MIS 416 Exam 1 Questions with accurate answers
_________ negatively affect(s) the CIA triad.
A) Threats
B) NNTP
C) Vulnerabilities
D) Risks Ans✓✓✓ A
__________ is the negative result if the risk occurs.
A) Value
B) Probability
C) Risk
D) Impact Ans✓✓✓ D
____________ assessments are objective, while ___________
assessments are subjective.
A) Quantitative, qualitative
B) Qualitative, quantitative
C) Risk, threat
D) Threat, risk Ans✓✓✓ A
_____________ is the likelihood that a threat will exploit a
vulnerability.
A) Risk
,B) Probability
C) Impact
D) Assessment Ans✓✓✓ B
A _________ is the likelihood that a loss will occur.
A) vulnerability
B) threat
C) risk
D) assessment Ans✓✓✓ C
A business impact analysis is intended to include all IT functions. T/F?
Ans✓✓✓ F
A key step in managing risk is to first understand and manage the
source. T/F? Ans✓✓✓ T
A relative measurement of a resource's tolerance for risk exposure is:
A) Risk aversion
B) Threat landscape
C) Risk sensitivity
D) Vulnerability score Ans✓✓✓ C
A risk assessment is the same as a risk management program. T/F?
Ans✓✓✓ F
, A Risk Assessment team should focus both on critical areas and on what
management might consider important. T/F? Ans✓✓✓ T
A Security Scan and a Risk Assessment are the same. T/F? Ans✓✓✓ F
A threat event where loss materializes and/or where liability increases.
A) Threat Event
B) Vulnerability Event
C) Loss Event
D) Primary Event
E) Risk Event Ans✓✓✓ C
A threat is a weakness, but a vulnerability is an activity that represents a
possible danger. T/F? Ans✓✓✓ F
According to Landoll, which of the following is NOT a type of security
test?
A) Threat Testing
B) Penetration Testing
C) Vulnerability Testing
D) Information Accuracy Testing Ans✓✓✓ A
According to Talabis, what is the function of a BIA?
_________ negatively affect(s) the CIA triad.
A) Threats
B) NNTP
C) Vulnerabilities
D) Risks Ans✓✓✓ A
__________ is the negative result if the risk occurs.
A) Value
B) Probability
C) Risk
D) Impact Ans✓✓✓ D
____________ assessments are objective, while ___________
assessments are subjective.
A) Quantitative, qualitative
B) Qualitative, quantitative
C) Risk, threat
D) Threat, risk Ans✓✓✓ A
_____________ is the likelihood that a threat will exploit a
vulnerability.
A) Risk
,B) Probability
C) Impact
D) Assessment Ans✓✓✓ B
A _________ is the likelihood that a loss will occur.
A) vulnerability
B) threat
C) risk
D) assessment Ans✓✓✓ C
A business impact analysis is intended to include all IT functions. T/F?
Ans✓✓✓ F
A key step in managing risk is to first understand and manage the
source. T/F? Ans✓✓✓ T
A relative measurement of a resource's tolerance for risk exposure is:
A) Risk aversion
B) Threat landscape
C) Risk sensitivity
D) Vulnerability score Ans✓✓✓ C
A risk assessment is the same as a risk management program. T/F?
Ans✓✓✓ F
, A Risk Assessment team should focus both on critical areas and on what
management might consider important. T/F? Ans✓✓✓ T
A Security Scan and a Risk Assessment are the same. T/F? Ans✓✓✓ F
A threat event where loss materializes and/or where liability increases.
A) Threat Event
B) Vulnerability Event
C) Loss Event
D) Primary Event
E) Risk Event Ans✓✓✓ C
A threat is a weakness, but a vulnerability is an activity that represents a
possible danger. T/F? Ans✓✓✓ F
According to Landoll, which of the following is NOT a type of security
test?
A) Threat Testing
B) Penetration Testing
C) Vulnerability Testing
D) Information Accuracy Testing Ans✓✓✓ A
According to Talabis, what is the function of a BIA?