Chapter 2 Flashcards

1
Q

What is a formal evaluation to ensure the effectiveness of the security mechanisms, the quality of the risk management processes, and produce a report of the relative strengths and weaknesses?

A

Security Control Assessment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What assess the key indicators and activités of a mature, sustainable, and repeatable risk management process?

A

Risk Maturity Model

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the levels of the Risk Maturity Model in order ?

A

Ad hoc
Preliminary
Defined
Integrated
Optimized

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the six phases of the RMF?

A

Prepare
Categorize
Select
Implement
Assess
Authorize
Monitor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the five functions of the CSF?

A

Identify
Protect
Detect
Respond
Recover

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What enterprise spam filter is used to filter spoofed messages?

A

DMARC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the primary countermeasure against spam ?

A

Spam filter

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What attack captures and redirect traffic when a user mistypes the domain name or IP address of an resource ?

A

Typo Squatting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the techniques that improves security awareness and training?

A

Change the target focus of the training

Change around topic orders or emphasis

User a variety of presentation methods

Use role playing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is a means to encourage compliance and engagement by integrating common elements of game play into other activities.

A

Gamification

How well did you know this?
1
Not at all
2
3
4
5
Perfectly