Explain what media disposition means

Assignment Help Management Information Sys
Reference no: EM131152454

Question 1. 1. (TCO 1) Information security is a process that protects all of the following except _____. (Points : 5)
personal privacy

payroll integrity

service availability

readiness

hardware integrity


Question 2. 2. (TCO 2) The _____ of the 17 NIST control _____ can be placed into the 10 IISSCC _____ comprising the common body of knowledge for information security. (Points : 5)
technologies, domains, families

controls, families, domains

domains, families, technologies

principles, domains, families

controls, domains, principles

Question 3. 3. (TCO 2) What are the classes of security controls? (Points : 5)
Detection, prevention, and response

Management, technical, and operational

Administrative, technical, and physical

Administrative, technical, and procedural

Question 4. 4. (TCO 3) Security policies, regardless of level, should ensure that _____ of assets is distinguished, _____ of people is maintained, and that _____ is managed because that is the enemy of security. (Points : 5)
sensitivity, separation of duties, technology

labels, responsibility, complexity

labels, accountability, technology

organization, accountability, complexity

sensitivity, separation of duties, complexity


Question 5. 5. (TCO 4) Privacy legislation is written to protect _____. (Points : 5)
companies

managers

citizens

employees

All of the above

Question 6. 6. (TCO 5) Ideas can be evaluated using _____, which are _____ that are not meant to be _____. (Points : 5)
models, controls, solutions

controls, abstractions, solutions

models, abstractions, solutions

solutions, controls, abstractions

models, controls, abstractions

Question 7. 7. (TCO 6) Many believe that the most important physical security control is _____. (Points : 5)
closed-circuit television

a good security plan

an educated workforce

certified security staff

resources

Question 8. 8. (TCO 7) The security principle that says that each user should have access to exactly the information resources needed to do his/her job--no more and no less--is called _____. (Points : 5)
separation of duties

need to know

least privilege

minimal access

least common mechanism

Question 9. 9. (TCO 8) Security recovery strategies should always seek to restore _____. (Points : 5)
system files

application data

user access

networks supporting the IT infrastructure

the known good state

Question 10. 10. (TCO 9) Access controls manage the use of _____ by _____ in an information system. (Points : 5)
files, people

information resources, programs

objects, subjects

computer time, people

computer cycles, applications

Question 11. 11. (TCO 10) As a generalization, symmetric cryptography is used to encrypt _____, and asymmetric cryptography is used to encrypt _____. (Points : 5)
messages, identities

data, identities

data, signatures

data, messages

messages, signatures

Question 12. 12. (TCO 10) In a given city, there are a group of people who wish to communicate through the use of asymmetric cryptography. They do not wish to work with any type of certificate authority. Given this information, how would this be accomplished? (Points : 5)
Internal certificate authority

Private extranet

Public VPN provider

IPSec tunnels

Utilize PGP

Question 13. 13. (TCO 11) A firewall that disconnects an internal network from an external network is called a(n) _____. (Points : 5)
packet-filtering router

circuit-level gateway

application-level gateway

stateful inspection firewall

bridge firewall


Question 14. 14. (TCO 12) In addition to normal functional and assurance bugs, intrusion detection is subject to two kinds of errors called _____ and _____. (Points : 5)
type a, type b

false positive, false negative

hardware, software

functional, assurance

performance, availability


Question 15. 15. (TCO 13) Identify the SDLC phase in which business stakeholders and project team members should refer to company information security policies? (Points : 5)
System requirements

System design

Detailed design

Coding

Project inception

Question 1.Explain what is wrong with this policy clause, and show how you could fix it. People shall obey corporate policies

 

Question 2. The three effects of security controls are prevention, detection, and recovery. Briefly explain how these effects are related to the known good state

 

Question 3. Briefly explain the "principle" that states that security = risk management

 

Question 4. Briefly explain what needs to be accomplished before your company monitors the activities of authorized users of your company systems, and then explain what should be accomplished to legally monitor the activities of a hacker (unauthorized user) of your system.

