Asset and Change Management Flashcards

1
Q

What is Asset Management?

A

Systematic process of developing, operating, maintaining, and selling assets cost-effectively

This includes managing both tangible and intangible assets throughout their life cycle.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Define Change Management.

A

Structured approach to transitioning from a current state to a desired future state

Change management is essential in adapting to continuous changes in business environments.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the purpose of Acquisition and Procurement?

A

Structured process of sourcing, vetting, and obtaining security technologies and services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

List the Mobile Asset Deployment Models.

A
  • BYOD (Bring Your Own Device)
  • COPE (Corporate-Owned, Personally Enabled)
  • CYOD (Choose Your Own Device)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the importance of Asset Assignment and Accounting?

A

Clear ownership and classification of assets; rigorous monitoring through inventory checks and MDM solutions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What processes are involved in Asset Disposal and Decommissioning?

A
  • Sanitization
  • Destruction
  • Certification
  • Data retention

These processes minimize the risk of unauthorized access or data breaches.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the Change Management Approval Process?

A

Strict approval for every change; consideration of CAB insights, ownership, stakeholder involvement, and impact analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

List best practices for Change Management Processes.

A
  • Schedule maintenance windows
  • Thorough backout plans
  • Consistent testing post-implementation
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the Technical Implications of Changes?

A
  • Allow lists
  • Deny lists
  • Handling downtime
  • Restarts
  • Managing legacy applications and dependencies
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Why is documenting changes important?

A

Version controlling changes; regularly updating diagrams, policies, and procedures

This ensures accountability and clarity in the change management process.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the difference between Acquisition and Procurement?

A
  • Acquisition: Process of obtaining goods and services
  • Procurement: Entire process of sourcing and obtaining those goods and services
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are the three main mobile device deployment models?

A
  • BYOD (Bring Your Own Device)
  • COPE (Corporate-Owned, Personally Enabled)
  • CYOD (Choose Your Own Device)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What considerations should be made when selecting a mobile deployment model?

A

Specific needs, budget constraints, and risk appetite of your organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is meant by Asset Monitoring?

A

Maintaining an inventory with specifications, location, and assigned users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the purpose of Mobile Device Management (MDM)?

A

Manages and tracks mobile devices; centralizes management, enforces corporate policies, and safeguards sensitive data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What methods are used for data sanitization?

A
  • Overwriting
  • Degaussing
  • Secure Erase
  • Cryptographic Erase
17
Q

What is the significance of Certification in Asset Disposal?

A

Acts as proof that data or hardware has been securely disposed of; important for organizations with regulatory requirements

18
Q

List reasons for retaining data.

A
  • Regulatory requirements
  • Historical analysis
  • Trend prediction
  • Dispute resolution
19
Q

What are the challenges of Change Management?

A
  • Unplanned changes can lead to resistance
  • Simple changes can disrupt existing processes
  • Changes can impact efficiency
20
Q

What are the five main steps in Change Management?

A
  • Preparing for the Change
  • Creating a Vision for the Change
  • Implementing the Change
  • Verifying the Change
  • Documenting the Change
21
Q

What is a Backout Plan in Change Management?

A

Pre-determined strategy to revert systems to their original state in case of issues during change implementation

22
Q

What are Allow Lists and Deny Lists?

A
  • Allow List: Specifies entities permitted to access a resource
  • Deny List: Lists entities prevented from accessing a resource
23
Q

What is the role of the Change Advisory Board (CAB)?

A

Evaluates proposed changes before approval, assesses viability, impacts, and alignment with objectives

24
Q

What is the purpose of Impact Analysis in Change Management?

A

Assesses potential fallout, immediate effects, long-term impacts, and identifies challenges

25
Q

What is meant by version control?

A

Tracks and manages changes in documents, software, and other files; allows collaboration and reversion to previous versions

26
Q

What are Standard Operating Procedures (SOPs)?

A

Detailed step-by-step instructions for specific tasks; ensures consistency and reduces errors in change implementation

27
Q

Fill in the blank: The process of sanitization makes data ________ from the storage medium.

A

inaccessible and irretrievable

28
Q

True or False: Legacy applications are more flexible and less sensitive to changes.

29
Q

What is critical for clarity and accountability in change management?

A

Proper documentation

Proper documentation includes updating change requests and trouble tickets to reflect successful completion.

30
Q

What should be evaluated after implementing a change?

A

The process and its success

Continuous evaluation helps identify issues and improve future practices.

31
Q

What does continuous improvement in change management emphasize?

A

Iterative process improvement

It aims to ensure smoother future changes by learning from past mistakes.

32
Q

What is the purpose of change requests and trouble tickets?

A

To create a clear timeline of change actions

They inform stakeholders and provide a record of change history for future reference.

33
Q

True or False: Records are essential for communication and accountability in change management.

A

True

Records help track changes and ensure stakeholders are informed.

34
Q

After implementing a change, what should be revised to prevent recurrence?

A

Policies and procedures

This helps to address identified issues and improve future change management.

35
Q

Fill in the blank: _______ is necessary for documenting successful completion in change management.

A

[Proper documentation]

Proper documentation includes updating change requests and trouble tickets.