Section 12.105 Acquisition and Procurement Flashcards

Objectives 1.3 Explain the importance of change management processes and the impact to security. Objectives 4.1 Given a scenario, you must be able to apply common security techniques to computing resources. Objectives 4.2 Explain the security implications of proper hardware, software, and data asset management.

1
Q

Acquisition

A

Process of obtaining goods and services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Procurement

A

Entire process of sourcing and obtaining those goods and services, including all the processes that lead up to the acquisition

New piece of software: Organisations will have a structure in place to purchase

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Conducting the acquisition and procurement process:

Company Credit Card

Understand the different types of purchase options

A

○ Quick purchase of low-cost items

○ Transaction limits and item restrictions

e.g Printer ink

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Conducting the acquisition and procurement process:

Individual Purchase

Understand the different types of purchase options

A

○ Employee purchases then seeks reimbursement

○ Used in emergencies or when no company credit card is available

e.g Company travel - flights, hotel etc

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Conducting the acquisition and procurement process:

Purchase Order (PO)

Understand the different types of purchase options

A

○ Formal document issued by the purchasing department

○ For larger, more expensive purchases

○ Dictates payment terms (NET 15, NET 30, NET 60)

NET meaning how long they have to pay you back (SLA’s)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Internal Approval Process

A

■ Ensures purchase alignment with company goals

■ Validates budget allocation

■ Assesses security and compatibility with existing infrastructure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Post-Approval Procurement

A

■ Product compatibility assessment

■ Security checks and configurations

■ User training

■ Integration into the existing workflow

How well did you know this?
1
Not at all
2
3
4
5
Perfectly