Search Header Logo
Info Sec Managment L4-Security Standards, Frameworks & Reg

Info Sec Managment L4-Security Standards, Frameworks & Reg

Assessment

Presentation

•

Computers

•

University

•

Hard

Created by

Jerry Jackson Bent

Used 1+ times

FREE Resource

33 Slides • 18 Questions

1

media

2

media

3

media

4

media

5

media

6

Open Ended

How do governance, risk management, and compliance work together to protect an organization?

7

Multiple Choice

Why is it important for organizations to follow security standards and regulations?

1

To ensure the safety of their employees only

2

To avoid unnecessary expenses

3

To protect sensitive information and maintain trust

4

To increase the number of policies

8

Multiple Choice

Which step in implementing a security governance system involves determining who is responsible for security within an organization?

1

Define governance structure

2

Develop policies

3

Identify and assess risks

4

Monitor performance

9

media

10

Multiple Select

Which of the following are key reasons why laws and regulations are mandatory for organisations?

1

To avoid penalties

2

To ensure compliance

3

To improve technical skills

4

To protect organisational assets

11

12

13

Open Ended

Discuss how Governance, Risk and Compliance (GRC) roles differ from technical roles in an organization.

14

media

15

media

16

media

17

Multiple Choice

What is the primary purpose of security controls in an organization?

1

To monitor employee performance

2

To protect assets from unauthorized access, theft, damage, or disruption

3

To develop company policies

4

To align IT processes with business goals

18

Multiple Choice

Which of the following is an example of a logical security control?

1

User account reviews

2

Encryption

3

Locks

19

media

20

media

21

media

22

media

23

media

24

media

25

Fill in the Blank

Fill in the blank: Security standards are usually developed by recognised ______ bodies.

26

Multiple Choice

Which of the following is NOT an objective of the Payment Card Industry Data Security Standards (PCI DSS)?

1

Protect cardholder data when it is stored and in transit

2

Maintain a vulnerability management programme

3

Increase the speed of card transactions

27

Multiple Choice

What is the full meaning of FIPS?

1

Federal Information Processing Standards

2

Finding Information Processing Security

3

Federal Information Protection Standards

28

media

29

media

30

media

31

media

32

media

33

media

34

Open Ended

Explain why frameworks are important in cybersecurity and provide one example of a commonly used framework.

35

Fill in the Blank

The NIST Cybersecurity Framework is a voluntary, ___-based framework designed to help organizations manage and reduce cybersecurity risk.

36

Multiple Choice

Which of the following is NOT one of the three main parts of the NIST Cybersecurity Framework (CSF)?

1

Core

2

Implementation Tiers

3

Profiles

4

Controls

37

media

38

media

39

media

40

media

41

media

42

Fill in the Blank

The Identify function in the NIST CSF helps organizations understand what assets they have, what data they hold, and what ___ they face.

43

Multiple Select

Select 2 key activities of the Protect function in the NIST CSF?

1

Incident response planning

2

Awareness and training

3

Data security

44

Multiple Choice

What is the main purpose of the Respond function in the NIST CSF?

1

To prevent cybersecurity incidents from occurring

2

To contain and manage incidents once they occur

3

To recover from incidents

45

media

46

media

47

media

48

media

49

Multiple Choice

Which of the following best describes the concept of 'risk' in information security?

1

The obligation to follow laws and regulations

2

The possibility that a threat will exploit a vulnerability and cause harm

3

Decision-making authority and oversight

4

Acceptable behaviour and security expectations

50

Open Ended

Summarize one key difference between security governance and security management based on what you learned in this lesson.

51

media
media

Show answer

Auto Play

Slide 1 / 51

SLIDE