Module 2 Flashcards

1
Q

What is the ISO/IEC standard that outlines aspects of system quality?

A

ISO 9126-1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

List the aspects of system quality according to ISO 9126-1.

A
  • Functionality
  • Usability
  • Reliability
  • Performance
  • Security
  • Information Assurance
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What does Information Assurance (IA) study?

A

How to protect information assets from destruction, degradation, manipulation, and exploitation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

True or False: Information Assurance is only reactive.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the definition of Availability in basic security issues?

A

Timely, reliable access to data and information services for authorized users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does Integrity protect against?

A

Unauthorized modification or destruction of information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Fill in the blank: _______ ensures that information is not disclosed to unauthorized persons.

A

Confidentiality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What does Non-repudiation provide assurance about?

A

That the sender has proof of data delivery and the recipient has proof of the sender’s identity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

According to Debra Herrmann, how many security engineering domains does IA span?

A

Four

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

List the four security engineering domains related to Information Assurance.

A
  • Physical security
  • Personnel security
  • IT security
  • Operational security
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is Physical security focused on?

A

Protection of hardware, software, and data against physical threats

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Define Personnel security.

A

Ongoing measures to reduce the likelihood and severity of unauthorized actions by insiders and known outsiders

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is the main focus of IT security?

A

Technical features and functions that ensure confidentiality, integrity, and availability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What does Operational security involve?

A

Implementation of standard operational security defining user-system interactions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

According to Raggad’s taxonomy, what are the five components of a computing environment?

A
  • Activities
  • People
  • Data
  • Technology
  • Networks
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

List the key security strategies mentioned.

A
  • Risk Assessment and Management
  • Access Control
  • Encryption and Data Protection
  • Incident Response and Recovery
  • Security Awareness and Training
  • Security Policies and Procedures