With All Correct Detailed Answers A+
Pass
How do you turn data into knowledge? - Answer- You use lots of data to observe
general ideas and then test those ideas with more data you observe, until you can
finally make broad, general conclusions. These conclusions are what called knowledge.
Which is more important to a business - its information or its information technology? -
Answer- The information is more important, because all that the information technology
does it make the information available to people to make decisions with.
As the IT security directory, Paul does not have anybody looking at systems monitoring
or event logging data. Which set of responsibilities is Paul in violation of? - Answer- Due
diligence
Explain the relationship between confidentiality and privacy, if any? - Answer-
Confidentiality is about keeping information secret so that we retain advantage or do not
come to harm; privacy is about choosing who can enter into one's life or property.
Jayne discovers that someone in the company's HR department has been modifying
employee performance appraisals. If done without proper authorization, this would be
what kind of violation? - Answer- Integrity
At a job interview, Fred is asked by the interviewer about activities, pictures, and
statements he's made by posting things on his Facebook and LinkedIn pages. This
question by the interviewer: - Answer- Is a legitimate one, since these pages are
published by Fred, and therefore they are speech he has made in public places.
A thunderstorm knocks out the commercial electric power to your company's
datacenter, shutting down everything. This impacts which aspect of information
security? - Answer- Availability
Business logic is: - Answer- The design of processes to achieve an objective within the
rules and constraints the business must operate within.
How does business logic relate to information security? - Answer- Business logic
represents decisions the company has made and may give it a competitive advantage
over others in the marketplace; it needs to be protected from unauthorized disclosure or
unauthorized change. Processes that implemented the business logic need to be
available to be run or used when needed. Thus, confidentiality, integrity, and availability
apply.