Font size
WorksheetsSocial Ethics - Week 2, 3, & 4
Total questions: 94
Worksheet time: 1hrs 20mins
A code of behavior defined by the group to which an individual belongs
(a)
Personal principles upon which an individual bases his or her decisions about what is right and what is wrong
(a)
A habit that inclines people to do what is acceptable
(a)
A habit of unacceptable behavior
(a)
Acting in accordance with a personal code of principles
(a)
System of rules, enforced by a set of institutions, that tells us what we can and cannot do
(a)
moral corruption of those in power;
Refers to the biblical story of King David, who became corrupted by his power and success
(a)
any kind of bad, unethical, or illegal activity
(a)
What are the two types of misconduct?
(a)
CSR stands for
(a)
A component of CSR focused on developing and maintaining a supply chain that meets the needs of the present without compromising the ability of future generations to meet their needs
(a)
Provides an organization with vision and leadership in the area of business conduct
(a)
Highlights an organization’s key ethical issues;
Identifies the overarching values and principles important to the organization and its decision making
(a)
(a) is where an organization reviews its ethical and social responsibility goals and communicates its goals for the upcoming year.
Promotes the common interests of the software and digital content industries
(a)
Funded through member companies’ dues and through settlements from companies that commit piracy
(a)
Information that a company has taken strong measures to keep confidential
(a)
An effort by an employee to attract attention to an act by a company that threatens the public interest
(a)
A conflict between the IT worker’s (or the IT firm’s) self-interest and the client’s interests
Conflict of interest
Fraud
Misrepresentation
Breach of contract
Material breach of contract
The crime of obtaining goods, services, or property through deception or trickery
Conflict of interest
Fraud
Misrepresentation
Breach of contract
Material breach of contract
The misstatement or incomplete statement of a material fact
Conflict of interest
Fraud
Misrepresentation
Breach of contract
Material breach of contract
Occurs when one party fails to meet the terms of a contract
Conflict of interest
Fraud
Misrepresentation
Breach of contract
Material breach of contract
Occurs when a party fails to perform certain obligations, thus, impairing or destroying the essence of the contract
Conflict of interest
Fraud
Misrepresentation
Breach of contract
Material breach of contract
older software or hardware technologies that are still in use despite being outdated or obsolete
Legacy Systems
Scope Creep
Out-of-Date
Poor Communication
software, hardware, or even methodologies that are no longer current or up-to-date
Legacy Systems
Scope Creep
Out-of-Date
Poor Communication
IT project gradually expands beyond its original objectives
Legacy Systems
Scope Creep
Out-of-Date
Poor Communication
lack of effective information exchange among project stakeholders, team members, or other relevant parties
Legacy Systems
Scope Creep
Out-of-Date
Poor Communication
The act of providing money, property, or favors to obtain a business advantage
bribery
internal control
separation of duties
act of ensuring that different aspects of processes involving financial transactions are handled by different people
bribery
internal control
separation of duties
Makes it a crime to bribe a foreign official, a foreign political party official, or a candidate for foreign political office
(a)
penalize corrupt acts/practices and prohibit the giving of gifts to public officers under certain circumstances
(a)
Lying on a résumé about one’s qualifications
(a)
a prominent IT-related organization:
ACM stands for
(a)
a prominent IT-related organization:
IEEE-CS stands for
(a)
a prominent IT-related organization:
AITP stands for
(a)
a prominent IT-related organization:
SANS Institute stands for
(a)
Help IT workers network with others, seek out new ideas, and build on their personal skills and expertise
(a)
A recognition that a professional possesses a particular set of skills, knowledge, or abilities, in the opinion of the certifying organization
(a)
Permission to engage in an activity or to operate a business
(a)
Not doing something that a reasonable person would do or doing something that a reasonable person would not do
Negligence
Duty of care
Reasonable person standard
Reasonable professional standard
The obligation to protect people against unreasonable harm or risk
Negligence
Duty of care
Reasonable person standard
Reasonable professional standard
A standard used by courts to evaluate how an objective, careful, and conscientious person would have acted in the same circumstances
Negligence
Duty of care
Reasonable person standard
Reasonable professional standard
Used to measure the actions of professionals who have particular expertise or competence
Negligence
Duty of care
Reasonable person standard
Reasonable professional standard
The failure to act as a reasonable person would act
(a)
The liability of professionals who breach the duty of care, resulting in negligent care and injuries
(a)
illegal copying, distribution, or use of software without proper licensing or authorization from the software's owner or creator
Software piracy
Inappropriate use of computing resources
Inappropriate sharing of information
using computing systems, networks, or devices in ways that are against organizational policies or ethical guidelines
Software piracy
Inappropriate use of computing resources
Inappropriate sharing of information
disclosing confidential or sensitive data to unauthorized parties or using it in an unauthorized manner
Software piracy
Inappropriate use of computing resources
Inappropriate sharing of information
Hardware or software that serves as the first line of defense between an organization’s network and the Internet
(a)
document that stipulates restrictions and practices that a user must agree to use organizational computing and network resources
(a)
to be in accordance with established policies, guidelines, specifications, or legislation
(a)
Provides assistance to the board of directors with respect to quality and integrity of accounting and reporting practices and controls and compliance with legal and regulatory requirements
(a)
Determine whether internal systems and controls are effective and verifies existence of company assets and maintain proper safeguards over their protection
(a)
trends of malware and threat evolution as the years go by
(a)
any individual or group that poses a threat to cybersecurity and are the perpetrators behind cyberattacks
(a)
a cyber threat actor with motives in geopolitics
cybercriminals
hacktivists
terrorist groups
thrill-seekers
a cyber threat actor with motives in profiting
insider threats
hacktivists
thrill-seekers
cybercriminals
a cyber threat actor with motives in ideologies
hacktivists
terrorist groups
thrill-seekers
insider threats
a cyber threat actor with motives in satisfaction
thrill-seekers
cybercriminals
insider threats
nation states
hacktivists
a cyber threat actor with motives in discontent
cybercriminals
nation states
hacktivists
insider threats
an attempt by cybercriminals, hackers or other digital adversaries to access a computer network or system, usually for the purpose of altering, stealing, destroying or exposing information
(a)
any program or code that is created with the intent to do harm to a computer, network or server
(a)
(a) are bundles of malicious programs that combine the functionality of different types of malware such as Trojans, worms, and backdoors.
