Term
What of the following is not a step in the risk control process? |
|
Definition
|
|
Term
Which of the following is responsible for planning budgeting and performance of information system security? |
|
Definition
Security awareness personnel |
|
|
Term
Who must make trade off decisions regarding system security?
|
|
Definition
IT Management
System and information owners |
|
|
Term
Who develops appropriate materials for risk management?
|
|
Definition
Security awareness personnel |
|
|
Term
Which of the following is a goal of an organizations risk management
|
|
Definition
Ability to perform the mission |
|
|
Term
Which of the following is not a step in performing RA
|
|
Definition
Organizing company Assets |
|
|
Term
|
Definition
|
|
Term
Which of the following is a type of RA
|
|
Definition
|
|
Term
Which of the following is not a threat?
|
|
Definition
Poor firewall configuration |
|
|
Term
|
Definition
Extent or range of view, outlook, application, operation, and effectiveness. |
|
|
Term
Which of the following is a technique for identifying threats?
|
|
Definition
|
|
Term
Which of the following is an example of an administrative control?
|
|
Definition
|
|
Term
Audits are part of what type of assessment?
|
|
Definition
|
|
Term
Which of the following is a technical control?
|
|
Definition
|
|
Term
Which of the following is a type of risk mitigation security control?
|
|
Definition
|
|
Term
Risk mitigation planning starts with which of the following?
|
|
Definition
|
|