A. allowing unlimited anonymous access B. setting long-term security goals aligned with business priorities C. sharing passwords publicly D. treating all information as public
Correct Answer: B. setting long-term security goals aligned with business priorities
A. using one shared account for everyone B. allowing unlimited anonymous access C. disabling audit logs D. defining ownership and accountability for security activities
Correct Answer: D. defining ownership and accountability for security activities
A. bypassing management approval B. coordinating people, process, and technology to reduce risk C. allowing unlimited anonymous access D. using one shared account for everyone
Correct Answer: B. coordinating people, process, and technology to reduce risk
A. removing all documentation B. allowing unlimited anonymous access C. ignoring risks and controls D. assigning roles, duties, and governance responsibilities
Correct Answer: D. assigning roles, duties, and governance responsibilities
A. sharing passwords publicly B. assigning sensitivity levels to information and systems C. removing all documentation D. bypassing management approval
Correct Answer: B. assigning sensitivity levels to information and systems
A. identifying, owning, classifying, and protecting valuable resources B. ignoring risks and controls C. treating all information as public D. choosing office wall colors
Correct Answer: A. identifying, owning, classifying, and protecting valuable resources
A. ignoring risks and controls B. deleting backup copies without approval C. removing all documentation D. a high-level management statement for information security
Correct Answer: D. a high-level management statement for information security
A. choosing office wall colors B. allowing unlimited anonymous access C. ignoring risks and controls D. aligning protection requirements with organizational objectives
Correct Answer: D. aligning protection requirements with organizational objectives
A. allowing unlimited anonymous access B. sharing passwords publicly C. deleting backup copies without approval D. collecting, processing, storing, and distributing information
Correct Answer: D. collecting, processing, storing, and distributing information