(a) are long-term operations designed to infiltrate and/or exfiltrate as much valuable data as possible without being discovered.
(a) is a type of cyberattack in which an unauthorized user attempts to access sensitive or classified data or intellectual property (IP) for economic gain, competitive advantage or political reasons
(a) refers to the use of technology and cyberspace to launch deliberate, politically motivated attacks that aim to cause disruption, fear, and destruction.
The (a) is the U.S. federal executive department responsible for public security, roughly comparable to the interior or home ministries of other countries.
(a) is a component of the DHS responsible for cybersecurity and infrastructure protection across all levels of government, coordinating cybersecurity programs with U.S. states, and improving the government's cybersecurity protections against private and nation-state hackers
(a) is a partnership between the Department of Homeland Security and the public and private sectors, intended to coordinate the response to cyber attacks across the nation.
(a) was activated as a National Operational Support Unit primarily responsible for the implementation of pertinent Philippine laws on cybercrimes and advocating the anti-cybercrime campaign of the PNP
(a) , which was created upon the approval of RA 10175 or the Cybercrime Prevention Act of 2012, is an attached agency of the Department of Information and Communications Technology (DICT).
(a) is a non-profit Computer Security Incident Response Team (CSIRT) recognized as the first registered Computer Emergency Response Team (CERT®) in the Philippines.
The (a) prohibits and penalizes wire tapping done by any person to secretly overhear, intercept, or record any private communication or spoken word of another person or persons without the authorization of all the parties to the communication.
The (a) aims to address legal issues concerning online interactions and the Internet in the Philippines
The law (a) aimed at putting an end to the perpetration of crimes through the use of unregulated SIM cards.
The confidentiality, integrity, and availability of systems and data
(a)
a CIA Security Triad component that ensures only those individuals with proper authority can access sensitive data
Confidentiality
Integrity
Availability
a CIA Security Triad component that ensures data can only be changed by authorized users
Confidentiality
Integrity
Availability
ensures data can be accessed when and where needed
Confidentiality
Integrity
Availability
The process of assessing security-related risks to an organization’s computers and networks from both internal and external threats
(a)
A documented process for recovering an organization’s business information system assets—including hardware, software, data, networks, and facilities in the event of a disaster
(a)
Business processes that are more pivotal to continued operations and goal attainment than others
(a)
A policy that defines an organization’s security requirements, as well as the controls and sanctions needed to meet those requirements
(a)
An audit that evaluates whether an organization has a well-considered security policy in place and if it is being followed
(a)
Requires financial institutions in the United States to assist U.S. government agencies in detecting and preventing money laundering
(a)
Requires every federal agency to provide information security for the data and information systems that support the agency’s operations and assets
(a)
Regulates the use and disclosure of an individual’s health information
(a)
Provides a comprehensive display of all key performance indicators related to an organization’s security defenses, including:
(a)
An principle in implementing CIA at the Network Level where organizations are required to authenticate users attempting to access its network
(a)
A hardware or software-based network security system that blocks attacks by filtering network traffic based on packet contents
(a)
The process of scrambling messages or data in such a way that only authorized parties can read it
Encryption
Encryption key
Transport Layer Security
A value that is applied to unencrypted text to produce encrypted text that is unreadable by those without the encryption key
Encryption
Encryption key
Transport Layer Security
A communications protocol that ensures privacy between communicating applications and their users on the Internet
Encryption
Encryption key
Transport Layer Security
Software and/or hardware that monitors system resources and activities and issues an alert when it detects network traffic attempting to circumvent security measures
(a)
