Chapter 9 Flashcards

1
Q

Identify the type of information below that is least likely to be considered “sensitive” by an organization

A

financial statements

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

what is not one of the basic actions that an organization must take to preserve the confidentiality of sensitive information

A

backing up information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

classification of confidential information is the responsibility of whom, according to COBIT5

A

information owner

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

True or False: encryption is one of the many ways to protect information in transit over the internet

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

encryption is a necessary part of which information security approach

A

defense in depth

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Information rights management does all of these things

A

authenticate individuals accessing information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

identify the first step in protecting the confidentiality of intellectual property

A

identifying who has access to the intellectual property

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

after the information that needs to be protected has been identified, what step should be completed next

A

the information needs to classified in terms of its value to the organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

which type of software blocks outgoing messages containing key words or phrases associated with an organization’s sensitive data

A

data loss prevention software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly