1
For Expert help and assignment solutions, +254707240657
qisp Questions and Answers (100%
Correct Answers) Already Graded A+
What are the AiSP's code of conduct values? [ANS:] ans: honesty,
fairness, integrity and diligence
Name 3 professional responsibilities [ANS:] ans: eg. act within the
law, report to appropriate authorities and violations, act in the
best interest of the employer
© 2025 Assignment Expert
list 2 ethics in Information Security [ANS:] ans: eg. to honour the
confidentiality and not use computer system or data for personal
gain/unlawful purposes, to honour intellectual property rights
Guru01 - Stuvia
What motivates hackers to commit cyber-crimes? [ANS:] ans:
cash, challenge, hacktivism, revenge, subversion, infamy
What are the objectives of information securities? [ANS:] ans:
confidentiality, integrity, availability, accountability, non-
repudiation
how do you address the human element in risk monitoring? [ANS:]
ans: include a training and awareness programme, communicate
IS policies, standards and procedures
how can risk be treated? [ANS:] ans: risk mitigation, risk
avoidance, risk transference, risk acceptance
what are the 4 typical levels of confidentiality used by
organisations? [ANS:] ans: confidential, restricted, internal, public
information
, 2
For Expert help and assignment solutions, +254707240657
name some possible issues of information classification [ANS:]
multiple classifications, internal resistance, over-classfication,
coverage, confidentiality, integrity, availabilty, accountability,
non-repudation
cyber hygiene best practices? [ANS:] ans: includes installing
antivirus and malware software, using firewalls, restrict privileged
access to unauthorized personnel, updating apps/web
browsers/operating systems regularly, keeping hard drives clean,
changing passwords, review server and application port settings,
conduct security awareness training
© 2025 Assignment Expert
why is the layered defence model effective? [ANS:] the layers
delay the intruders from gaining access, as each layer is to waste
the intruder's time from reaching his objective.
Guru01 - Stuvia
what are the objectives of a Business Impact Analysis? [ANS:] ans:
assist management in understanding the impact associated with
possible disruptions, identify and prioritise critical business
processes/applications/systems, analyse the impact, determine
recovery objectives
explain KMIP [ANS:] ans: KMIP allows specific key management
environments to communicate with other key management
systems outside the environments
What needs to be performed in a risk assessment? [ANS:] ans:
impact analysis, risk determination, controls recommendation
What is the basis of a zero-trust network? [ANS:] ans: by default,
nobody in the network is trusted whether it be from inside or
outside the network. verification is required from everyone gaining
access, and access to more secure resources may require
stronger authentication.
For Expert help and assignment solutions, +254707240657
qisp Questions and Answers (100%
Correct Answers) Already Graded A+
What are the AiSP's code of conduct values? [ANS:] ans: honesty,
fairness, integrity and diligence
Name 3 professional responsibilities [ANS:] ans: eg. act within the
law, report to appropriate authorities and violations, act in the
best interest of the employer
© 2025 Assignment Expert
list 2 ethics in Information Security [ANS:] ans: eg. to honour the
confidentiality and not use computer system or data for personal
gain/unlawful purposes, to honour intellectual property rights
Guru01 - Stuvia
What motivates hackers to commit cyber-crimes? [ANS:] ans:
cash, challenge, hacktivism, revenge, subversion, infamy
What are the objectives of information securities? [ANS:] ans:
confidentiality, integrity, availability, accountability, non-
repudiation
how do you address the human element in risk monitoring? [ANS:]
ans: include a training and awareness programme, communicate
IS policies, standards and procedures
how can risk be treated? [ANS:] ans: risk mitigation, risk
avoidance, risk transference, risk acceptance
what are the 4 typical levels of confidentiality used by
organisations? [ANS:] ans: confidential, restricted, internal, public
information
, 2
For Expert help and assignment solutions, +254707240657
name some possible issues of information classification [ANS:]
multiple classifications, internal resistance, over-classfication,
coverage, confidentiality, integrity, availabilty, accountability,
non-repudation
cyber hygiene best practices? [ANS:] ans: includes installing
antivirus and malware software, using firewalls, restrict privileged
access to unauthorized personnel, updating apps/web
browsers/operating systems regularly, keeping hard drives clean,
changing passwords, review server and application port settings,
conduct security awareness training
© 2025 Assignment Expert
why is the layered defence model effective? [ANS:] the layers
delay the intruders from gaining access, as each layer is to waste
the intruder's time from reaching his objective.
Guru01 - Stuvia
what are the objectives of a Business Impact Analysis? [ANS:] ans:
assist management in understanding the impact associated with
possible disruptions, identify and prioritise critical business
processes/applications/systems, analyse the impact, determine
recovery objectives
explain KMIP [ANS:] ans: KMIP allows specific key management
environments to communicate with other key management
systems outside the environments
What needs to be performed in a risk assessment? [ANS:] ans:
impact analysis, risk determination, controls recommendation
What is the basis of a zero-trust network? [ANS:] ans: by default,
nobody in the network is trusted whether it be from inside or
outside the network. verification is required from everyone gaining
access, and access to more secure resources may require
stronger authentication.