A. using one shared account for everyone B. a managed system of policies, processes, and controls for information security C. deleting backup copies without approval D. removing all documentation
Correct Answer: B. a managed system of policies, processes, and controls for information security
A. sharing passwords publicly B. requirements for an Information Security Management System C. disabling audit logs D. allowing unlimited anonymous access
Correct Answer: B. requirements for an Information Security Management System
A. deleting backup copies without approval B. ignoring risks and controls C. general understanding of security risks and responsibilities D. removing all documentation
Correct Answer: C. general understanding of security risks and responsibilities
A. deleting backup copies without approval B. allowing unlimited anonymous access C. using one shared account for everyone D. teaching specific security skills and procedures
Correct Answer: D. teaching specific security skills and procedures
A. ignoring risks and controls B. deep knowledge development for security-related roles C. using one shared account for everyone D. bypassing management approval
Correct Answer: B. deep knowledge development for security-related roles
A. protecting systems from fire, flood, temperature, and power issues B. bypassing management approval C. using one shared account for everyone D. disabling audit logs
Correct Answer: A. protecting systems from fire, flood, temperature, and power issues
A. treating all information as public B. ignoring risks and controls C. disabling audit logs D. a key performance indicator tied to security objectives
Correct Answer: D. a key performance indicator tied to security objectives
A. bypassing management approval B. choosing office wall colors C. measurable indicators of security performance D. allowing unlimited anonymous access
Correct Answer: C. measurable indicators of security performance
A. sharing passwords publicly B. categorize, select, implement, assess, authorize, and monitor C. treating all information as public D. bypassing management approval
Correct Answer: B. categorize, select, implement, assess, authorize, and monitor
A. bypassing management approval B. treating all information as public C. identifying, assessing, treating, and monitoring risk D. choosing office wall colors
Correct Answer: C. identifying, assessing, treating, and monitoring risk
A. deleting backup copies without approval B. safeguards that prevent, detect, or correct security problems C. bypassing management approval D. using one shared account for everyone
Correct Answer: B. safeguards that prevent, detect, or correct security problems