Geschreven door studenten die geslaagd zijn Direct beschikbaar na je betaling Online lezen of als PDF Verkeerd document? Gratis ruilen 4,6 TrustPilot
logo-home
Tentamen (uitwerkingen)

CLE 074 2023 with complete solution

Beoordeling
-
Verkocht
-
Pagina's
2
Cijfer
A+
Geüpload op
05-05-2023
Geschreven in
2022/2023

According to "The Common Sense Guide to Mitigating Insider Threats," which item is NOT a best practice to protect against the insider threat? (Identify countermeasures used to combat cyber threats) Make sure that only one person has access to critical passwords and certain classified information. Among the more complex technical areas comprising the Joint Information Environment implementation strategy is Data Center Consolidation. What is the purpose of such consolidation? (Identify the role the Joint Information Environment (JIE) plays in DoD cybersecurity) Consolidation is integral to the JIE goal of standardizing computing architecture. Suggested best practices to reduce security risks in the supply chain include: (Select all that apply) (Identify the importance of software assurance and supply chain risk management as part of cybersecurity bests practices) Select trusted suppliers Assess product security over time Control access to the product in transit Revise software design reviews to include supply chains Extend a developer's product logistics practices to subcontractors According to the definition given in DoDI 8500.01, what five things does cybersecurity ensure? (Define cybersecurity and cyberspace) Confidentiality, Integrity, Availability, Non-repudiation, Authentication Which of the following initiatives is NOT part of the DoD Cyberstrategy ? (Identify the five strategic goals that make up the DoD Cyber Strategy) Since the DoD has a unique set of cybersecurity issues, make sure that the DoD cybersecurity strategy addresses only the DoD. Even if a rapid introduction of a new IS or PIT system is required by a compelling business need, assessment and a Security Assessment Report (SAR) are still required before the decision to authorize can be made. (Identify the work products generated and used to guide the RMF) True DoD's official site for enterprise RMF policy and implementation guidelines is: (Identify the Systems-Level Continuous Monitoring Strategy) The Risk Management Framework (RMF) Knowledge Service (KS) What are two areas that the DoD definition for cybersecurity stresses that were NOT stressed in the former definition of Information Assurance? (Differentiate cybersecurity from information assurance) Communications and Prevention According to DoDI 8510.01, the Program Manager (PM) is responsible for all of the following cybersecurity related activities EXCEPT: (Identify how defense acquisition workforce personnel integrate and implement cybersecurity throughout the acquisition lifecycle) Final approval of the Authority to Operate (ATO) The ______ reviews and approves the security plan and system-level continuous monitoring strategy submitted by the ISO or PM/SM. (Identify the Authorizing Official?S (AO?s) role in the implementation of the RMF) Authorizing Official (AO) (or designee) Select the true statement related to cybersecurity reciprocity. (Identify the key concepts supporting cybersecurity throughout the lifecycle) All of these statements are true. (True/ False) The cyber kill chain is a sequence of activities and events used by a threat to execute a cyber-attack. (Identify threat agents and the cyber threats they perpetrate) True Cybersecurity DT and OT phases include each of the following EXCEPT: (Identify how cyber risk management and acquisition processes in the Federal government can be better aligned) Develop cybersecurity requirements During this step in the Risk Management Framework process, the security control baseline is identified and overlays are selected if applicable. (Identify the six steps of the Risk Management Framework (RMF)) Step 2 - Select Security Controls NIST SP-800-39 describes the implementation of a multi-tiered risk management process. The three tiers of this process are: (Identify the Multi-tiered Risk Management process) Tier 1 - Organization, Tier 2 - Mission/Business Process, Tier 3 - Information Systems Name the item that is NOT one of the key aspects of the Federal Information Systems Management Act (FISMA). (Identify the initiatives, policies, and legislative actions that were integral in the formation of the Department of Defense?s cybersecurity strategy) Requires all programs to have a DIACAP certification (True/ False) The Security Plan should be implemented during Step 2 (Select Security Controls) of the Risk Management Framework process. (Correlate the RMF work products to each step of the RMF) False

