A. a managed system of policies, processes, and controls for information security B. ignoring risks and controls C. disabling audit logs D. choosing office wall colors
Correct Answer: A. a managed system of policies, processes, and controls for information security
A. removing all documentation B. sharing passwords publicly C. requirements for an Information Security Management System D. allowing unlimited anonymous access
Correct Answer: C. requirements for an Information Security Management System
A. sharing passwords publicly B. deleting backup copies without approval C. general understanding of security risks and responsibilities D. using one shared account for everyone
Correct Answer: C. general understanding of security risks and responsibilities
A. teaching specific security skills and procedures B. ignoring risks and controls C. using one shared account for everyone D. removing all documentation
Correct Answer: A. teaching specific security skills and procedures
A. removing all documentation B. deep knowledge development for security-related roles C. deleting backup copies without approval D. bypassing management approval
Correct Answer: B. deep knowledge development for security-related roles
A. protecting systems from fire, flood, temperature, and power issues B. treating all information as public C. deleting backup copies without approval D. disabling audit logs
Correct Answer: A. protecting systems from fire, flood, temperature, and power issues
A. protecting facilities, equipment, and people B. deleting backup copies without approval C. sharing passwords publicly D. using one shared account for everyone
Correct Answer: A. protecting facilities, equipment, and people
A. using one shared account for everyone B. sharing passwords publicly C. a key performance indicator tied to security objectives D. disabling audit logs
Correct Answer: C. a key performance indicator tied to security objectives
A. bypassing management approval B. deleting backup copies without approval C. ignoring risks and controls D. measurable indicators of security performance
Correct Answer: D. measurable indicators of security performance
A. ignoring risks and controls B. categorize, select, implement, assess, authorize, and monitor C. bypassing management approval D. allowing unlimited anonymous access
Correct Answer: B. categorize, select, implement, assess, authorize, and monitor
A. deleting backup copies without approval B. disabling audit logs C. allowing unlimited anonymous access D. safeguards that prevent, detect, or correct security problems
Correct Answer: D. safeguards that prevent, detect, or correct security problems