Exam Misses Flashcards
(129 cards)
Which backup process (Differential, Incremental) sets the Archive Bit to 1?
None of them. Some set it to 0:
full backup clears the archive bit, setting it to 0
differential backup doesn’t change the archive bit value
incremental backup clears the archive bit, setting it to 0
Transaction that preserves the state of the database is said to be _____
Transaction Persistent
What is the term for a discrete unit of data that makes up part of a TCP flow?
segment
What does a transponder do?
Uses radio waves to communicate with a person’s access control badge.
(not a user-activated proximity device)
Does a security architecture embody procedures?
no.
it only embodies conceptual security components
What computer component dictates when data is processed by the system’s processor?
Control Unit (not registers)
Data is held in registers until it’s turn to access CPU
ALU is part of CPU that does math
What is the discrete unit of data at the network layer?
packet
What is the discrete unit of data at the transport layer for UDP?
Datagram
How do you calculate residual risk?
(Threats x Vulnerability x Asset Value) x Controls Gap
Does risk analysis produce countermeasures and their costs?
No
Risk Analysis focuses on the problem not the solution.
The result may justify a security budget but it doesn’t concern itself with them, only the measurement of risk
Does the Orange Book work with protection ratings, which are well suited for the commercial industry?
No.
It’s classification scheme is developed for the DoD
During the Acceptance Testing / Implementation phase of the SDLC, is the product used within the intended environment?
No.
Product is not used in production until the lifecycle reaches operations/maintenance phase
What 3 levels describe where parallel computing can occur?
bit, instruction, task
Is this the correct order for the change management sequence?
RADTIR
request, approve, document, test, implement, report
yes
What is California 1386?
Personal Information Privacy law (regulatory directive)
What are 7 steps of creating a DR Plan?
Develop contingency plan Conduct BIA Identify Preventive controls Create Contingency Strategies Develop IS Contingency Plan Ensure plan testing, training, exercises Ensure Plan Maintenance
Contingency Plan
BIA
Preventive
Contingency Strategies
IS Contingency Plan
Plan Testing, Training, Exercises
Maintenance
How many domains does COBIT have?
4
ISO/IEC 27001
ISMS Requirements
based on British BS7799 Part 2
ISO/IEC 27002
Code of practice for ISMS
Provides best practice recommendations, guidelines
Initially based on British BS7799 Part 1
ISO/IEC 27004
ISMS measurement and metrics framework
Provides guidance on development, use of measures and measurements
ISO/IEC 27005
ISMS Risk Management
International standard for how risk mgmt should be done in the framework of an ISMS
ISO/IEC 27006
Certification Requirements
ISO/IEC 27799
Health Organizations
ISO/IEC 27003
Implementation