Meer zien Lees minder
Instelling
CLE 074
Vak
CLE 074

Voorbeeld van de inhoud

CLE 074
According to "The Common Sense Guide to Mitigating Insider Threats," which item is NOT a best practice to protect against the insider threat? (Identify countermeasures used to combat cyber threats) - correct answerMake sure that only one person has access to critical passwords and certain classified information.
Among the more complex technical areas comprising the Joint Information Environment
implementation strategy is Data Center Consolidation. What is the purpose of such consolidation? (Identify the role the Joint Information Environment (JIE) plays in DoD cybersecurity) - correct answerConsolidation is integral to the JIE goal of standardizing computing architecture.
Suggested best practices to reduce security risks in the supply chain include: (Select all that apply) (Identify the importance of software assurance and supply chain risk management as part of cybersecurity bests practices) - correct answerSelect trusted suppliers
Assess product security over time
Control access to the product in transit
Revise software design reviews to include supply chains
Extend a developer's product logistics practices to subcontractors
According to the definition given in DoDI 8500.01, what five things does cybersecurity ensure? (Define cybersecurity and cyberspace) - correct answerConfidentiality, Integrity, Availability, Non-repudiation, Authentication
Which of the following initiatives is NOT part of the DoD Cyberstrategy ? (Identify the five strategic goals that make up the DoD Cyber Strategy) - correct answerSince the DoD has a unique set of cybersecurity issues, make sure that the DoD cybersecurity strategy addresses only the DoD.
Even if a rapid introduction of a new IS or PIT system is required by a compelling business need, assessment and a Security Assessment Report (SAR) are still required before the decision to authorize can be made. (Identify the work products generated and used to guide the RMF) - correct answerTrue
DoD's official site for enterprise RMF policy and implementation guidelines is: (Identify the Systems-Level Continuous Monitoring Strategy) - correct answerThe Risk Management Framework (RMF) Knowledge Service (KS)
What are two areas that the DoD definition for cybersecurity stresses that were NOT stressed in the former definition of Information Assurance? (Differentiate cybersecurity from information assurance) - correct answerCommunications and Prevention

Geschreven voor

Instelling
CLE 074
Vak
CLE 074

Documentinformatie

Geüpload op
5 mei 2023
Aantal pagina's
2
Geschreven in
2022/2023
Type
Tentamen (uitwerkingen)
Bevat
Vragen en antwoorden

Onderwerpen

€7,60
Krijg toegang tot het volledige document:

Verkeerd document? Gratis ruilen Binnen 14 dagen na aankoop en voor het downloaden kan je een ander document kiezen. Je kan het bedrag gewoon opnieuw besteden.
Geschreven door studenten die geslaagd zijn
Direct beschikbaar na je betaling
Online lezen of als PDF

Maak kennis met de verkoper

Seller avatar
De reputatie van een verkoper is gebaseerd op het aantal documenten dat iemand tegen betaling verkocht heeft en de beoordelingen die voor die items ontvangen zijn. Er zijn drie niveau’s te onderscheiden: brons, zilver en goud. Hoe beter de reputatie, hoe meer de kwaliteit van zijn of haar werk te vertrouwen is.
Arthurmark Chamberlain College Of Nursing
Volgen Je moet ingelogd zijn om studenten of vakken te kunnen volgen
Verkocht
45
Lid sinds
3 jaar
Aantal volgers
39
Documenten
1422
Laatst verkocht
4 maanden geleden

3,7

9 beoordelingen

5
5
4
0
3
2
2
0
1
2

Populaire documenten

Recent door jou bekeken

Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via Bancontact, iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo eenvoudig kan het zijn.”

Alisha Student

Veelgestelde vragen