Give us your feedback!
Question:
Match the following terms and definitions
Response:
Intended to discourage a potential attacker
Deterrent
Intended to avoid an incident from happening
Preventive
Fixes component or systems after an incident has occurred
Corrective
Intended to bring the environment back to production levels
Recovery
Identify an incidents activities
Detective
Alternate measures of control
Compensating
Which classification of fuel type is gasoline given?
B
C
A
D
Match the following control types to their purposes
Reducing Risk
Preventative
Correcting violations and incidents
Corrective controls also help improve existing preventative and detective controls
Discouraging violations
Providing alternate ways of accomplishing a task
Restoring systems and information
Owner-set permissions are an example of:
Clark-Wilson
mandatory access control
Discretionary access control
role-based access control
More key terms from Chapter 2
Weakness or lack of a countermeasure
Vulnerability
Entity that can exploit a vulnerability
Threat agent
The danger of having a vulnerability exploited
Threat
The probability of a threat being realized
Exposure
Presence of a vulnerability which exposes the organization
Risk
John's computer access changed with his reassignment to a new department. This is an example of:
Access List Control
Owner set access control
Mandatory access control
Need-to-Know control
Role-based access control
Which of the following is the lowest in the OSI model:
Data Link
Physical
Session
Transport
Network
What OSI Layer includes data compression?
Application
Datalink
Presentation
How many levels are there in the latest (June 2013) OSI model?
5
10
8
6
7
What is the ideal humidity level for a data center?
40-60%
20-40%
30-50%
60-80%
Which access control includes audit trails?
Technical
Organizational
Administrative
Owner
A WAN is
a Wide Area Network
a Working Authentication Name
one of the Wilson-Adder Need types
a Wide Array Node
the Westinghouse Address Naming convention
Which classification of fuel type are electrical fires given?
Match the following terms to definitions
Training, configuration management of documentation, risk management
Administrative controls
Firewalls, IDS, encryption
Technical controls
Lighting, Fencing, guard patrols
Physical Controls