ISC Exam Questions

Which of the following would not fall under operation security?

Which of the following would not fall under operation security?

i. All hardware and software should be identified via asset management
ii. Configuration standards should be followed for all systems
iii. Devices, servers, and other hardware components should be kept in secured locations
iv. Acceptable Use policy should outlined acceptable software that users can install

A.
All of them

B.
None of them

C.
iv

D.
ii

Explanation:
Each of the following is a responsibility of operational security:
– All hardware and software should be identified via asset management
– Configuration standards should be followed for all systems
– Devices, servers, and other hardware components should be kept in secured
locations
– Acceptable Use policy should outlined acceptable software that users can install