Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

CISA Domain 5: Protection of Information Assets Comprehensive Questions and Answers

Rating
-
Sold
-
Pages
16
Grade
A+
Uploaded on
09-10-2024
Written in
2024/2025

CISA Domain 5: Protection of Information Assets Comprehensive Questions and Answers .Active Monitors - ANSWER-interpret disk operating systems (DOS) and read only memory (ROM) basic input-output system (BIOS) calls, looking for virus like actions. Can be misleading, bc they cannot distinguish between a user request and program or virus request. Result: users are asked to confirm actions such as formatting a disk or deleting a file or set of files .Address Resolution Protocol (ARP) cache - ANSWER-(used to eavesdrop on VoIP) on the ethernet switch -- stores mappings between media access control (MAC) and IP addresses - during normal operations, ethernet switches only allow directed traffic to flow between ports involved in conversation and no other ports can see the traffic - if ARP cache is intentional, it could allow an attacker to monitor traffic not normally visible to the port where the attacker was connected to eavesdrop .Advanced Encryption Standard (AES) - ANSWER-provides strongest encryption of all - would provide greatest assurance that data is protected. Recovering data encrypted with AES is considered computationally infeasible. (ALWAYS USE to encrypt a USB) .Alternative Power Supplies - ANSWER-intended for power failures that last for longer periods - normally coupled with other devices such as uninterruptible power Supply (UPS) to compensate for power loss until alternate power supply becomes available .Application Gateway - ANSWER-(Greatest control and granularity) - app level (best for apps not network) similar to circuit gateway, but has specific proxies for each service. For web services, has HTTP proxy that acts as intermediary between externals and internals, but only for HTTP. Checks packet IP addresses (layer 3) and ports it is directed to (port 80, or layer 4), it also checks HTTP command (layers 5 & 7). Works in more detailed (very granular) way that other choices

Show more Read less
Institution
CISA Domain 5: Protection Of Information Assets
Course
CISA Domain 5: Protection of Information Assets

Content preview

CISA Domain 5: Protection of
Information Assets
Comprehensive Questions and
Answers
.Active Monitors - ANSWER-interpret disk operating systems (DOS) and read only memory (ROM) basic
input-output system (BIOS) calls, looking for virus like actions. Can be misleading, bc they cannot
distinguish between a user request and program or virus request. Result: users are asked to confirm
actions such as formatting a disk or deleting a file or set of files



.Address Resolution Protocol (ARP) cache - ANSWER-(used to eavesdrop on VoIP) on the ethernet switch
-- stores mappings between media access control (MAC) and IP addresses - during normal operations,
ethernet switches only allow directed traffic to flow between ports involved in conversation and no
other ports can see the traffic - if ARP cache is intentional, it could allow an attacker to monitor traffic
not normally visible to the port where the attacker was connected to eavesdrop



.Advanced Encryption Standard (AES) - ANSWER-provides strongest encryption of all - would provide
greatest assurance that data is protected. Recovering data encrypted with AES is considered
computationally infeasible. (ALWAYS USE to encrypt a USB)



.Alternative Power Supplies - ANSWER-intended for power failures that last for longer periods - normally
coupled with other devices such as uninterruptible power Supply (UPS) to compensate for power loss
until alternate power supply becomes available



.Application Gateway - ANSWER-(Greatest control and granularity) - app level (best for apps not
network) similar to circuit gateway, but has specific proxies for each service. For web services, has HTTP
proxy that acts as intermediary between externals and internals, but only for HTTP. Checks packet IP
addresses (layer 3) and ports it is directed to (port 80, or layer 4), it also checks HTTP command (layers 5
& 7). Works in more detailed (very granular) way that other choices

,.Application-Level Gateway - ANSWER-ternet:

i. Application-Level Gateway: best way to protect against hacking because it can be configured with
detailed rules that describe the type of user or conneciton that is or is not permitted



.Authentication Header (AH) - ANSWER-does not provide confidentiality , but provides authentication of
data origin and connectionless integrity



.Baseband network - ANSWER-usually shared with many other users and requires encryption of traffic,
but still may allow some traffic analysis by attacker



