Principles
of Information
Principles
of Information
of
Security
Information
Security
(6th Edition)
Security
(6th Edition)
Chapter
(6th Edition)
Chapter
12 Review
Chapter
12 Review
Questions
12 Review
Questions
2026
Questions
–
2026
Whitman
–
2026
Whitman
&–
Mattord
Whitman
& Mattord
Study
& Mattord
Guide
Study with
Guide
Study
Answers.pdf
with
GuideAnswers.pdf
with Answers.pdf
Principles of Information
Security (6th Edition) Chapter
12 Review Questions 2026 –
Whitman & Mattord Study
Guide with Answers
Principles
Principles
of Information
Principles
of Information
of
Security
Information
Security
(6th Edition)
Security
(6th Edition)
Chapter
(6th Edition)
Chapter
12 Review
Chapter
12 Review
Questions
12 Review
Questions
2026
Questions
–
2026
Whitman
–
2026
Whitman
&–
Mattord
Whitman
& Mattord
Study
& Mattord
Guide
Study with
Guide
Study
Answers.pdf
with
GuideAnswers.pdf
with Answers.pdf
, Principles of Information Security (6th Ed.) - Chapter 12 Review Questions.pdf Principles of Information Security (6th Ed.) - Chapter 12 Review Questions.pdf Principles of Information Security (6th Ed.) - Chapter 12 Review Questions.pdf
1. List and describe the factors that are likely to shift in an - The acquisitions of new assets and the divestiture of old assets
organization's information security environment. - The emergence of vulnerabilities associated with new or existing assets
- Shifting business priorities
- The formation of new partnerships
- The dissolution of old partnerships
- The departure of personnel who are trained, educated, and aware of policies,
procedures, and technologies
- The hiring of personnel
2. Who decides if the information security program can adapt The CISO
to change adequately?
3. List and briefly describe the five domains of the general > External monitoring: The component of the maintenance model that focuses on
security maintenance model, as identified in the text. evaluating external threats to the organization's information assets.
> Internal monitoring:The component of the maintenance model that focuses on
identifying, assessing, and managing the configuration and status of information assets in
an organization.
> Planning and risk assessment: The component of the maintenance model that focuses on
identifying and planning ongoing information security activities and identifying and
managing risks introduced through IT information security projects.
> Vulnerability assessment and remediation: The component of the maintenance model
focused on identifying specific, documented vulnerabilities and remediating them in a
timely fashion.
> Readiness and review: Keep infoSec program functioning as designed and improve it
continuously over time via policy review, program review, and rehearsals
Principles of Information Security (6th Ed.) - Chapter 12 Review Questions.pdf Principles of Information Security (6th Ed.) - Chapter 12 Review Questions.pdf Principles of Information Security (6th Ed.) - Chapter 12 Review Questions.pdf