Implementation and operation of ids

Assignment Help Finance Basics
Reference no: EM13789835

Question 1. The ____ is the point in time by which systems and data must be recovered after an outage as determined by the business unit.

  • training objective
  • recovery time objective
  • dependency objective
  • recovery point objective

Question 2. The ____ contains the rules and configuration guidelines governing the implementation and operation of IDSs within the organization.

  • security policy
  • log file
  • honeypot
  • site policy

Question 3. ____ services are triggered by an event or request, such as a report of a compromised host, wide-spreading malicious code, software vulnerability, or something that was identified by an intrusion detection or logging system.

  • Reactive
  • Forensic
  • Security
  • Proactive

Question 4. A(n) ____ is a document containing contact information for the individuals that need to be notified in the event of an actual incident.

  • root roster
  • alert roster
  • hierarchical roster
  • sequential roster

Question 5. ____ is the control approach that attempts to shift the risk to other assets, other processes, or other organizations

  • Acceptance
  • Transference
  • Mitigation
  • Avoidance

Question 6. A ____ deals with the preparation for and recovery from a disaster, whether natural or man-made.

  • risk assessment
  • mitigation plan
  • risk management
  • disaster recovery plan

Question 7. Which of the following is a proactive service?

  • Incident handling
  • Risk analysis
  • Announcements
  • Alerts and warnings

Question 8. A favorite pastime of information security professionals is ____, which is realistic, head-to-head attack and defend information, security attacks, and incident response methods.

  • parallel testing
  • war gaming
  • simulation
  • structured walk-through

Question 9. In an organization, unexpected activities occur periodically; these are referred to as ____.

  • warnings
  • problems
  • after-action
  • events

Question 10. The ____ job functions focus more on costs of system creation and operation, ease of use for system users, and timeliness of system creation, as well as transaction response time.

  • organizational management and professionals
  • information technology management and professionals
  • human resource management and professional
  • information security management and professionals

Question 11. ____ is the control approach that attempts to reduce the impact caused by the exploitation of vulnerability through planning and preparation.

  • Acceptance
  • Avoidance
  • Transference
  • Mitigation

Question 12. ____ occurs when valid packets exploit poorly configured DNS servers to inject false information to corrupt the servers' answers to routine DNS queries from other systems on that network.

  • DNS cache poisoning
  • Clipping
  • Signature matching
  • Clustering

Question 13. ____ is a common approach used in the discipline of systems analysis and design.

  • Database diagramming
  • Network diagramming
  • Application diagramming
  • Systems diagramming

Question 14. A ____ is a document that expresses how an organization ensures that critical business functions continue at an alternate location while the organization recovers its ability to function at the primary site if a catastrophic incident or disaster occurs.

  • risk assessment plan
  • worm
  • Trojan horse
  • business continuity plan

Question 15. ____ are important when team members are preparing advisories and procedures.

  • Writing skills
  • Forensic skills
  • Medical skills
  • Mathematical skills

Question 16. ____ is an IDS's ability to dynamically modify its site policies in reaction or response to environmental activity.

  • Alarm Compaction
  • True Attack Stimulus
  • Confidence Value
  • Site policy awareness

Question 17. A(n) ____ is any clearly identified attack on the organization's information assets that would threaten the assets' confidentiality, integrity, or availability.

  • incident
  • threat
  • Trojan horse
  • worm

Question 18. A ____ is a type of IDS that is similar to the NIDS, reviews the log files generated by servers, network devices, and even other IDSs.

  • log file monitor
  • DNS cache
  • honeypot
  • alarm cluster

Question 19. The ____ can be used to collect information directly from the end users and business managers.

  • forensic analysis
  • system log session
  • facilitated data gathering session
  • data management session

Question 20. ____ are tools used to identify which computers are active on a network, as well as which ports and services are active on the computers, what function or role the machines may be fulfilling, and so on.

  • Filters
  • Scanning utilities
  • Clusters
  • Triggers

Question 21. A ____ is a computer server configured to resemble a production system, containing rich information just begging to be hacked.

  • network cluster
  • honeypot
  • smart IDS
  • DNS cache

Question 22. ____ enables authorized users - persons or computer systems - to access information without interference or obstruction, and to receive it in the required format.

  • Risk assessment
  • Integrity
  • Availability
  • Confidentiality

Question 23. ____ ensures that only those with the rights and privileges to access information are able to do so.

  • Confidentiality
  • Risk assessment
  • Integrity
  • Availability

Question 24. ____ is the process of moving the organization toward its vision.

  • Transference
  • Avoidance
  • Mitigation
  • Strategic planning

Question 25. Using a process known as ____, Network IDSs must look for attack patterns by comparing measured activity to known signatures in their knowledge base to determine whether or not an attack has occurred or may be underway.

  • cache poisoning
  • signature matching
  • clipping
  • scanning

Question 26. A(n) ____ is a SIRT team member, other than the team leader, who is currently performing the responsibilities of the team leader in scanning the organization's information infrastructure for signs of an incident.

  • IR duty officer
  • software engineer
  • forensic expert
  • project manager

Question 27. ____ is the coherent application of methodical investigatory techniques to solve crime cases.

  • Alarm Compaction
  • Scanning
  • Forensics
  • Signature matching

Question 28. ____ is the process of systematically examining information assets for evidentiary material that can provide insight into how the incident transpired.

  • Incident response
  • Forensics analysis
  • War gaming
  • Disaster recovery

Question 29. A(n) ____ is generally thought of as a group of individuals united by shared interests or values within an organization and who share a common goal of making the organization function to meet its objectives.

