Domain 7 Set 1 Flashcards

1
Q

What are the 7 Forensics investigation process?

A
  1. identification
  2. Preservation
  3. Collection
  4. Examination
  5. Analysis
  6. Presentation
  7. Decision
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Locard’s Principle of Exchange

A

Based on the premise that a criminal will usually leave something behind even if it’s just a tip-off about their motives based on what they stole.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

evidence based on the 5 senses

A

direct evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

This type of evidence, which includes real and best evidence,

A

direct evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

This type of evidence,does not require supporting evidence to back it up

A

direct evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Physical evidence is know as

A

Real evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

A signed Contract is what type of evidence?

A

best evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

These on their own aren’t sufficient to prove a case, but are used instead as supporting evidence.

A

secondary evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

copies of a document is

A

Hearsay

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

testimony from expert witnesses is what type of evidence?

A

secondary evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

MTTF

A

Mean Time To Failure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

MTTR

A

Mean Time To Repair

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Disk Striping, what raid

A

Raid-0 (speed) no fault tolerance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Disk Striping with Parity, what raid

A

Raid -5

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Clustering is primarily for

A

fault tolerance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

load balancing is primarily for

A

performance optimization

17
Q

everything is backed up on a regular schedule regardless if anything has changed.

A

Full backup

18
Q

everything that has changed since the last full backup is backed up.

A

Incremental backup

19
Q

all files that have been modified since the last full backup are backed up.

A

Differential backup

20
Q

The archive bit is not reset. with what backup

A

Differential backup

21
Q

number of tapes needed to restore with Differential backups?

A

only reset two tapes

22
Q

what backup is the quickest to restore

A

Full backup

23
Q

what backup is the slowest to restore

A

Incremental backups

24
Q

batch process of moving data is what?

A

Electronic Vaulting

25
Q

Moves the Journal or transaction logs to a remote location

A

Remote Journaling