 

Question 5. Explain why the Bell-LaPadula model and the Biba model are called dual models

 

Question 6. Briefly explain why good physical security is critical to good information security

 

Question 7. Explain what media disposition means

 

Question 8. Explain the term cold site

 

Question 9. Explain the advantage of role-based access controls

 

Question 10. Name the two uses of a private key in asymmetric cryptography

 

Question 11. Explain how a demilitarized zone might be used to protect critical resources that are not to be shared outside of an organization

 

Question 12. What is often another term for a bastion host?

 

Question 13. Explain why intrusion detection is necessary in terms of the known good state

 

Question 14. Summarize the benefits of application-level gateways

Question 15. Explain what a virus is, pointing out how it is different from a worm.

Reference no: EM131152454

Questions Cloud

Purchase of the options contract : Compared to before the purchase of the options contract, what happens to your financial net worth if the price of the stock declines to $185?
Provide a history of its use as a weapon of mass destruction : Select one of the four primary categories of terrorist hazards (Chemical, Biological, Radiological/Nuclear, Explosives). Provide a history of its use as a weapon of mass destruction (WMD); describe how it is made and dispersed, signs and symptoms ..
Present value of multiple annuities : A small business owner visits his bank to ask for a loan. The owner states that he can repay a loan at $2,200 per month for the next three years and then $3,200 per month for the two years after that. If the bank is charging customers 7.00 percent..
What is the adjusted present value of the project : What is the adjusted present value of the project? keep in mind interest rate tax shield.
Explain what media disposition means : Briefly explain what needs to be accomplished before your company monitors the activities of authorized users of your company systems, and then explain what should be accomplished to legally monitor the activities of a hacker (unauthorized user) o..
Complimenting is the persuasive tactic : Make a list of at least 10 persuasive tactics – things you’ve used to try to persuade other people, or things other people have done to try to persuade you. For example if you go into a clothing store and try on a jacket and the sales person tells yo..
Percent simple interest : Gerold invested $115 in an account that pays 6 percent simple interest. How much money will he have at the end of 5 years?
Measure of the central angle of a circle of radius : Find a positive angle less than 360o that is conterminal with the given angle -  Find the radian measure of the central angle of a circle of radius.
What does the contingency plan say about the owner : What does the contingency plan say about the owner, the proposed marketing theory, strategy, tactical planning etc. What are the pros and cons of this marketing plan

Reviews

Write a Review

Management Information Sys Questions & Answers

  Create a risk assessment matrix for the integration

Assignment: Create a risk assessment matrix for the purchase and integration of six new web servers for a start-up Internet firm

  Find situation in which need to utilize route redistribution

Determine one (1) situation in which you would need to utilize route redistribution. Investigate two to three (2-3) of the potential consequences of not using route redistribution in the identified situation. Provide a rationale for your response.

  Long-term relationship with one of its customers

key factors to consider when establishing a relationship with a customer and What key factors should a supplier consider when establishing a long-term relationship with one of its customers?

  Data - distinguishing between data information and

data - distinguishing between data information and knowledge.this module is about distinguishing between data

  What are several e-business applications

What are several e-business applications that you might recommend to a small company to help it survive and succeed in challenging economic times. Why

  Focus on the concept of information systems

Describe an organization of your choice. You will use this organization as you focus on the concept of information systems

  Describe events and your experience on weekly basis

Describe events and your experience on weekly basis (weeks 1-10 based on the Tutorial-Workshops Part B) - What did I do/hear/see?

  Determine the wacc given the above assumptions

Determine the WACC given the above assumptions. Indicate how these might be useful to determine the feasibility of the capital project. Recommend which is more appropriate to apply to project evaluation.

  Does this company use vmi and could it use vmi

Its inventory management procedures. This is the key aspect of the assignment. Be sure to elucidate this in some detail. Does this company use VMI? Could it use VMI? What does it use to ensure it has the right inventory at the right time and contr..

  What is the difference between significance and meaningfull

What is the difference between significance and meaningfulness? Which one is more important to experimental results and why do you think so?

  A purpose statement for the code of ethics

A purpose statement for the code of ethics, including why it is needed and why it is beneficial to both the organization and the employees

  How has technology impacted the workplace

Important information about Technology Questions - How has technology impacted the workplace?

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd