Security Objectives in Cybersecurity are best summarized as a CIA trifecta: Confidentiality, Integration, and Availability. Group of answer choices True False
Added by Henry F.
Step 1
The CIA triad consists of three key principles: Confidentiality, Integrity, and Availability. Show more…
Show all steps
Your feedback will help us improve your experience
Akash M and 89 other AP CS educators are ready to help you.
Ask a new question
Labs
Want to see this concept in action?
Explore this concept interactively to see how it behaves as you change inputs.
Key Concepts
Recommended Videos
1. Agile Threat Modeling demands that you make sure your threat model fully depicts every single possible threat. • A. True • B. False 2. What type of regulation is this? Software platforms and applications within the organization are inventoried. • A. Rules-Based • B. Outcome-Based 3. Security Checklists like the DISA STIGs and CIS help: ☐ A. Prevent the recurrence of commonly missed security issues ☐ B. Identify advanced persistent threats. ☐ C. Address threats not previously discovered. ☐ D. Avoid a narrow set of modeled threats. 4.. The user name and password for the database connection is embedded in clear text in the source code. Which threat(s) exists in this situation. ☐ A. Elevation of Privilege ☐ B. Information Disclosure ☐ C. Spoofing ☐ D. Tampering 5. Preventive controls are designed to warn the potential attacker away from attacking. • True • False 6. Select the attack surfaces that are relevant to assessing threats to your systems: ☐ A. Every possible way that data and commands are processed by your system. ☐ B. News media ☐ C. Every network endpoint on the network. ☐ D. People that designed, built, operate and support the system. 7. The developers of your new healthcare medical records up spun up the development infrastructure (web server, etc.) in Amazon Web Services. They ran penetration tests against the web application. No other security review of AWS infrastructure is necessary. • A. True • B. False 8. If a software vulnerability cannot be patched, one way to mitigate the risk is to harden the systems using a secure configuration standard or checklist. • A. True • B. False
Akash M.
Question 15 Ali must grant access to any individual or group he wants to allow access to the files he owns. Which access control type is in use in Ali's organization? Discretionary Access Control (DAC) Mandatory Access Control (MAC) Hierarchical Access Control (HAC) Role-Based Access Control (RBAC) Question 16 A Windows 10 user has 10 files with exactly the same name. Which statement must be true for these files? The files may be on the same hard drive but must be in different partitions The files must be in different directories. The files may be in the same directory. The files must be on different hard drives. Question 17 Which three (3) permissions can be set on a file in Linux? (Select 3) run view read write modify execute Question 18 If cost is the primary concern, which type of cloud should be considered first? Hybrid cloud Universal cloud Private cloud Public cloud Question 19 Consolidating and virtualizing workloads should be done when? It does not matter; these steps require approximately the same amount of work no matter when you elect to do them. After moving the workloads to the cloud but before they are open to users. Gradually as you generate usage metrics. Before moving the workloads to the cloud. Question 20 Which of the following is a self-regulating standard set up by the credit card industry in the US? PCI-DSS GDPR HIPAA NIST 800-53A ISO27000 series Question 21 Which two (2) of the following attack types target endpoints? SQL Injection Spear Phishing Denial of Service (DoS) Ad Network
Aparna S.
Question 31 (2 points) _________ occurs when an unauthorized individual attempts to gain illegal access to organizational information. Question 31 options: 1) Alien software 2) Identity theft 3) Espionage 4) Information extortion Question 32 (2 points) A _________ is an intellectual work that is not based on public information. Question 32 options: 1) trade secret 2) copyright 3) trademark 4) patent Question 33 (2 points) What step in the general framework for ethics considers understanding the relevant facts of the situation, having sufficient information, and ensuring the relevant persons and groups have been consulted? Question 33 options: 1) Make a decision and test it 2) Act and reflect on the outcome of your decision 3) Get the facts 4) Evaluate alternative actions Question 34 (2 points) _________ is a legal concept that gives individuals the right to recover the damages done to them by other individuals, organizations, or systems. Question 34 options: 1) Answerability 2) Responsibility 3) Liability 4) Accountability Question 35 (2 points) Which step in the general framework for ethics considers all of the approaches and asks which option best addresses the situation? Question 35 options: 1) Get the facts 2) Act and reflect on the outcome of your decision 3) Evaluate alternative actions 4) Make a decision and test it
James K.
Recommended Textbooks
Computer Science and Information Technology
Introduction to Programming Using Python
Computer Science - An Overview
Transcript
Watch the video solution with this free unlock.
EMAIL
PASSWORD