ITN 262 Chapter 1 Test Questions with All Correct Answers
4 views 0 purchase
Course
ITN 262
Institution
ITN 262
ITN 262 Chapter 1 Test Questions with All Correct Answers
Four major elements of profiling threat agents; - Answer- Goals
Typical MO
Level of motivation
Capabilities and logistical constraints
Risk assessment for a large-scale system may require detailed profiles of the threat agents. a...
ITN 262 Chapter 1 Test Questions
with All Correct Answers
Four major elements of profiling threat agents; - Answer- Goals
Typical MO
Level of motivation
Capabilities and logistical constraints
Risk assessment for a large-scale system may require detailed profiles of the threat
agents. a basic profile of a threat agent as follows: - Answer- Title
Overview
Goals
Mode of operation
Level of motivation
Capabilities and constraints
References
Type of attacks: data that should be kept confidential is disclosed. an attack on
confidentiality. - Answer- disclosure
Type of attacks: software has been damaged, or at least modified; injuring system
behavior - Answer- Subverision
Two types of integrity attacks: - Answer- Forgery & Masquerade
The attacker constructs or modifies a message that directs the computer's behavior. -
Answer- Forgery
The attack takes on the identity of a legitimate computer user, and the computer treats
the attacker's behavior as if performed by the user. - Answer- Masquerade
attacks in which the attacker triggers an intrusion defense that also blocks access by
the target's system administrators. - Answer- Lockout attack
_____ or ____ poses the ultimate DOS attack. - Answer- Physical theft
damage
a person takes on the identity of another when using a computer - Answer- masquerade
, someone composes a bogus message and sends it to a computer ( e.g., a bogus order
sends merchandise to the wrong recipient.) - Answer- Forgery
A program is modified to operate on the behalf of a threat agent - Answer- Subversion
The Risk Management Framework (RMF) is? - Answer- a way to assess cybersecurity
risks when developing large-scale computer systems.
What are the six steps in Risk Management Framework (RMF)? - Answer- 1.
Categorize the information
2. Select Security controls
3. Implement security controls
4. Assess Security controls
5. Authorize the information system
6. Monitor security controls
Proprietor's RMF four steps? - Answer- A. Establish system and security goals
B. Select security controls
C. Validate information system
D. Monitor security controls
The simplest way to address a security problem is? - Answer- the rule-based
approached.
Why NIST developed the Risk Management Framework? - Answer- to provide rules by
which government agencies can assess their risks and construct a list of security
requirements.
- applies to individual systems and systems built of multiple systems.
SCADA - Answer- Supervisory Control and Data Acquisition
SP 800-30 - Answer- Guide for Conducting Risk Assessments
SP 800-37 - Answer- Guide for Applying the Risk Management Framework to Federal
Information Systems
FIPS 199 - Answer- Standards for Security Categorization of Federal Information and
Information Systems
SP 800-60 - Answer- Guide for Mapping Types of Information and Information Systems
to Security Categories
SP 800-53 - Answer- Security and Privacy Controls for Federal Information Systems
and Organizations
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller Scholarsstudyguide. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $12.39. You're not tied to anything after your purchase.