MOD 2 QUIZ Flashcards

1
Q

What is Separation of Duties?

A

Critical, significant, and sensitive work tasks are divided among several individual administrators or high-level operators

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is Job rotation?

A

Consists of rotating employees among multiple job positions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is SLA?

A

Service-Level Agreement

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is Security Governance?

A

The collection of practices related to supporting, defining, and directing the security efforts of an organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the, “detailed process of identifying factors that could damage or disclose data, evaluating those factors in light of data value and countermeasure cost, and implementing cost-effective solutions for mitigating or reducing risk”?

A

Risk Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is Vulnerability?

A

A weakness in an asset or the absence or the weakness of a safeguard or countermeasure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the two types of Risk Analysis?

A

Qualitative and Quantitative

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the six major elements of Quantitative Risk Analysis?

A

Annualized Rate of Occurrence
Single Loss Expectancy
Asset Value
Exposure Factor
Annualized Loss Expectancy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the valid Risk Responses?

A

Transfer
Accept
Mitigate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the three Control Categories used in Defense in Depth?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is Exposure?

A

Being susceptible to asset loss because of a threat (doesn’t mean a threat will be realized)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is Asset Valuation
?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is Phishing?

A

Stealing credentials or identity information from any potential target

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is Shoulder Surfing?

A

Whens someone is able to watch a user’s keyboard or view their display

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is Typo Squatting?

A

A practice employed to capture and redirect traffic when a user mistypes the domain name or IP address of an intended resource

How well did you know this?
1
Not at all
2
3
4
5
Perfectly