Which of the following is NOT a component of an IT policy framework?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 3 đề thi
When a catastrophic security breach occurs, who is responsible for assessing the impact, minimizing damage, and coordinating the remediation process, such as identifying compromised data, quantifying data loss, and pinpointing affected data subjects?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 3 đề thi
An intrusion detection system (IDS) recognizes a network attack, stops the attack, and sends an alert, while an intrusion prevention system (IPS) recognizes a network attack and sends an alert.🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 3 đề thi
What kind of committees are used for policy enforcement at the organizational level?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 3 đề thi
The __________ of defense is the independent auditor.🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 3 đề thi
Which of the following is not a component of the three-lines-of-defense model in risk management?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 3 đề thi
Where is a demilitarized zone (DMZ) usually located?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 3 đề thi
In general, what does remote authentication typically offer?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 3 đề thi
Which of the following can you use to segment LANs?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 3 đề thi
In the event of a severe security breach, who is ultimately responsible, according to regulators and the public?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
Why is the language in HR policies frequently deliberately ambiguous?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
What is applicable to both GRC and ERM among the following?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
In which of the following areas might a company monitor its employees' actions?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
An operating system and different applications are installed on a system. The system is then locked down with various settings. You want the same operating system, applications, and settings deployed to 50 other computers. What's the easiest way?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
What is the difference between a BCP and a DRP?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
How important is it to identify the attacker before issuing a final IRT report?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
What is the difference between risk appetite and risk tolerance?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
Which of the following factors is the most likely to necessitate security awareness?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
An organization wants to reduce the possibility of outages when changes are implemented on the network. What should the organization use?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi
A DMZ separates a LAN from which of the following?🔒 Đáp án trong Source VIPIAP301Đã xuất hiện trong 2 đề thi