100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached
logo-home
CISSP- FinalRevie Questions and Correct Answers the Latest Update $14.49   Add to cart

Exam (elaborations)

CISSP- FinalRevie Questions and Correct Answers the Latest Update

 2 views  0 purchase
  • Course
  • CISSP
  • Institution
  • CISSP

Which of the following would be an example of a policy statement? A. Protect PII by hardening servers B. Harden Windows 7 by first installing the pre-hardened OS image C. You may create a strong password by choosing the first letter of each word in a sentence and mixing in numbers and symbols ...

[Show more]

Preview 4 out of 80  pages

  • November 8, 2024
  • 80
  • 2024/2025
  • Exam (elaborations)
  • Questions & answers
  • CISSP
  • CISSP
avatar-seller
TestTrackers
TestTrackers: Unlock Your Exam Potential! | Quality Practice Materials | Boost Your Confidence Today!



CISSP- FinalRevie Questions and Correct
Answers the Latest Update w
Which of the following would be an example of a policy statement?

A. Protect PII by hardening servers

B. Harden Windows 7 by first installing the pre-hardened OS image

C. You may create a strong password by choosing the first letter of each word in a sentence

and mixing in numbers and symbols

D. Download the CISecurity Windows benchmark and apply it

✓ A. Protect PII by hardening servers (Policy)

✓ Policies describe security in general terms, not specifics. They provide the blueprints for an
overall security program just as a specification defines your next product.



✓ B. Harden is procedure

✓ C. Guideline

✓ D. Baseline



Which of the following describes the money saved by implementing a security control?

A. Total Cost of Ownership

B. Asset Value

C. Return on Investment

D. Control Savings




|
✓ Thank You for Choosing Us! ✓ Resources & Updates: [Testtrackers - Stuvia US]
✓ © 2024 TestTrackers ✓ Your Success is Our Mission!
✓ Customer Support: [+254707240657]

, TestTrackers: Unlock Your Exam Potential! | Quality Practice Materials | Boost Your Confidence Today!


✓ C. Return on Investment (ROI)



✓ A. TCO- Cost to implement

✓ B. AV- Cost of asset

✓ D. is ROI but not proper term



Which of the following is an example of program policy?

A. Establish the information security program

B. Email Policy

C. Application development policy

D. Server policy

✓ A. Establish the information security program



✓ B-D- Specific issue policies not a program



Which of the following proves an identity claim?

A. Authentication

B. Authorization

C. Accountability

D. Auditing




|
✓ Thank You for Choosing Us! ✓ Resources & Updates: [Testtrackers - Stuvia US]
✓ © 2024 TestTrackers ✓ Your Success is Our Mission!
✓ Customer Support: [+254707240657]

, TestTrackers: Unlock Your Exam Potential! | Quality Practice Materials | Boost Your Confidence Today!


✓ A. Authentication



✓ Authorization describes the actions a subject is allowed to take.

✓ Accountability holds users accountable by providing audit data.

✓ Auditing verifies compliance with an information security framework.



Which of the following protects against unauthorized changes to data?

A. Confidentiality

B. Integrity

C. Availability

D. Alteration

✓ B. Integrity



✓ Confidentiality protects against unauthorized disclosure of data.

✓ Availability means systems are available for normal business use.

✓ Alteration is unauthorized changes to data: the opposite of integrity.



Use the following scenario to answer questions 6-8:

Your company sells Apple iPods online and has suffered many denial of service (DoS) attacks.

Your company makes an average $20,000 profit per week, and a typical DoS attack lowers

sales by 40%. You suffer seven DoS attacks on average per year. A DoS-mitigation service is

available for a subscription fee of $10,000 per month. You have tested this service, and

believe it will mitigate the attacks.



|
✓ Thank You for Choosing Us! ✓ Resources & Updates: [Testtrackers - Stuvia US]
✓ © 2024 TestTrackers ✓ Your Success is Our Mission!
✓ Customer Support: [+254707240657]

, TestTrackers: Unlock Your Exam Potential! | Quality Practice Materials | Boost Your Confidence Today!




What is the Annual Rate of Occurrence in the above scenario?

A. $20,000

B. 40%

C. 7

D. $10,000

✓ C. 7 (Know term ARO is amount attacks/year)



✓ All others do not apply



Use the following scenario to answer questions 6-8:

Your company sells Apple iPods online and has suffered many denial of service (DoS) attacks.

Your company makes an average $20,000 profit per week, and a typical DoS attack lowers

sales by 40%. You suffer seven DoS attacks on average per year. A DoS-mitigation service is

available for a subscription fee of $10,000 per month. You have tested this service, and

believe it will mitigate the attacks.




What is the annualized loss expectancy (ALE) of lost iPod sales due to the DoS attacks?

A. $20,000

B. $8000

C. $84,000



|
✓ Thank You for Choosing Us! ✓ Resources & Updates: [Testtrackers - Stuvia US]
✓ © 2024 TestTrackers ✓ Your Success is Our Mission!
✓ Customer Support: [+254707240657]

The benefits of buying summaries with Stuvia:

Guaranteed quality through customer reviews

Guaranteed quality through customer reviews

Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.

Quick and easy check-out

Quick and easy check-out

You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.

Focus on what matters

Focus on what matters

Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!

Frequently asked questions

What do I get when I buy this document?

You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.

Satisfaction guarantee: how does it work?

Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.

Who am I buying these notes from?

Stuvia is a marketplace, so you are not buying this document from us, but from seller TestTrackers. Stuvia facilitates payment to the seller.

Will I be stuck with a subscription?

No, you only buy these notes for $14.49. You're not tied to anything after your purchase.

Can Stuvia be trusted?

4.6 stars on Google & Trustpilot (+1000 reviews)

80467 documents were sold in the last 30 days

Founded in 2010, the go-to place to buy study notes for 14 years now

Start selling
$14.49
  • (0)
  Add to cart