• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 2 out of 5 pages
Exam (elaborations)

Cyber security and Information Assurance 2026/2027 Questions And Correct Detailed Answers With Rationales

Document preview thumbnail
Preview 2 out of 5 pages

This document contains questions and verified answers for Cyber security and Information Assurance . It includes detailed explanations, revision-focused content, and exam preparation material suitable for 2026/2027 students.

Content preview

Cyber security and Information
Assurance

Accept(Risk) - ANS-Process by using which managers agree to accept the hazard (e.G.,
managers understand hazard and the feasible options for treating it, but determine to just
accept it)

Administrative Control - ANS-control of policy oriented

advanced chronic danger (APT) - ANS-Initial reconnaissance
Initial compromise
set up foothold
escalate privileges
internal reconnaissance
Move laterally
Maintain presence
acquire task objective at the same time as hiding presence.

Asset/Impact-Oriented Approach - ANS-begins with the identification of affects or effects of
difficulty and important property
Then identifies chance activities that would result in the ones impacts or results.

Avoid (Risk) - ANS-Discontinue volatile exercise
(decommission insecure system or prohibit insecure behavior)

Botnet operators - ANS-Botnet operators
Common attack paradigm
Infection of computer through phishing or spear phishing
enlistment of inflamed laptop in botnet
use of pc in unlawful scheme directed in opposition to laptop user or others on Internet
Capabilities: variety of information and assets from low to high
Intent: identity robbery, economic fraud, unsolicited mail, DDoS, click on-fraud, and so on.
Generally, they're cause on always recruiting new bots to make up for attrition
Targeting: may additionally awareness on precise organizations or simply acquire victims of
opportunity

Compensating - ANS-supplements or replaces another manage

Control Functions - ANS-Deterrence

, Prevention
Detective
Compensating
Corrective
Recovery

Controls - ANS-Measures that we put in area to mitigate threat

Corrective - ANS-repair data or systems after an incident

Detective - ANS-Detect threats as, or after, they take region

Deterrence - ANS-Discourage, gradual, or deter a risk actor

Extortionists - ANS-Common attack paradigm:
Ransomware model: Infection -> encrypt facts -> call for $$ for key
DDoS model: assault business website -> call for $$ to halt attack
Blackmail version: Steal sensitive data and demand $$ to now not publicize it
Capabilities:
Range of skills, however ransomware and DDoS are low-ability assaults
Intent
Punish victim till direct charge is made
Targeting
Ransomware: broadcast to sufferers of possibility
DDoS attacks and blackmailers, via their nature, are more targeted

Framing Risk - ANS-is a strategic, governance-driven activity. The goal is a threat management
strategy. The approach will determine how the enterprise intends to...
Assess the chance (selecting the evaluation method, defining the version and approaches
Respond to the hazard (take into account the 4 options)
Monitor the consequences and ongoing changes in the environment, and
Feed that statistics returned into next hazard checks.

Likelihood of Initiation - ANS-Consider risk source characteristics
Capability
Intent
Targeting
Consider historical song document of your agency and those similarly located
Similar industries
Similar sorts of information
Similar public profile
Similar incidents

Malicious Insider - ANS-Common attack paradigm

Document information

Uploaded on
September 22, 2025
Number of pages
5
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$15.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
AllLegitExams
3.8
(43)
Sold
126
Followers
8
Items
2337
Last sold
1 week ago




Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions