Answers
The Computer ____ and Abuse Act of 1986 is the cornerstone of many computer-
related federal laws and enforcement efforts. - Answer - ✔Fraud
The most successful kind of top-down approach involves a formal development strategy
referred to as a ____. - Answer - ✔systems development life cycle
In file hashing, a file is read by a special algorithm that uses the value of the bits in the
file to compute a single large number called a ____ value. - Answer - ✔hash
The first phase of risk management is ____. - Answer - ✔risk identification
The Security Area Working Group acts as an advisory board for the protocols and areas
developed and promoted by the Internet Society and the ____. - Answer - ✔IETF
Which of the following acts defines and formalizes laws to counter threats from
computer related acts and offenses? - Answer - ✔Computer Fraud and Abuse Act
A computer is the ____ of an attack when it is used to conduct the attack. - Answer -
✔subject
A(n) ____ plan deals with the identification, classification, response, and recovery from
an incident. - Answer - ✔IR
Risk ____ is the application of controls to reduce the risks to an organization's data and
information systems. - Answer - ✔control
A(n) ____ is an authorization issued by an organization for the repair, modification, or
update of a piece of equipment. - Answer - ✔FCO
Redundancy can be implemented at a number of points throughout the security
architecture, such as in ____. - Answer - ✔All of the above
The National Information Infrastructure Protection Act of 1996 modified which Act? -
Answer - ✔Computer Fraud and Abuse Act
Security ____ are the areas of trust within which users can freely communicate. -
Answer - ✔domains
, In a(n) ____, each information asset is assigned a score for each of a set of assigned
critical factor. - Answer - ✔weighted factor analysis
Strategic planning is the process of moving the organization towards its ____. - Answer
- ✔vision
In SESAME, the user is first authenticated to an authentication server and receives a
token. The token is then presented to a privilege attribute server as proof of identity to
gain a(n) ____. - Answer - ✔PAC
A(n) ____ is "a private data network that makes use of the public telecommunication
infrastructure, maintaining privacy through the use of a tunneling protocol and security
procedures." - Answer - ✔VPN
The dominant architecture used to secure network access today is the ____ firewall. -
Answer - ✔screened subnet
A ____ site provides only rudimentary services and facilities. - Answer - ✔cold
In ____ mode, the data within an IP packet is encrypted, but the header information is
not. - Answer - ✔transport
Which of the following acts is also widely known as the Gramm-Leach-Bliley Act? -
Answer - ✔Financial Services Modernization Act
The restrictions most commonly implemented in packet-filtering firewalls are based on
____. - Answer - ✔All of the above
An alert ____ is a document containing contact information for the people to be notified
in the event of an incident. - Answer - ✔roster
Since the bastion host stands as a sole defender on the network perimeter, it is
commonly referred to as the ____ host. - Answer - ✔sacrificial
The military uses a ____-level classification scheme. - Answer - ✔five
During the ____ phase, specific technologies are selected to support the alternatives
identified and evaluated in the logical design. - Answer - ✔physical design
One form of online vandalism is ____ operations, which interfere with or disrupt systems
to protest the operations, policies, or actions of an organization or government agency. -
Answer - ✔hacktivist