A. disabling audit logs B. bypassing management approval C. assigning sensitivity levels to information and systems D. allowing unlimited anonymous access
Correct Answer: C. assigning sensitivity levels to information and systems
A. disabling audit logs B. ignoring risks and controls C. choosing office wall colors D. identifying, owning, classifying, and protecting valuable resources
Correct Answer: D. identifying, owning, classifying, and protecting valuable resources
A. using one shared account for everyone B. ignoring risks and controls C. a detailed set of steps to implement a policy D. bypassing management approval
Correct Answer: C. a detailed set of steps to implement a policy
A. using one shared account for everyone B. removing all documentation C. a high-level management statement for information security D. disabling audit logs
Correct Answer: C. a high-level management statement for information security
A. choosing office wall colors B. removing all documentation C. using one shared account for everyone D. aligning protection requirements with organizational objectives
Correct Answer: D. aligning protection requirements with organizational objectives
A. collecting, processing, storing, and distributing information B. choosing office wall colors C. treating all information as public D. bypassing management approval
Correct Answer: A. collecting, processing, storing, and distributing information
A. allowing unlimited anonymous access B. sharing passwords publicly C. choosing office wall colors D. a managed system of policies, processes, and controls for information security
Correct Answer: D. a managed system of policies, processes, and controls for information security
A. choosing office wall colors B. sharing passwords publicly C. requirements for an Information Security Management System D. bypassing management approval
Correct Answer: C. requirements for an Information Security Management System
A. treating all information as public B. sharing passwords publicly C. disabling audit logs D. general understanding of security risks and responsibilities
Correct Answer: D. general understanding of security risks and responsibilities
A. deleting backup copies without approval B. deep knowledge development for security-related roles C. disabling audit logs D. choosing office wall colors
Correct Answer: B. deep knowledge development for security-related roles
A. disabling audit logs B. protecting systems from fire, flood, temperature, and power issues C. treating all information as public D. removing all documentation
Correct Answer: B. protecting systems from fire, flood, temperature, and power issues