Chapter 3 Flashcards

1
Q

What is NIST-800-82 used for?

A

Industrial control systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is NIST-800-30 used for?

A

U.S. standards for conducting risk assessments

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is ISO 27002 for?

A

International standard for implementing and maintaining information for security systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is ISO 27017 for?

A

International standard for cloud security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is NIST 800-12 for?

A

General security standard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is NIST 800-14 for?

A

Standard for policy development

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does OWASP do?

A

de facto standard for web application security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How is a network operating system determined?

A

The operating system running on the domain controller.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What does NIST 500-53 do?

A

organizes security measure into families of controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What wireless protocols deal with IV attacks?

A

WEP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is RTOS?

A

A real time operating system is a secure system for embedded devices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What 802.11 standard is supported in WPA2 but not WEP or WPA?

A

802.11i

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is the primary difference between waterfall and agile?

A

Agile repeats phases

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is an immutable server?

A

Server’s configuration cannot be changed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Proper sequence for waterfall method?

A

Requirements, design, implementation, testing, deployment, maintenance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Why do memory leaks happen?

A

Caused by failure to deallocate memory that has been allocated.

17
Q

What does a static code analyzer do?

A

Checks to see if all memory allocation commands have a matching deallocation command.

18
Q

What should you do after making a change to a system?

A

Regression Testing

19
Q

What is the primary purpose of AH in IPsec?

A

Authenticate the entire packet

20
Q

What does aggregation switches do?

A

Link aggregation switches allow you to combine the bandwidth of multiple links into one connection.