Module 4: Governance Elements Flashcards

1
Q

Procedures

A

Are the detailed steps to complete a task that support departmental or organizational policies.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Policies

A

Are put in place by organizational governance, such as executive management, to provide guidance in all activities to ensure that the organization supports industry standards and regulations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Standards

A

Are often used by governance teams to provide a framework to introduce policies and procedures in support of
Regulations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Regulations

A

Are commonly issued in the form of laws, usually from the government ( not to be confused with governance) and typically carry financial penalties for noncompliance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Regulations and laws :
The Health insurance Portability and Accountability Act (HIPPA) of 1996

A

Is an example of a law that governs the use of protected health information (PHI) in the United States.
Violation of the HIPPA rule carries the possibility of fines and/or imprisonment for both individual and companies.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

The General Data Protection Regulation (GDPR)

A

Was enacted by the European Union ( EU) to control use of Personally Identifiable information (PII) of its citizens and those in the EU.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

IETF

A

Internet Engineering Task Force

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

NIST

A

National institute of Standards and Technology

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

ISO

A

International Organization for Standardization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

(ISC)2 code of ethics Preamble

A

The safety and welfare of society and the common good, duty to our principals, and to each other , requires that we adhere, and be seen to adhere, to the highest ethical standards of behavior.
The preamble states the purpose and intent of the (ISC)2 Code of Ethics.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

(ISC)2 Code of Ethics Canons

A

The Canons represent the important beliefs held in common by the members of (ISC)2.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Cybersecurity professionals who are members of (ISC)2 have a duty to the following four entities in the Canons:

A
  1. Protect society, the common ground, necessary public trust and confidence, and infrastructure.
  2. Act honorably, honestly, justly, responsibly and legally.
  3. Provide diligent and competent service to principals.
  4. Advance and protect the profession.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Adequate security

A

Security commensurate with the risk and the magnitude of harm resulting from the loss, misuse or unauthorized access to or modification of information.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Administrative Controls

A

Controls implemented through policy and procedures. Examples include access control processes and requiring multiple personnel to conduct a specific operation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Artificial intelligence

A

The ability of computers and robots to simulate human intelligence and behavior.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Asset

A

Anything of value that is owned by an organization. Assets include both tangible items such as information systems and physical property and intangible assets such as intellectual property.