Mock B Problem Areas Flashcards

1
Q

What is operational risk?

A

Refers to potential losses that might arise in business operations.
Risks of losses resulting from inadequate or failed internal processes, people and systems, or external events

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is game theory?

A

Concerned with the interrelationships between competitive moves of a set of competitors and, as such, can be a useful tool to analyse and under

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the two key principles of game theory?

A
  1. Strategists can take a rational, informed view of what competitors are likely to do and formulate a suitable response
  2. If a strategy exists that allows a competitor to dominate us, then our priority is to eliminate that strategy
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the main forms of personnel controls?

A

Recruitment controls
Policies and procedures
Training
Supervision and monitoring

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is a mirror site?

A

Effectively a complete copy of a website, but hosted on a different URL

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a hot back up site?

A

Building that physically replicates all of the curent data centre/servers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is a warm back up site?

A

Building that has all the critical hardware for the servers and systems in place but they will need to be configured and the most recent back up of data/information installed before the site can take over the organisation’s activities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is a cold back up site?

A

Area where, should anything go wrong, new hardware could be set up and a recovery operation could begin.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the five components of the double helix?

A
  1. Governance and culture
  2. Strategy and Objective setting
  3. Performance
  4. Review and Revision
  5. Information, communication and reporting
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is ISO27001?

A

Standard produced by International Organisation for Standardisation and concerns information security management systems.
Developed to provide a model for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an information security management system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is ISO 31000?

A

Group of standards designed to provide guidance on risk management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is ISO 27002?

A

Code of practice for information security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly