which of the following?
When Mitchell arrives at work on Monday, there is an e-mail in his inbox that reads "All employees should attend phone training in the main conference room before using their newly installed digital phones." This message is an example of which of the following?
Which of the following is a directive issued by senior management that identifies goals, measurements, and res
Which of the following is a directive issued by senior management that identifies goals, measurements, and responsibilities?
Which of the following roles is McKenna performing?
McKenna performs the following data tasks: 1) Assigns data classification levels to meet her business units specific needs. 2) Determines what users can access data. 3) Verifies security controls are in place and working correctly. Which of the following roles is McKenna performing?
who would be the best choice to sponsor a data classification program?
Establishing data classification levels within a company is essential as part of an overall security program. Of the people listed below, who would be the best choice to sponsor a data classification program?
Which of the following should she mark as intangible?
Shirley is in charge of asset identification and classification as part of a risk assessment initiative. In going through an inventory list, she must decide if an asset is tangible or intangible. Which of the following should she mark as intangible?
Which of the following is true of a qualitative risk analysis approach?
Which of the following is true of a qualitative risk analysis approach?
Risk assessment is not always met with open arms by management for all of the following reasons except:
Risk assessment is not always met with open arms by management for all of the following reasons except:
What is the single loss expectancy (SLE)?
Kathy is responsible for an asset valued at $25,000. It is determined that her asset has an exposure factor of 10 percent. What is the single loss expectancy (SLE)?
What area or issue are the answers to these questions targeted at?
Riley is leading a project kick-off meeting with representatives from the entire company. He asks the following questions:
1) What could happen?
2) How devastating could it possibly be?
3) How often could it occur?
4) How accurate are our answers to the three previous questions?
What area or issue are the answers to these questions targeted at?
Which of the following is not a domain of Control Objectives for Information and related Technology?
Which of the following is not a domain of Control Objectives for Information and related Technology?