line unless they request, and get specific permission from, the control tower. This is an example of a(n)______ control. - correct answers.Administrative The senior leadership of Triffid Corporation decides that the best way to minimize liability for the company is to demonstrate the company's commitment to adopting best practices recognized throughout the industry. Triffid management issues a document that explains that Triffid will follow the best practices published by SANS, an industry body that addresses computer and information security. The Triffid document is a ______, and the SANS documents are ________. - correct answers.Policy, standard Which of the following is an example of a "something you are" authentication factor? - correct answers.A photograph of your face For which of the following assets is integrity probably the most important security aspect? - correct answers.The file that contains passwords used to authenticate users Triffid Corporation has a rule that all employees working with sensitive hardcopy documents must put the documents into a safe at the end of the workday, where they are locked up until the following workday. What kind of control is the process of putting the documents into the safe? - correct answers.Administrative For which of the following systems would the security concept of availability probably be most important? - correct answers.Medical systems that monitor patient condition in an intensive care unit A bollard is a post set securely in the ground in order to prevent a vehicle from entering an area or driving past a certain point. Bollards are an example of ______ controls. - correct answers.Physical A software firewall is an application that runs on a device and prevents specific types of traffic from entering that device. This is a type of ________ control. - correct answers.Technical Sophia is visiting Las Vegas and decides to put a bet on a particular number on a roulette wheel. This is an example of _________. - correct answers.Acceptance Jengi is setting up security for a home network. Jengi decides to configure MAC address filtering on the router, so that only specific devices will be allowed to join the network. This is an example of a(n)_______ control. - correct answers.Technical Of the following, which would probably not be considered a threat? - correct answers.A laptop with sensitive data on it What is the goal of an incident response effort? - correct answers.Reduce the impact of incidents on operations What is the risk associated with resuming full normal operations too soon after a DR effort? - correct answers.The danger posed by the disaster might still be present Who approves the incident response policy? - correct answers.Senior management What is the overall objective of a disaster recovery (DR) effort? - correct answers.Return to normal, full operations What is the risk associated with delaying resumption of full normal operations after a disaster? - correct answers.The impact of running alternate operations for extended periods All of the following are important ways to practice an organization disaster recovery (DR) effort; which one is the most important? - correct answers.Facility evacuation drills True or False? Business continuity planning is a reactive procedure that restores business operations after a disruption occurs. - correct answers.False Handel is a senior manager at Triffid, Inc., and is in charge of implementing a new access control scheme for the company. Handel wants to ensure that employees transferring from one department to another, getting promoted, or cross-training to new positions can get access to the different assets they'll need for their new positions, in the most efficient manner. Which method should Handel select? - correct answers.Role-based access controls (RBAC) Which of the following will have the most impact on determining the duration of log retention? - correct answers.Applicable laws Which of the following statements is true? - correct answers.It is best to use a blend of controls in order to provide optimum security
Document information
- Uploaded on
- August 17, 2023
- Number of pages
- 7
- Written in
- 2023/2024
- Type
- Exam (elaborations)
- Contains
- Questions & answers