C706 Practice Exam from Assessment Questions and Answers with Verified Solutions
Which due diligence activity for supply chain security should occur in the initiation phase of the software acquisition life cycle? -Facilitating knowledge transfer between suppliers -Lessening the risk of disseminating information during disposal -Mitigating supply chain security risk by providing user guidance -Developing a request for proposal (RFP) that includes supply chain security risk management - -Developing a request for proposal (RFP) that includes supply chain security risk management Which due diligence activity for supply chain security investigates the means by which data sets are shared and assessed? -An on-site assessment -A process policy review -A third-party assessment -A document exchange and review - A document exchange and review Consider these characteristics: Identification of the entity making the access request Verification that the request has not changed since its initiationApplication of the appropriate authorization procedures Reexamination of previously authorized requests by the same entity Which security design analysis is being described? -Open design -Complete mediation -Economy of mechanism -Least common mechanism - Complete mediation Which software security principle guards against the improper modification or destruction of information and ensures the nonrepudiation and authenticity of information? -Integrity -Quality -Availability -Confidentiality - Integrity What type of functional security requirement involves receiving, processing, storing, transmitting, and delivering in report form? -Logging -Error handling -Primary dataflow-Access control flow - Primary dataflow Which nonfunctional security requirement provides a way to capture information correctly and a way to store that information to help support later audits? -Logging -Error handling -Primary dataflow -Access control flow - Logging Which security concept refers to the quality of information that could cause harm or damage if disclosed? -Isolation -Discretion
Written for
- Institution
- C706 Practice
- Course
- C706 Practice
Document information
- Uploaded on
- April 16, 2024
- Number of pages
- 25
- Written in
- 2023/2024
- Type
- Exam (elaborations)
- Contains
- Questions & answers
Subjects
-
c706 practice exam from assessment questions and a