Print Study Guide Flashcards

1
Q

5 forces that shape assets protection

A

Technology and touch
Convergence of security solutions
Globalization in business
The international security environment
Standards and regulations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Unity of command

A

Should only report to one person

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

5 categories of distinction between public and private policing

A

Philosophical
Legal
Financial
Operational
Security/political

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Is accumulated depreciation an asset or liability

A

Asset

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is gross profit margin based on

A

Sales and cost of goods sold (efficiency of producing product)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is operating margin based on

A

EBITA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the quick ratio

A

Aka acid test, aka cash ratio (easily converted to cash)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is WAECUP?

A

Waste, accidents, error, crime, unethical practices

Used as blueprint for developing security objectives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the STEP model

A

Social, technological, environmental, and political

Potential sources of threats

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is a corrective report

A

Alerts units with unacceptable incident records

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is a misconduct investigation?

A

Employee or affiliate violates policy or law

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are compliance investigations for

A

Violations of law, lapses in business ethics, and concomitant legal sanctions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Pygmalion effect

A

If you believe someone is capable of achieving greatness, they will

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is “mens rea”

A

“guilty mind”, the state of mind or wrongful purpose required by criminal laws; must be acting intentionally (except negligence or strict liability crimes)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What % of evidence is typically testimonial

A

80%

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Any building opening less than ___ feet above the ground should be secured

A

18

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

A clear zone of ___ feet or more should separate the primer barrier from structures within the protected area

A

50

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

What is the most common intrusion detector?

A

Passive infrared sensors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Where should acoustic glass break sensors be placed

A

On the opposite wall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What law prohibits the use of unlicensed microphones for purposes of eavesdropping?

A

The federal communications act

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Containers rated for fire and theft have a 1-2 hour fire rating and a TL rating of ___

A

30

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

At a minimum, how often should lock combinations be changed?

A

Every 1-2 years

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

What is the least secure frequency range because it contains fm bands

A

88-120

24
Q

What is Angel dust the street name for

A

PCP

25
Q

First responder vs emergency responder

A

Emergency responder could be staff

26
Q

What is organization resilience management?

A

Systematic and coordinated activities and practices through which and organization manages its operational risks and the associated potential threats and impacts therein

27
Q

This evaluates the presence of any specific concerns of violence affecting the workplace and the organizations readiness to respond to threats and violent incidents

A

Needs assessment

28
Q

For workplace violence, these employees may be the first to be notified of an incident, a victim, or unsafe conditions.

A

Occupational safety and health personnel

29
Q

An unstable condition involving an impending abrupt or significant change that requires urgent attention and action to protect life, assets, property, or the environment

A

Crisis

30
Q

Serious, unexpected, and precarious situation requiring immediate action

A

Emergency

31
Q

These prescription drugs are most subject to abuse in the workplace.

A

Stimulants and sedatives

32
Q

Top two drugs abused in the workplace (in order)

A

Alcohol then marijuana

33
Q

What is the layered security called in EP?

A

Rings of protection

34
Q

The person under protection

A

The principal

35
Q

The person paying for the security/protection

A

The client

36
Q

Manages, designs, or manipulates the environment in a systematic way to increase the necessary effort and risk while reducing perceived rewards to the potential offender

A

Situational crime prevention

37
Q

What is PAP

A

Physical asset protection

38
Q

An event that causes significant damage to assets or loss of life

A

Disaster

39
Q

Difference between IAP (information asset protection) vs ISS (information systems security)

A

IAP is holistic, ISS is digital

40
Q

What is the AAA triad in confidentiality of information?

A

Authentication, authorization, and auditing

41
Q

What is cyclical redundancy check

A

A tool for maintaining integrity of information which shows if data has been altered

42
Q

What is the body of knowledge required for certification as an information system security professional

A

Critical information systems security professional (CISSP)

43
Q

PCI DSS - PG 269

A
44
Q

What are the two most prominent management system standards

A

ISO 9001 on quality management systems

ISO 14001 on environmental management systems

ISO 22301 on business continuity

45
Q

What are the two most prominent management system standards

A

ISO 9001 on quality management systems

ISO 14001 on environmental management systems

46
Q

What are the five categories of distinction between public and private policing?

A

Philosophical
Legal
Financial
Operational
Security/political

47
Q

What is ANSI?

A

American national standards institute

48
Q

What are the two types of civil law?

A

Common (case) and statutory

49
Q

What is GSA

A

General services administration

50
Q

What comprises the CISSP body of knowledge (8 ISS domains)

A

Security and risk management
Asset security
Security engineering
Communications and network security
Identity and access management (IAM)
security assessment and testing
Security operations
Software development security

51
Q

What is the payment card industry data security standard (PCI DSS)

A

Standards to protect credit card data

52
Q

What is the gramm-leach-bliley act

A

Regulates the use and disclosure of non-public personal information about individuals who obtain financial products or services from financial institutions

53
Q

Sarbanes oxley act (SOX)

A

The most significant law since SEC; PLACES SUBSTANTIAL ADDITIONAL RESPONSIBILITIES ON OFFICERS AND DIRECTORS OF PUBLIC COMPANIES AND IMPOSES SIGNIFICANT CRIMINAL PENALTIES ON CEOS CFOS AND OTHERS WHO VIOLATE ITS PROVISIONS

54
Q

What is the red flags rule?

A

Regulates financial institutions for early detection and prevention of theft; identify patterns, procedures to detect, respond, and update program regularly

55
Q

Federal Trades commission (FTC) “safeguards rule”

A

Financial institutions must have comprehensive information security program

56
Q

What is the general data protection regulation (GDPR)?

A

EU law on data protection and privacy; gives individuals control over their data

57
Q

What is the EU-US privacy shield framework

A

Since US doesn’t have adequate data protection, allows companies to be designated as having adequate protection.