A. sharing passwords publicly B. deleting backup copies without approval C. disabling audit logs D. a managed system of policies, processes, and controls for information security
Correct Answer: D. a managed system of policies, processes, and controls for information security
A. requirements for an Information Security Management System B. choosing office wall colors C. sharing passwords publicly D. allowing unlimited anonymous access
Correct Answer: A. requirements for an Information Security Management System
A. removing all documentation B. treating all information as public C. sharing passwords publicly D. general understanding of security risks and responsibilities
Correct Answer: D. general understanding of security risks and responsibilities
A. using one shared account for everyone B. choosing office wall colors C. ignoring risks and controls D. deep knowledge development for security-related roles
Correct Answer: D. deep knowledge development for security-related roles
A. bypassing management approval B. deleting backup copies without approval C. protecting systems from fire, flood, temperature, and power issues D. choosing office wall colors
Correct Answer: C. protecting systems from fire, flood, temperature, and power issues
A. removing all documentation B. ignoring risks and controls C. a key performance indicator tied to security objectives D. using one shared account for everyone
Correct Answer: C. a key performance indicator tied to security objectives
A. measurable indicators of security performance B. using one shared account for everyone C. allowing unlimited anonymous access D. deleting backup copies without approval
Correct Answer: A. measurable indicators of security performance
A. categorize, select, implement, assess, authorize, and monitor B. choosing office wall colors C. deleting backup copies without approval D. disabling audit logs
Correct Answer: A. categorize, select, implement, assess, authorize, and monitor
A. identifying, assessing, treating, and monitoring risk B. ignoring risks and controls C. bypassing management approval D. treating all information as public
Correct Answer: A. identifying, assessing, treating, and monitoring risk
A. safeguards that prevent, detect, or correct security problems B. removing all documentation C. sharing passwords publicly D. allowing unlimited anonymous access
Correct Answer: A. safeguards that prevent, detect, or correct security problems