100% Correct Answers | Verified | Latest
2024 Version
Glen is an (ISC)² member. Glen receives an email from a company offering a set of answers for an (ISC)²
certification exam. What should Glen do? - ✔✔Inform (ISC)²
Zarma is an (ISC)² member and a security analyst for Triffid Corporation. One of Zarma's colleagues is
interested in getting an (ISC)2 certification and asks Zarma what the test questions are like. What should
Zarma do? - ✔✔Explain the style and format of the questions, but no detail
A system that collects transactional information and stores it in a record in order to show which users
performed which actions is an example of providing - ✔✔Non-repudiation
The city of Grampon wants to ensure that all of its citizens are protected from malware, so the city
council creates a rule that anyone caught creating and launching malware within the city limits will
receive a fine and go to jail. What kind of rule is this? - ✔✔Law
The Payment Card Industry (PCI) Council is a committee made up of representatives from major credit
card providers (Visa, Mastercard, American Express) in the United States. The PCI Council issues rules
that merchants must follow if the merchants choose to accept payment via credit card. These rules
describe best practices for securing credit card processing technology, activities for securing credit card
information, and how to protect customers' personal data. This set of rules is a _____. - ✔✔Standard
Tina is an (ISC)² member and is invited to join an online group of IT security enthusiasts. After attending a
few online sessions, Tina learns that some participants in the group are sharing malware with each other,
in order to use it against other organizations online. What should Tina do? - ✔✔Stop participating in the
group
Which of the following probably poses the most risk? - ✔✔A high-likelihood, high-impact event
, Druna is a security practitioner tasked with ensuring that laptops are not stolen from the organization's
offices. Which sort of security control would probably be best for this purpose? - ✔✔Physical
Aphrodite is a member of (ISC)² and a data analyst for Triffid Corporation. While Aphrodite is reviewing
user log data, Aphrodite discovers that another Triffid employee is violating the acceptable use policy
and watching streaming videos during work hours. What should Aphrodite do? - ✔✔Inform Triffid
management
Preenka works at an airport. There are red lines painted on the ground next to the runway; Preenka has
been instructed that nobody can step or drive across a red line unless they request, and get specific
permission from, the control tower. This is an example of a(n)______ control. - ✔✔Administrative
The senior leadership of Triffid Corporation decides that the best way to minimize liability for the
company is to demonstrate the company's commitment to adopting best practices recognized
throughout the industry. Triffid management issues a document that explains that Triffid will follow the
best practices published by SANS, an industry body that addresses computer and information security.
The Triffid document is a ______, and the SANS documents are ________. - ✔✔Policy, standard
Which of the following is an example of a "something you are" authentication factor? - ✔✔A photograph
of your face
For which of the following assets is integrity probably the most important security aspect? - ✔✔The file
that contains passwords used to authenticate users
Triffid Corporation has a rule that all employees working with sensitive hardcopy documents must put
the documents into a safe at the end of the workday, where they are locked up until the following
workday. What kind of control is the process of putting the documents into the safe? - ✔✔Administrative
For which of the following systems would the security concept of availability probably be most
important? - ✔✔Medical systems that monitor patient condition in an intensive care unit