SEC 440 DeVry Week 2 Quiz Latest



Question 1. Question: (TCO 1) Why is it important to prepare written policies?

  • It lets the policies be communicated more easily.
  • This helps to ensure consistency.
  • A policy is part of the corporate culture.
  • It is required by law.

Question 2. Question: (TCO 2) Which of the following is NOT a threat to data confidentiality?

  • Hackers
  • Encryption
  • Improper access controls
  • IN Social engineering In

Question 3. Question : (TCO 1) Which of the following is MOST likely to reflect the policy audience for a corporate ethics policy at Acme Manufacturing?

  • All Acme Manufacturg employees and all vendors and service providers
  • All full- and part-time employees of Acme Manufacturg and its subsidiaries
  • The Acme Manufacturg board of directors
  • The fance, human resources, and marketg departments of Acme Manufacturg

Question 4. Question : (TCO 2) Which of the following are all federal regulations?

  • Sarbanes-Oxley, IEEE 802.11, and NIST 800-34
  • GLBA, HIPAA, and Sarbanes-Oxley
  • GLBA, HIPAA, and IEEE 802.11
  • GLBA, NIST 800-34, and Sarbanes-Oxley

Question 5. Question : (TCO 1) When should formation security policies, procedures, standards, and guideles be revisited?

  • As dicated the policy
  • Never; once they are written and published, they must be adhered to
  • Annually
  • When dictated by change drivers

Question 6. Question : (TCO 2) What is a valid defition of data tegrity?

  • Knowg that the data on the screen have not been tampered with
  • Data that are encrypted
  • Data that have not been accessed by unauthorized users
  • The knowledge that the data are transmitted cipher text only

Question 7. Question : (TCO 1) What should be the consequences of formation security policy violations?

  • Always up to, and cludg, termation
  • Immediate revocation of all user privileges
  • Commensurate with the criticality of formation the policy was written to protect
  • Violations cited the person’s annual performance review

Question 8. Question : (TCO 2) Match the followg terms to their meangs.

: Change driver » 2 : Any event that impacts culture, procedures, and activities with an organization

: Acceptable use agreement » 1 : List of actions that employees are not allowed to perform while usg company-provided equipment

: Statement of authority » 3 : introduction to the policy document

: Security policy document policy » 4 : Policy about a policy

Question 9. Question : (TCO 1) Which of the followg best describes how the penalties defed the Policy Enforcement Clause should relate to the fractions?

  • Any fraction should result suspension or termation.
  • The same penalty should apply each time an fraction occurs.
  • The penalty should be proportional to the level of risk curred as a result of the fraction.
  • Penalties should be at the discretion of management.

Question 10. Question : (TCO 2) Data tegrity is

  • protectg the data from tentional or accidental disclosure.
  • makg sure the data are always available when legitimately needed.
  • protectg the data from tentional or accidental modification.
  • makg sure the data are always transmitted encrypted format.

Question 11. Question : (TCO 1) Which is the worst that may happen if formation security policies are out of date or address technologies no longer used the organization?

  • People may take the policies less seriously or dismiss them entirely.
  • Executive management may become upset.
  • The company may cur unnecessary costs to change them.
  • People may not know which policy applies.

Question 12. Question : (TCO 2) Which of the followg federal regulations pertas to the medical field?

  • GLBA
  • SOX

Question 13. Question : (TCO 1) which of the followg ways does understandg policy elements help you terpret your organization’s formation security policies?

  • Awareness of policy elements helps you determe the strength of the policy and whether you should take it seriously.
  • If you understand policy elements, you will be able to change the policies.
  • Knowg the purpose and goal of each section of the policy can help you better understand the tent of the policy, as well as how the policy applies to you.
  • You need to know the policy elements order to determe which parts of the policy apply to you.

Question 14. Question : (TCO 2) Which of the followg federal regulations pertas to the educational field?

  • GLBA
  • SOX

Question 15. Question : (TCO 1) Which of the followg is an important function of the statement of authority?

  • It provides a bridge between an organization’s core values and security strategies.
  • It dicates who to talk to if you want to request a change the policy.
  • It describes the penalties for policy fractions.
  • It references standards, guideles, and procedures that the reader can consult for clarification of the policy.