  • network community
  • community of interest
  • database community
  • incident response community

Question 30. The violation of fair use of copyrighted material is an example of a(n) ____.

  • compromise to intellectual property
  • act of human error
  • deliberate act of information distortion
  • deliberate act of trespass

Question 31. A(n) ____ is an event that triggers alarms and causes a false positive when no actual attacks are in progress.

  • True Attack Stimulus
  • alert
  • false negative
  • false attack stimulus

Question 32. A(n) ____ is a detailed examination of the events that occurred from first detection to final recovery.

  • reactive review
  • proactive review
  • audit review
  • after-action review

Question 33. A(n) ____ is a type of attack on information assets in which the instigator attempts to gain unauthorized entry into a system or network or disrupt the normal operations of a system or network.

  • event
  • intrusion
  • alert
  • honeypot

Question 34. A(n) ____ requires that a contact person call each and every person on the roster.

  • root roster
  • alert roster
  • sequential roster
  • hierarchical roster

Question 35. The ____ is the period of time within which systems, applications, or functions must be recovered after an outage.

  • training objective
  • recovery time objective
  • recovery point objective
  • dependency objective

Question 36. A(n) ____ must lead the project and make sure a sound project planning process is used, a complete and useful project plan is developed, and project resources are prudently managed to reach the goals of the project.

  • champion
  • crisis manager
  • project manager
  • incident manager

Question 37. ____ services augment existing and well-established services that are independent of incident handling and traditionally performed by other areas of an organization such as the IT, Audit, or Training departments.

  • Reactive
  • Forensic
  • Proactive
  • Security quality management

Question 38. A(n) ____ is prepared by the organization to anticipate, react to, and recover from events that threaten the security of information and information assets in the organization, and, subsequently, to restore the organization to normal modes of business operations.

  • asset
  • threat
  • social plan
  • contingency plan

Question 39. A ____ is an alarm or alert that indicates that an attack is in progress or that an attack has successfully occurred when in fact there was no such attack.

  • site policy
  • false positive
  • false negative
  • Confidence Value

Question 40. A(n) ____ is an investigation and assessment of the impact that various attacks can have on the organization.

  • threat
  • BIA
  • incident
  • intellectual property

Reference no: EM13789835

Questions Cloud

Health status and health care services in germany : Health Status and Health Care Services in Germany with comparison to the United States regarding the information below (Germany health care system vs. US health care system)
What is the wacc : You were hired as a consultant to ABC Company, whose target capital structure is 35% debt, 15% preferred, and 50% common equity. The before-tax cost of debt is 6.50%, the yield on the preferred is 6.00%, the cost of common stock is 11.25%, and the..
Is jerry conducting a business of fishing : Jerry is an accountant that loves fishing. He owns a 50-foot sports fishing boat and also has a commercial fishing license. He is dedicated about going out every other weekend for three days. Is Jerry conducting a business of fishing
Write an essay paper about increase use of medical marijuana : Write an essay paper about Increase use of medical Marijuana.
Implementation and operation of ids : The ____ contains the rules and configuration guidelines governing the implementation and operation of IDSs within the organization.
An assignment on interpersonal communication : Interpersonal Communication
Draw a scattergram and a freehand regression line : Calculate the regression line for father's score predicting daughters score - Draw a scattergram, and a freehand regression line.
Diagram and explain the life cycle of a supply chain : Diagram and explain the life cycle of a supply chain. Explain, and provide examples of, the models organizations use to manage forecasting, planning, and inventory.
Write an essay about vaule based decsion that i have made : Write an essay about "vaule based decsion that I've made".

Reviews

Write a Review

Finance Basics Questions & Answers

  How many yen could one u.s. dollar buy tomorrow

Suppose 144 yen could be purchased in the foreign exchange market for one U.S. dollar today. If the yen depreciates by 8.0% tomorrow, how many yen could one U.S. dollar buy tomorrow?

  Jpm corporation common stock has a beta of 12 the risk-free

jpm corporation common stock has a beta of 1.2. the risk-free rate is 6 and the market return is 11.a derive the risk

  How much will the firm save or lose each year in interest

How much will the firm save or lose each year in interest if the existing bonds are called and reissued?

  Establish a pre- and post-money valuation

Assume as a VC that you want to establish a pre- and post-money valuation in support of the issuance of a term sheet

  Evaluating financial aspects of the american red cross

I need some help to start in writing a 700-word paper in APA format with references evaluating financial aspects of the American Red Cross. Answering these questions

  Relationship between economic activities and bond prices

Is there a relationship between economic activities and bond prices? Explain using real world examples. Select any global market and discuss the make of its bond market to be compared with the U.S. bond market.

  During the year thefirm sold assets with a total book

the furnishings co. has ending net fixed assets of 67100and beginning net fixed assets of 43800. during the year

  What is the effective cost of borrowing in this case

Your firm has an average collection period of 27 days. Current practice is to factor all receivables immediately at a 1.70 percent discount.

  Compute the equilibrium offer price that the underwriter

1. suppose you bought a five-year zero-coupon treasury bond for 800 per 1000 face valuea. what is the rate of return on

  Determine the amount of debt outstanding

Cooper Inc's latest earnings per share (EPS) was $4.38, its book value per share was $16.00, it had 196,000 shares outstanding, and its debt ratio was 38%.

  Problem set week three complete the problems below and

problem set week three. complete the problems below and submit your work in an excel document.be sure to show all of

  Which is more relevant and why

Shanken Corp issued a 30 yr, 7% semiannual bond 7 years ago. Bond currently sells for 108 percent of its face value. Company's tax rate is 35%.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd