QUESTIONS WITH DETAILED VERIFIED ANSWERS /A+
GRADE ASSURED
A sophisticated threat that combines the features of a virus, worm, Trojan horse,
and other malicious code into a single payload. - CORRECT ANSWER ✔✔- blended
threat
An agreed-upon sets of skills and abilities that all licensed professionals must
possess. - CORRECT ANSWER ✔✔- body of knowledge
A large group of computers, which are controlled from one or more remote
locations by hackers, without the knowledge or consent of their owners. -
CORRECT ANSWER ✔✔- botnet
The failure to act as a reasonable person would act. - CORRECT ANSWER ✔✔-
breach of the duty of care
A trade group that represent the world's largest software and hardware
manufacturers. - CORRECT ANSWER ✔✔- BSA | The Software Alliance
A risk-based strategy that includes an occupant emergency evacuation plan, a
continuity of operations plan, and an incident management plan with an active
governance process to minimize the potential impact of any security incident and
to ensure business continuity in the event of a cyberattack or some form of
disaster. - CORRECT ANSWER ✔✔- business continuity plan
1|Page
,A set of interrelated components—including hardware, software, databases,
networks, people, and procedures—that collects and processes data and
disseminates the output. - CORRECT ANSWER ✔✔- business information system
Collection of best practices that help organizations improve their processes. -
CORRECT ANSWER ✔✔- Capability Maturity Model Integration (CMMI) models
Software that generates and grades tests that humans can pass and all but the
most sophisticated computer programs cannot. - CORRECT ANSWER ✔✔-
CAPTCHA (Completely Automated Public Turing Test to Tell Computers and
Humans Apart)
An act signed into law in 1998 with the aim of prohibiting the making of harmful
material available to minors via the Internet; the law was ultimately ruled largely
unconstitutional. - CORRECT ANSWER ✔✔- Child Online Protection Act (COPA)
An act passed in 2000; it required federally financed schools and libraries to use
some form of technological protection (such as an Internet filter) to block
computer access to obscene material, pornography, and anything else considered
harmful to minors. - CORRECT ANSWER ✔✔- Children's Internet Protection Act
(CIPA)
An act implemented in 1998 in an attempt to give parents control over the
collection, use, and disclosure of their children's personal information. - CORRECT
ANSWER ✔✔- Children's Online Privacy Protection Act (COPPA)
2|Page
,Refers to confidentiality, integrity, and availability. - CORRECT ANSWER ✔✔- CIA
security triad
A process and a set of tools designed to enhance healthcare-related decision
making through the use of clinical knowledge and patientspecific information to
improve healthcare delivery. - CORRECT ANSWER ✔✔- clinical decision support
(CDS)
A specific application of CMMI frequently used to assess and improve software
development practices. - CORRECT ANSWER ✔✔- CMMI-Development (CMMI-
DEV)
A statement that highlights an organization's key ethical issues and identifies the
overarching values and principles that are important to the organization and its
decision making. - CORRECT ANSWER ✔✔- code of ethics
A employment situation in which two employers have actual or potential legal
rights and duties with respect to the same employee or group of employees. -
CORRECT ANSWER ✔✔- coemployment relationship
An act passed in 1994 that amended the Wiretap Act and Electronic
Communications Privacy Act, which required the telecommunications industry to
build tools into its products that federal investigators could use—after obtaining a
court order—to eavesdrop on conversations and intercept electronic
communications. - CORRECT ANSWER ✔✔- Communications Assistance for Law
Enforcement Act (CALEA)
Title V of the Telecommunications Act, it aimed at protecting children from
pornography, including imposing $250,000 fines and prison terms of up to two
3|Page
, years for the transmission of "indecent" material over the Internet. - CORRECT
ANSWER ✔✔- Communications Decency Act (CDA)
A discipline that combines elements of law and computer science to identify,
collect, examine, and preserve data from computer systems, networks, and
storage devices in a manner that preserves the integrity of the data gathered so
that it is admissible as evidence in a court of law. - CORRECT ANSWER ✔✔-
computer forensics
A system that enables physicians to place orders (for drugs, laboratory tests,
radiology, physical therapy) electronically, with the orders transmitted directly to
the recipient. - CORRECT ANSWER ✔✔- computerized provider order entry (CPOE)
system
A job situation in which an individual does not have an explicit or implicit contract
for long-term employment. - CORRECT ANSWER ✔✔- contingent work
When the plaintiffs' own actions contributed to their injuries. - CORRECT ANSWER
✔✔- contributory negligence
A document that stipulates restrictions and practices that a user must agree in
order to use organizational computing and network resources. - CORRECT
ANSWER ✔✔- acceptable use policy (AUP)
A network attack in which an intruder gains access to a network and stays there—
undetected—with the intention of stealing data over a long period of time (weeks
or even months). - CORRECT ANSWER ✔✔- advanced persistent threat (APT)
4|Page