and Security Management – Latest Edition,
Bongsik Shin | Complete Test Bank Chapters
1–13
A. Security administrator - answers-Ian recently earned his security certification and has been
offered a promotion to a position that requires him to analyze and design security solutions as
well as identifying users' needs. Which of these generally recognized security positions has Ian
been offered?
A. Security administrator
B. Security technician
C. Security officer
D. Security manager
D. Misconfigurations - answers-Alyona has been asked by her supervisor to give a presentation
regarding reasons why security attacks continue to be successful. She has decided to focus on
the issue of widespread vulnerabilities. Which of the following would Alyona NOT include in her
presentation?
A. Large number of vulnerabilities
B. End-of-life systems
C. Lack of vendor support
D. Misconfigurations
C. Vulnerable business processes - answers-Tatyana is discussing with her supervisor potential
reasons why a recent attack was successful against one of their systems. Which of the following
configuration issues would NOT covered?
1
, A. Default configurations
B. Weak configurations
C. Vulnerable business processes
D. Misconfigurations
B. When two concurrent threads of execution access a shared resource simultaneously,
resulting in unintended consequences. - answers-What is a race condition?
A. When a vulnerability is discovered and there is a race to see if it can be patched before it is
exploited by attackers.
B. When two concurrent threads of execution access a shared resource simultaneously,
resulting in unintended consequences.
C. When an attack finishes its operation before antivirus can complete its work.
D. When a software update is distributed prior to a vulnerability being discovered.
B. Greater sophistication of defense tools - answers-Which the following is NOT a reason why it
is difficult to defend against today's attackers?
A. Delays in security updating
B. Greater sophistication of defense tools
C. Increased speed of attacks
D. Simplicity of attack tools
D. Security is a war that must be won at all costs. - answers-Which of the following is NOT true
regarding security?
A. Security is a goal.
B. Security includes the necessary steps to protect from harm.
C. Security is a process.
2