IS3230 CHAPTER 7 Flashcards

1
Q

An employee who is angry or dissatisfied, usually with some aspect of their employment is called ___.

A

DISGRUNTLED EMPLOYEE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

The sum of qualities and traits shared by all humans is called ___.

A

HUMAN NATURE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

The practice of dividing essential steps of a task between multiple individuals is called ___.

A

SEPARATION OF DUTIES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Any system or network that contains valuable data and has attracted the notice of the hacker is called ___.

A

TARGET

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

The concept that there must be two authorized individuals available to approve any sensitive activity is called ___.

A

TWO-PERSON CONTROL

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q
  1. Generally, hackers are motivated by ___ and ___.
A

STATUS AND WEALTH

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q
  1. A target is a system or network that contains valuable data, and has attracted the notice of the hacker.
    TRUE OR FALSE
A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q
  1. A typical social engineering strategy involves which of the following?
  2. Assumed identity
  3. Believability
  4. Multiple contacts
  5. Requests for information
  6. 1 and 2 only
  7. All the above
A

Assumed identity
Believability
Multiple contacts
Requests for information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q
  1. What element of human nature does a social engineer exploit?
  2. Fear
  3. Ambition
  4. Trust
  5. Desire for status
  6. Greed
A

Trust

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q
  1. An employer can obtain an applicant’s driving records as part of a pre-employment background check.
    TRUE OR FALSE
A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q
  1. An employer can obtain an applicant’s medical history and credit reports without special consent of the applicant.
    TRUE OR FALSE
A

FALSE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q
  1. Passive-aggressive behavior can be an indicator of a ___ employee.
A

Disgruntled employee

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q
  1. Prior to or during an employee termination meeting, which of the following should be locked or changed?
  2. The employee’s workstation and network accounts
  3. The employee’s email account(s)
  4. Passwords for online accounts accessible to the employee
  5. The employee’s accounts on databases and file servers
  6. All the above
A
  1. The employee’s workstation and network accounts
  2. The employee’s email account(s)
  3. Passwords for online accounts accessible to the employee
  4. The employee’s accounts on databases and file servers

ALL THE ABOVE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q
  1. Two-way communication is critical to the organizational structure model of access control.
    TRUE OR FALSE
A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q
  1. Which of the following can help uncover dishonesty, such as fraud or theft, in the workplace? (Select two)
  2. Mandatory vacation
  3. Pre-employment checks
  4. Job rotation
  5. Ethics training
  6. All the above
A

Mandatory vacation

Job rotation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q
  1. ___ is designed to eliminate the opportunity for theft, fraud, or other harmful activity.
A

Two person control

17
Q
  1. Access owners are responsible for maintaining a list of authorized users.
    TRUE OR FALSE
A

TRUE

18
Q
  1. Informing employees of security and acceptable use policies during orientation is sufficient training.
    TRUE OR FALSE
A

FALSE

19
Q
  1. Human resources should be an integral part of enforcing security policy.
    TRUE OR FALSE
A

TRUE