Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Examen

CLE 074 2023 with complete solution

Puntuación
-
Vendido
-
Páginas
2
Grado
A+
Subido en
05-05-2023
Escrito en
2022/2023

According to "The Common Sense Guide to Mitigating Insider Threats," which item is NOT a best practice to protect against the insider threat? (Identify countermeasures used to combat cyber threats) Make sure that only one person has access to critical passwords and certain classified information. Among the more complex technical areas comprising the Joint Information Environment implementation strategy is Data Center Consolidation. What is the purpose of such consolidation? (Identify the role the Joint Information Environment (JIE) plays in DoD cybersecurity) Consolidation is integral to the JIE goal of standardizing computing architecture. Suggested best practices to reduce security risks in the supply chain include: (Select all that apply) (Identify the importance of software assurance and supply chain risk management as part of cybersecurity bests practices) Select trusted suppliers Assess product security over time Control access to the product in transit Revise software design reviews to include supply chains Extend a developer's product logistics practices to subcontractors According to the definition given in DoDI 8500.01, what five things does cybersecurity ensure? (Define cybersecurity and cyberspace) Confidentiality, Integrity, Availability, Non-repudiation, Authentication Which of the following initiatives is NOT part of the DoD Cyberstrategy ? (Identify the five strategic goals that make up the DoD Cyber Strategy) Since the DoD has a unique set of cybersecurity issues, make sure that the DoD cybersecurity strategy addresses only the DoD. Even if a rapid introduction of a new IS or PIT system is required by a compelling business need, assessment and a Security Assessment Report (SAR) are still required before the decision to authorize can be made. (Identify the work products generated and used to guide the RMF) True DoD's official site for enterprise RMF policy and implementation guidelines is: (Identify the Systems-Level Continuous Monitoring Strategy) The Risk Management Framework (RMF) Knowledge Service (KS) What are two areas that the DoD definition for cybersecurity stresses that were NOT stressed in the former definition of Information Assurance? (Differentiate cybersecurity from information assurance) Communications and Prevention According to DoDI 8510.01, the Program Manager (PM) is responsible for all of the following cybersecurity related activities EXCEPT: (Identify how defense acquisition workforce personnel integrate and implement cybersecurity throughout the acquisition lifecycle) Final approval of the Authority to Operate (ATO) The ______ reviews and approves the security plan and system-level continuous monitoring strategy submitted by the ISO or PM/SM. (Identify the Authorizing Official?S (AO?s) role in the implementation of the RMF) Authorizing Official (AO) (or designee) Select the true statement related to cybersecurity reciprocity. (Identify the key concepts supporting cybersecurity throughout the lifecycle) All of these statements are true. (True/ False) The cyber kill chain is a sequence of activities and events used by a threat to execute a cyber-attack. (Identify threat agents and the cyber threats they perpetrate) True Cybersecurity DT and OT phases include each of the following EXCEPT: (Identify how cyber risk management and acquisition processes in the Federal government can be better aligned) Develop cybersecurity requirements During this step in the Risk Management Framework process, the security control baseline is identified and overlays are selected if applicable. (Identify the six steps of the Risk Management Framework (RMF)) Step 2 - Select Security Controls NIST SP-800-39 describes the implementation of a multi-tiered risk management process. The three tiers of this process are: (Identify the Multi-tiered Risk Management process) Tier 1 - Organization, Tier 2 - Mission/Business Process, Tier 3 - Information Systems Name the item that is NOT one of the key aspects of the Federal Information Systems Management Act (FISMA). (Identify the initiatives, policies, and legislative actions that were integral in the formation of the Department of Defense?s cybersecurity strategy) Requires all programs to have a DIACAP certification (True/ False) The Security Plan should be implemented during Step 2 (Select Security Controls) of the Risk Management Framework process. (Correlate the RMF work products to each step of the RMF) False

Mostrar más Leer menos
Institución
CLE 074
Grado
CLE 074

Vista previa del contenido

CLE 074
According to "The Common Sense Guide to Mitigating Insider Threats," which item is NOT a best practice to protect against the insider threat? (Identify countermeasures used to combat cyber threats) - correct answerMake sure that only one person has access to critical passwords and certain classified information.
Among the more complex technical areas comprising the Joint Information Environment
implementation strategy is Data Center Consolidation. What is the purpose of such consolidation? (Identify the role the Joint Information Environment (JIE) plays in DoD cybersecurity) - correct answerConsolidation is integral to the JIE goal of standardizing computing architecture.
Suggested best practices to reduce security risks in the supply chain include: (Select all that apply) (Identify the importance of software assurance and supply chain risk management as part of cybersecurity bests practices) - correct answerSelect trusted suppliers
Assess product security over time
Control access to the product in transit
Revise software design reviews to include supply chains
Extend a developer's product logistics practices to subcontractors
According to the definition given in DoDI 8500.01, what five things does cybersecurity ensure? (Define cybersecurity and cyberspace) - correct answerConfidentiality, Integrity, Availability, Non-repudiation, Authentication
Which of the following initiatives is NOT part of the DoD Cyberstrategy ? (Identify the five strategic goals that make up the DoD Cyber Strategy) - correct answerSince the DoD has a unique set of cybersecurity issues, make sure that the DoD cybersecurity strategy addresses only the DoD.
Even if a rapid introduction of a new IS or PIT system is required by a compelling business need, assessment and a Security Assessment Report (SAR) are still required before the decision to authorize can be made. (Identify the work products generated and used to guide the RMF) - correct answerTrue
DoD's official site for enterprise RMF policy and implementation guidelines is: (Identify the Systems-Level Continuous Monitoring Strategy) - correct answerThe Risk Management Framework (RMF) Knowledge Service (KS)
What are two areas that the DoD definition for cybersecurity stresses that were NOT stressed in the former definition of Information Assurance? (Differentiate cybersecurity from information assurance) - correct answerCommunications and Prevention

Escuela, estudio y materia

Institución
CLE 074
Grado
CLE 074

Información del documento

Subido en
5 de mayo de 2023
Número de páginas
2
Escrito en
2022/2023
Tipo
Examen
Contiene
Preguntas y respuestas

Temas

$8.49
Accede al documento completo:

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Conoce al vendedor

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
Arthurmark Chamberlain College Of Nursing
Seguir Necesitas iniciar sesión para seguir a otros usuarios o asignaturas
Vendido
45
Miembro desde
3 año
Número de seguidores
39
Documentos
1422
Última venta
4 meses hace

3.7

9 reseñas

5
5
4
0
3
2
2
0
1
2

Documentos populares

Recientemente visto por ti

Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes