Font size
WorksheetsMidTerm Trivia Quiz Module 1-4
Total questions: 20
Worksheet time: 15mins
Defense is the risk control strategy that attempts to prevent the exploitation of a vulnerability.
True
False
Which document describes how, in the event of a disaster, critical business functions continue at an alternate location while the organization recovers its ability to function at the primary site.
(a)
Name the three critical elements of the C.I.A triad
(a)
A targeted solution to misuse a specific vulnerability is called an (a)
(a) is the protection of the confidentiality, integrity, and availability of information
What group is responsible for the overall planning and development of the contingency planning process?
(a)
What law attempts to protect the confidentiality and security of healthcare data by establishing and enforcing standards?
(a)
What is the term for the information about a person that can be used to commit identity theft (for example: name, address, SSN)?
(a)
The point in time to which lost systems and data can be recovered after an outage as determined by the business unit.
(a)
What is the number one budgetary expense for disaster recovery?
(a)
What backup strategy is the storage of all files that have changed or been added since the last full backup?
Copy Backup
Partial Backup
Incremental Backup
Long-term storage of a document or data file, usually for legal purposes, is called what?
(a)
Virtualization reduces physical equipment in an organization
True
False
One benefit of virtualization is not having to update operating system security patches on virtual servers.
True
False
A vulnerability is a potential (a) in an asset or its defensive control system.
The terms “Root Cause Analysis” and “Incident Review” are also referred to as what?
(a)
The CISO should select member of each community of interest to form the (a) that will execute the IR plan.
Adverse events are expected events that occur periodically.
False
True
1. What are a set of procedures that commence when an incident is detected?
(a)
What is the first thing that must be established during an incident review?
(a)
