MCQ Bank
______________are the key people who will have to ensure that security is effective and smoothly operated
- A) executive management
- B) technology providers
- C) users
- D) IS security professionals
Logical intrusion is also known as_____________
- A) Wrecking
- B) Hacking
- C) Firewalls
- D) Antivirus
An IT enabled organization that involves the radical re-conceptualization of the business needs _____ for possible threat invasion
- A) Data backup
- B) Control recommendation
- C) Business continuity plan
- D) Impact analysis plan
Risk impact assessment should focus on consequences affecting _______
- A) Marketing, costing, staffing
- B) Planning, resources, cost, schedule
- C) Business, technology, process
- D) Performance, cost, schedule
The protection of information from unauthorized disclosure explains the concept of system and data ______________.
- A) Confidentiality
- B) Reliability
- C) Completeness
- D) Consistency
Which of the following phase determines that a potential vulnerability could be exercised by a given threat source?
- A) Impact analysis
- B) Risk resilience
- C) Likelihood determination
- D) Intelligence
Under which of the following agreement, two or more organizations agree to provide backup facilities to each other in case of one suffering from a disaster.
- A) Joint
- B) Cooperative
- C) Mutual
- D) Reciprocal
Which of the following focuses on detecting potentially abnormal behavior in function of operating system or request made by application software?
- A) Biometrics
- B) Scanners
- C) Behavior blockers
- D) Passwords
Confidentiality of information system means
- A) information systems are available and usable when required
- B) data & information are easily available to everyone
- C) data and information are protected against authorized modification
- D) data and information are disclosed only to those who have a right to know it
Which of the following refers to damage caused to the software and data without any physical damage to the computers?
- A) Physical Threat
- B) Virus
- C) Worm
- D) Logical Threat
__________ site backup is an appropriate choice for organizations if fast recovery is critical.
- A) Warm
- B) Cold
- C) Cool
- D) Hot
Which of the following software performs concurrent monitoring as the system is being used?
- A) Passive Scanners
- B) Active Scanners
- C) Passive Monitors
- D) Active Monitors
Which of the following phase determines the adverse impact resulting from a successful threat exercise of vulnerability?
- A) Impact analysis
- B) Monitoring threats
- C) Risk resilience
- D) Likelihood determination
Which of the following is a logical record of computer activities, usage, processing pertaining to an operating or application system or user activities?
- A) Audit Trial
- B) Audit Control
- C) Control Log
- D) Control Trial
A bad sector on the hard drive is an example of ________ threat.
- A) Physical
- B) Logical
- C) Lexical
- D) Fatal
Which of the following is not a name used for an intruder?
- A) Hacktivist
- B) Knacker
- C) Cracker
- D) Hacker
Which of the following is a weakness that can be accidentally triggered or intentionally exploited?
- A) Audit Trial
- B) Vulnerability
- C) Threat Identification
- D) Likelihood Identification
Control assessment analysis process does not include_____________
- A) Checking of control reliability
- B) Checking of control planned
- C) Checking of control implemented
- D) Checking of control Motivation
Risk projection attempts to rate risk in two ways
- A) Likelihood and mitigation
- B) Likelihood and size
- C) Likelihood and impact
- D) Likelihood and size
Automated tools can be used to
- A) Threat identification
- B) Information elicitation
- C) On site reviews
- D) Maintain system integrity