A. using one shared account for everyone B. sharing passwords publicly C. bypassing management approval D. a managed system of policies, processes, and controls for information security
Correct Answer: D. a managed system of policies, processes, and controls for information security
A. removing all documentation B. deleting backup copies without approval C. sharing passwords publicly D. requirements for an Information Security Management System
Correct Answer: D. requirements for an Information Security Management System
A. deleting backup copies without approval B. bypassing management approval C. general understanding of security risks and responsibilities D. ignoring risks and controls
Correct Answer: C. general understanding of security risks and responsibilities
A. allowing unlimited anonymous access B. treating all information as public C. teaching specific security skills and procedures D. deleting backup copies without approval
Correct Answer: C. teaching specific security skills and procedures
A. disabling audit logs B. deleting backup copies without approval C. deep knowledge development for security-related roles D. bypassing management approval
Correct Answer: C. deep knowledge development for security-related roles
A. protecting systems from fire, flood, temperature, and power issues B. bypassing management approval C. removing all documentation D. sharing passwords publicly
Correct Answer: A. protecting systems from fire, flood, temperature, and power issues
A. removing all documentation B. protecting facilities, equipment, and people C. deleting backup copies without approval D. treating all information as public
Correct Answer: B. protecting facilities, equipment, and people
A. deleting backup copies without approval B. choosing office wall colors C. measurable indicators of security performance D. allowing unlimited anonymous access
Correct Answer: C. measurable indicators of security performance
A. sharing passwords publicly B. ignoring risks and controls C. categorize, select, implement, assess, authorize, and monitor D. choosing office wall colors
Correct Answer: C. categorize, select, implement, assess, authorize, and monitor
A. ignoring risks and controls B. allowing unlimited anonymous access C. removing all documentation D. identifying, assessing, treating, and monitoring risk
Correct Answer: D. identifying, assessing, treating, and monitoring risk
A. bypassing management approval B. safeguards that prevent, detect, or correct security problems C. using one shared account for everyone D. sharing passwords publicly
Correct Answer: B. safeguards that prevent, detect, or correct security problems