A. sharing passwords publicly B. allowing unlimited anonymous access C. ignoring risks and controls D. a key performance indicator tied to security objectives
Correct Answer: D. a key performance indicator tied to security objectives
A. treating all information as public B. bypassing management approval C. measurable indicators of security performance D. allowing unlimited anonymous access
Correct Answer: C. measurable indicators of security performance
A. treating all information as public B. sharing passwords publicly C. categorize, select, implement, assess, authorize, and monitor D. disabling audit logs
Correct Answer: C. categorize, select, implement, assess, authorize, and monitor
A. deleting backup copies without approval B. disabling audit logs C. sharing passwords publicly D. safeguards that prevent, detect, or correct security problems
Correct Answer: D. safeguards that prevent, detect, or correct security problems
A. choosing office wall colors B. allowing unlimited anonymous access C. documented security requirements or accepted practices D. deleting backup copies without approval
Correct Answer: C. documented security requirements or accepted practices
A. allowing unlimited anonymous access B. mandatory legal obligations for protecting information C. treating all information as public D. ignoring risks and controls
Correct Answer: B. mandatory legal obligations for protecting information
A. restoring IT systems after major disruption B. removing all documentation C. deleting backup copies without approval D. using one shared account for everyone
Correct Answer: A. restoring IT systems after major disruption
A. bypassing management approval B. choosing office wall colors C. continuing critical business functions during disruption D. ignoring risks and controls
Correct Answer: C. continuing critical business functions during disruption
A. disabling audit logs B. choosing office wall colors C. preparing response and recovery before disruption occurs D. allowing unlimited anonymous access
Correct Answer: C. preparing response and recovery before disruption occurs
A. bypassing management approval B. documenting controls, responsibilities, and protection requirements C. ignoring risks and controls D. disabling audit logs
Correct Answer: B. documenting controls, responsibilities, and protection requirements