Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 2 fuera de 8 páginas
Examen

security essentials Exam With Correct Answers

Document preview thumbnail
Vista previa 2 fuera de 8 páginas

security essentials Exam With Correct Answers The Computer ____ and Abuse Act of 1986 is the cornerstone of many computer-related federal laws and enforcement efforts. - Answer - Fraud The most successful kind of top-down approach involves a formal development strategy referred to as a ____. - Answer - systems development life cycle In file hashing, a file is read by a special algorithm that uses the value of the bits in the file to compute a single large number called a ____ value. - Answer - hash The first phase of risk management is ____. - Answer - risk identification The Security Area Working Group acts as an advisory board for the protocols and areas developed and promoted by the Internet Society and the ____. - Answer - IETF Which of the following acts defines and formalizes laws to counter threats from computer related acts and offenses? - Answer - Computer Fraud and Abuse Act A computer is the ____ of an attack when it is used to conduct the attack. - Answer - subject A(n) ____ plan deals with the identification, classification, response, and recovery from an incident. - Answer - IR Risk ____ is the application of controls to reduce the risks to an organization's data and information systems. - Answer - control A(n) ____ is an authorization issued by an organization for the repair, modification, or update of a piece of equipment. - Answer - FCO Redundancy can be implemented at a number of points throughout the security architecture, such as in ____. - Answer - All of the above The National Information Infrastructure Protection Act of 1996 modified which Act? - Answer - Computer Fraud and Abuse Act Security ____ are the areas of trust within which users can freely communicate. - Answer - domains In a(n) ____, each information asset is assigned a score for each of a set of assigned critical factor. - Answer - weighted factor analysis Strategic planning is the process of moving the organization towards its ____. - Answer - vision In SESAME, the user is first authenticated to an authentication server and receives a token. The token is then presented to a privilege attribute server as proof of identity to gain a(n) ____. - Answer - PAC A(n) ____ is "a private data network that makes use of the public telecommunication infrastructure, maintaining privacy through the use of a tunneling protocol and security procedures." - Answer - VPN The dominant architecture used to secure network access today is the ____ firewall. - Answer - screened subnet A ____ site provides only rudimentary services and facilities. - Answer - cold In ____ mode, the data within an IP packet is encrypted, but the header information is not. - Answer - transport Which of the following acts is also widely known as the Gramm-Leach-Bliley Act? - Answer - Financial Services Modernization Act The restrictions most commonly implemented in packet-filtering firewalls are based on ____. - Answer - All of the above An alert ____ is a document containing contact information for the people to be notified in the event of an incident. - Answer - roster Since the bastion host stands as a sole defender on the network perimeter, it is commonly referred to as the ____ host. - Answer - sacrificial The military uses a ____-level classification scheme. - Answer - five During the ____ phase, specific technologies are selected to support the alternatives identified and evaluated in the logical design. - Answer - physical design One form of online vandalism is ____ operations, which interfere with or disrupt systems to protest the operations, policies, or actions of an organization or government agency. - Answer - hacktivist Acts of ____ can lead to unauthorized real or virtual actions that enable information gatherers to enter premises or systems they have not been authorized to enter. - Answer - trespass Laws and policies and their associated penalties only deter if which of the following conditions is present? - Answer - All of the above The ____ Portability and Accountability Act Of 1996, also known as the Kennedy-Kassebaum Act, protects the confidentiality and security of health care data by establishing and enforcing standards and by standardizing electronic data interchange. - Answer - Health Insurance The ____ is based on and directly supports the mission, vision, and direction of the organization and sets the strategic direction, scope, and tone for all security efforts. - Answer - EISP "4-1-9" fraud is an example of a ____ attack. - Answer - social engineering The ____ security policy is a planning document that outlines the process of implementing security in the organization. - Answer - program

Vista previa del contenido

Security Essentials Exam With Correct
Answers
The Computer ____ and Abuse Act of 1986 is the cornerstone of many computer-
related federal laws and enforcement efforts. - Answer - ✔Fraud

The most successful kind of top-down approach involves a formal development strategy
referred to as a ____. - Answer - ✔systems development life cycle

In file hashing, a file is read by a special algorithm that uses the value of the bits in the
file to compute a single large number called a ____ value. - Answer - ✔hash

The first phase of risk management is ____. - Answer - ✔risk identification

The Security Area Working Group acts as an advisory board for the protocols and areas
developed and promoted by the Internet Society and the ____. - Answer - ✔IETF

Which of the following acts defines and formalizes laws to counter threats from
computer related acts and offenses? - Answer - ✔Computer Fraud and Abuse Act

A computer is the ____ of an attack when it is used to conduct the attack. - Answer -
✔subject

A(n) ____ plan deals with the identification, classification, response, and recovery from
an incident. - Answer - ✔IR

Risk ____ is the application of controls to reduce the risks to an organization's data and
information systems. - Answer - ✔control

A(n) ____ is an authorization issued by an organization for the repair, modification, or
update of a piece of equipment. - Answer - ✔FCO

Redundancy can be implemented at a number of points throughout the security
architecture, such as in ____. - Answer - ✔All of the above

The National Information Infrastructure Protection Act of 1996 modified which Act? -
Answer - ✔Computer Fraud and Abuse Act

Security ____ are the areas of trust within which users can freely communicate. -
Answer - ✔domains

, In a(n) ____, each information asset is assigned a score for each of a set of assigned
critical factor. - Answer - ✔weighted factor analysis

Strategic planning is the process of moving the organization towards its ____. - Answer
- ✔vision

In SESAME, the user is first authenticated to an authentication server and receives a
token. The token is then presented to a privilege attribute server as proof of identity to
gain a(n) ____. - Answer - ✔PAC

A(n) ____ is "a private data network that makes use of the public telecommunication
infrastructure, maintaining privacy through the use of a tunneling protocol and security
procedures." - Answer - ✔VPN

The dominant architecture used to secure network access today is the ____ firewall. -
Answer - ✔screened subnet

A ____ site provides only rudimentary services and facilities. - Answer - ✔cold

In ____ mode, the data within an IP packet is encrypted, but the header information is
not. - Answer - ✔transport

Which of the following acts is also widely known as the Gramm-Leach-Bliley Act? -
Answer - ✔Financial Services Modernization Act

The restrictions most commonly implemented in packet-filtering firewalls are based on
____. - Answer - ✔All of the above

An alert ____ is a document containing contact information for the people to be notified
in the event of an incident. - Answer - ✔roster

Since the bastion host stands as a sole defender on the network perimeter, it is
commonly referred to as the ____ host. - Answer - ✔sacrificial

The military uses a ____-level classification scheme. - Answer - ✔five

During the ____ phase, specific technologies are selected to support the alternatives
identified and evaluated in the logical design. - Answer - ✔physical design

One form of online vandalism is ____ operations, which interfere with or disrupt systems
to protest the operations, policies, or actions of an organization or government agency. -
Answer - ✔hacktivist

Información del documento

Subido en
5 de febrero de 2025
Número de páginas
8
Escrito en
2024/2025
Tipo
Examen
Contiene
Preguntas y respuestas
$11.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Vendido
0
Seguidores
0
Artículos
52
Última venta
-


Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes