Computer Science  >  EXAM  >  SEC360 Week 8 Final Exam | questions with accurate solutions (All)

SEC360 Week 8 Final Exam | questions with accurate solutions

Document Content and Description Below

Week 8: Final Exam SEC360 Note: The text in the right column are the post exam sample answers used to help you compare your answers with. 1 (TCO 1) Security policy contains three kinds of rules as ... policy clauses. What are they? Preventive, detective, and responsive Prohibitive, permissive, and mandatory Administrative, technical, and physical Management, technical, and operational Roles, responsibilities, and exemptions (Lecture Week 1, page 70 and Appendix C in the text) Controls are implemented using administrative, technical, and physical methods. 2 (TCO 2) The _____ of the 17 NIST control _____ can be placed into the 10 IISSCC _____ comprising the common body of knowledge for information security. technologies, domains, families controls, families, domains domains, families, technologies principles, domains, families controls, domains, principles (Lecture, Chapter 3 in the text) There are many controls that are grouped into control families that fit into the 10 domains. 3 (TCO 2) What are the classes of security controls? Detection, prevention, and response Management, technical, and operational Administrative, technical, and physical Administrative, technical, and procedural You will also find controls arranged by class in standards documents, where these classes are called management, technical, and operational. (Lecture Week 1) 4 (TCO 3) Three of the most important jobs of security management are to ensure _____ are organized according to sensitivity, ensure that roles maintain _____, and to manage _____ because that is the enemy of security. assets, accountability, software assets, separation of duties, complexity software, separation of duties, complexity software, accountability, people people, separation of duties, technology Chapters 2, 3, and 4 in the text, lecture 5 (TCO 4) "There shall be a way for an individual to correct information in his or her records" is a clause that might be found in a _____. law code of ethics corporate policy fair information practices statement Any of the above (Chapter 7 in text, lecture) Similar statements are found in examples of each of these, although though for nonlegal, nonpolicy documents, many times "shall" is replaced by "will," "must be able to," or some other phrase. [Show More]

Last updated: 3 years ago

Preview 1 out of 6 pages

Buy Now

Instant download

We Accept:

Payment methods accepted on Scholarfriends (We Accept)
Preview image of SEC360 Week 8 Final Exam | questions with accurate solutions document

Buy this document to get the full access instantly

Instant Download Access after purchase

Buy Now

Instant download

We Accept:

Payment methods accepted on Scholarfriends (We Accept)

Reviews( 0 )

$8.00

Buy Now

We Accept:

Payment methods accepted on Scholarfriends (We Accept)

Instant download

Can't find what you want? Try our AI powered Search

68
0

Document information


Connected school, study & course


About the document


Uploaded On

Oct 29, 2022

Number of pages

6

Written in

All

Seller


Profile illustration for Dr Medina Reed
Dr Medina Reed

Member since 4 years

57 Documents Sold

Reviews Received
9
0
2
1
4
Additional information

This document has been written for:

Uploaded

Oct 29, 2022

Downloads

 0

Views

 68

Document Keyword Tags

More From Dr Medina Reed

View all Dr Medina Reed's documents »

Recommended For You

Get more on EXAM »

$8.00
What is Scholarfriends

Scholarfriends.com Online Platform by Browsegrades Inc. 651N South Broad St, Middletown DE. United States.

We are here to help

We're available through e-mail, Twitter, Facebook, and live chat.
 FAQ
 Questions? Leave a message!

Follow us on
 Twitter

Copyright © Scholarfriends · High quality services·