CISSP General Flashcards

1
Q

Change Management Process

A
  1. Request the Change
  2. Review the change
  3. approve or reject
  4. test the change
  5. schedule and implement
  6. document the change
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Info lifecycle

A
  1. Creation
  2. classification
  3. Storage
  4. usage (data in transit/use)
  5. archive
  6. destruction
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

SCAP

A

Security Content Automation Protocol

framework for discussing and facilitate automation of process between applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

CVE

A

Common Vulnerability and Assessment

  • naming system to describe security vulnerabilities
  • Part of SCAP
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

CVSS

A

Common Vulnerability Scoring System

  • standardized scoring system to describe severity of vulnerabilities
  • Part of SCAP
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

CCE

A

Common Configuration Enumeration

  • naming system for system configuration issues
  • Part of SCAP
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

XCCDF

A

Extensible Configuration Checklist Description Format

  • language for specifying computer checklists
  • Part of SCAP
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

OVAL

A

Open Vulnerability Assessment Language

  • language for describing security testing procedures
  • Part of SCAP
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Change Management Process

A
  1. Request the change
  2. Review the change
  3. Approve/reject
  4. test
  5. schedule and implement
  6. document
How well did you know this?
1
Not at all
2
3
4
5
Perfectly