.Bayesian Filtering - ANSWER-applies statistical modeling to messages by performing frequency analysis
on each word within the message and evaluating the message as a whole - can ignore a suspicious
keyword if entire message is within normal bounds (best to filter against a heavily weighted spam
keyword use)



.BEST FILTER RULE for DoS - ANSWER-deny all outgoing traffic with IP source addresses external to the
network



.Blind/Black Box Penetration Test - ANSWER-penetration tester is not given any info and is forced to rely
on publicly available info (real attack, except target org is aware of test)

a) Assumes no prior knowledge of infrastructure to be tested - testers simulate attack from someone
who is unfamiliar with system

b) Most important factor: have management know of proceedings so that if someone identifies the test,
legality of actions can be determined quickly



.Buffer overflow exploitation - ANSWER-(exploiting a flaw)

Inadequate programming and coding practices introduce the risk of this -- occurs when programs do not
check the length of the data that are input into a program so attacker can send data that exceeds the
length of a buffer and override part of the program with malicious code



.Certificate Authority (CA) - ANSWER-trusted 3rd party (NOT OWNED BY ORG) that serves authentication
infrastructures or orgs and registers entities and issues them certificates (confirms identity of entity
owning a certificate issued by that CA)

, .Certificate revocation list (CRL) - ANSWER-instrument for checking continued validity of certificates for
which certification authority has responsibility - CRL details digital certificates that are no longer valid -
time gap between two updates critical and also risk in digital certificates verification



.Circuit Gateway - ANSWER-based on proxy or program that acts as an intermediary between external
and internal accesses - during external access, instead of opening a single connection to the internal
server, two connections are established (one from external server to the proxy and one from the proxy
to the internet server)



.Classifying Data - ANSWER-i. FIRST STEP: establish ownership -

ii. Most essential: that org policies and standards are understood by owner or custodian of data to be
properly classified

iii. Benefit of well-defined classification policies: decreased cost of controls

1) Classifying correctly ensures that appropriate controls are applied - less appropriate and more risk
and costly




helpful for end user management and security admin



.Column and row level permissions - ANSWER-control what info users can access - achieved in a
relational database by allowing users to access logical representations of data rather than physical
tables (fine-grained security model) - offers best balance between info protection while still supporting a
wide range of analytical and reporting uses



.Common Gateway Interface (CGI) - ANSWER-offers standard protocol for web servers to execute
programs that execute Console apps running on a server that generates web pages dynamically



.Computer Security Incident Response Team (CSIRT) - ANSWER-disseminates detailed descriptions of
recent threats to assist them in understanding security risk of errors and omissions



Indicator of effectiveness: financial impact per security incident - team should be able to limit the cost of
incidents through effective prevention, detection, and response to incidents

Written for

Institution
CISA Domain 5: Protection of Information Assets
Course
CISA Domain 5: Protection of Information Assets

Document information

Uploaded on
October 9, 2024
Number of pages
16
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$4.79
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller
Seller avatar
kENYAstuvia
4.5
(2)

Get to know the seller

Seller avatar
kENYAstuvia Teachme2-tutor
Follow You need to be logged in order to follow users or courses
Sold
3
Member since
1 year
Number of followers
0
Documents
54
Last sold
2 months ago
Loyal Customer Base

NURSING Assignments, Case Studies, Research, Essay writing service, Questions and Answers, Discussions etc. for students who want to see results twice as fast. I have done papers of various topics and complexities. I am punctual and always submit work on-deadline. I write engaging and informative content on all subjects. Send me your research papers, case studies, psychology papers, etc, and I’ll do them to the best of my abilities. Writing is my passion when it comes to academic work. I’ve got a good sense of structure and enjoy finding interesting ways to deliver information in any given paper. I love impressing clients with my work, and I am very punctual about deadlines. Send me your assignment and I’ll take it to the next level. I strive for my content to be of the highest quality. Your wishes come first— send me your requirements and I’ll make a piece of work with fresh ideas, consistent structure, and following the academic formatting rules. For every student you refer to me with an order that is completed and paid transparently, I will do one assignment for you, free of charge!!!!!!!!!!!!

Read more Read less
4.5

2 reviews

5
1
4
1
3
0
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions