Search Header Logo

Sec+ 701 Domain 5 Quiz

Authored by Prem Jadhwani

Information Technology (IT)

Professional Development

Used 8+ times

Sec+ 701 Domain 5 Quiz
AI

AI Actions

Add similar questions

Adjust reading levels

Convert to real-world scenario

Translate activity

More...

    Content View

    Student View

18 questions

Show all answers

1.

MATCH QUESTION

2 mins • 1 pt

Match the policies/documents with the correct definition.

IRP

Plan we use to ensure we maintain operational availability.

AUP

A step-by-step guide that shows us how to respond to specific incidents.

BCP

Plan we use to respond to natural disasters.

Playbook

Document that an employee signs before touching any IT asset at our company.

DRP

Plan we use to respond to someone attacking us.

2.

MATCH QUESTION

2 mins • 1 pt

Match the following terms.

Job Rotation

A policy that ensures we train employees across multiple positions - helping us detect fraud.

Separation of Duties

A process that we use in our organization to implement modifications to processes and procedures.

Change Management

A policy that detects and prevents fraud by splitting up duties in sensitive processes.

Least Privilege

A policy that ensures all employees only get the accesses and permissions they need to do their job.

NIST

An organization that provides standards for basic security hygiene.

3.

MATCH QUESTION

2 mins • 1 pt

Match the development terms.

Agile

Process we use to properly create software.

Static

Analysis performed on code while a program is running.

Dynamic

Analysis performed on code at a stand-still.

Waterfall

Software model that can only go forward.

SDLC

Software model that can go forward and backward.

4.

MATCH QUESTION

2 mins • 1 pt

Match the following

CI/CD

A tool we use to inject random input into a program for testing.

Code Repository

A process that allows us to integrate and deploy code faster.

Version Control System

Code in a program that does not execute when the program runs.

Fuzzing

A place where we can store different versions of our code.

Dead Code

A software tool that will track changes and revisions in a software version.

5.

MATCH QUESTION

2 mins • 1 pt

Match the following laws.

GDPR

The "Right to be forgotten" law that observes the privacy of a persons right to be removed from the internet.

ISO 27701

Standard that requires a company to handle PII data in a private manner.

ISO 27002

Requires a company to set up an ISMS if they deal with infosec.

ISO 27001

Law that requires a company to handle credit card/debit card data in secure way.

PCI DSS

Supporting document that provides security controls to help set up an ISMS.

6.

MATCH QUESTION

2 mins • 1 pt

Match the following compliance terms.

Reputation Damage

Term that tells a company they must adhere to laws int he geographical area in which it operates.

Due Diligence

The requirement for a company to conduct their own research on applicable laws and regulations.

Data Retention

The biggest concern of noncompliance.

Data Sovereignty

A term that defines a length of time in which a government entity has directed we must keep data for.

Fines

The most common result of noncompliance.

7.

MATCH QUESTION

2 mins • 1 pt

Match the following data governance terms.

Data Controller

Person in company responsible for making sure our data policies meet regulatory law.

Data Protection Officer

Person in company who directly handles the data and enforces data policy.

Data Processor

Department in company that maintains the infrastructure that houses any data.

Data Custodian

Person in a company responsible for creating policies about how we handle data.

Data Owner

Person in company who keeps a complete inventory of all data.

Access all questions and much more by creating a free account

Create resources

Host any resource

Get auto-graded reports

Google

Continue with Google

Email

Continue with Email

Microsoft

Continue with Microsoft

or continue with

Facebook

Facebook

Apple

Apple

Others

Others

Already have an account?