Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

WGU C836 FUNDAMENTALS OF INFORMATION SECURITY OA EXAM QUESTIONS AND CORRECT DETAILED ANSWERS ALREADY GRADED A+

Rating
-
Sold
-
Pages
36
Grade
A+
Uploaded on
06-01-2025
Written in
2024/2025

WGU C836 FUNDAMENTALS OF INFORMATION SECURITY OA EXAM QUESTIONS AND CORRECT DETAILED ANSWERS ALREADY GRADED A+

Institution
WGU C836 FUNDAMENTALS OF INFORMATION SECURITY OA
Course
WGU C836 FUNDAMENTALS OF INFORMATION SECURITY OA

Content preview

1



WGU C836 FUNDAMENTALS OF INFORMATION
SECURITY OA EXAM QUESTIONS AND CORRECT
DETAILED ANSWERS ALREADY GRADED A+
Information Security - (answer)Protecting an organization's information and
information systems from unauthorized access, use, disclosure, disruption,
modification, or destruction.


Compliance - (answer)Requirements that are set forth by laws and
industry regulations.


CIA - (answer)Confidentiality, Integrity, Availability


Confidentiality - (answer)Refers to our ability to protect our data from those
who are not authorized to use/view it


Integrity - (answer)The ability to prevent people from changing your data in an
unauthorized or undesirable manner


Availability - (answer)Refers to the ability to access our data when we need it


Possession/Control - (answer)refers to the physical disposition of the media on
which the data is stored. (tape examples where some are encrypted and some
are not)


Authenticity - (answer)whether you've attributed the data in question to the
proper owner or creator. (altered email that says it's from one person when it's
not - violation of the authenticity of the email)


Utility - (answer)refers to how useful the data is to you.

, 2




Attacks - (answer)interception, interruption, modification, and
fabrication


Interception - (answer)attacks that allow unauthorized users to access your
data, applications, or environments. Are primarily attacks against
confidentiality


Interruption - (answer)attacks that make your assets unusable or unavailable
to you temporarily or permanently. DoS attack on a mail server, for example.
May also affect integrity


Modification - (answer)attacks involve tampering with our asset. Such attacks
might primarily be considered an integrity attack but could also represent an
availability attack.


Fabrication - (answer)attacks involve generating data, processes,
communications, or other similar activities with a system. Fabrication attacks
primarily affect integrity but could be considered an availability attack as well.


Risk - (answer)is the likelihood that an event will occur. To have risk there must
be a
threat and vulnerability.


Threats - (answer)are any events being man-made, natural or environmental
that could cause damage to assets.


Vulnerabilities - (answer)are a weakness that a threat event or the threat
agent can take advantage of.

, 3


Impact - (answer)takes into account the value of the asset being threatened
and uses it to calculate risk


Risk Management Process - (answer)Identify assets, identify threats, assess
vulnerabilities, assess risks, mitigate risks


Defense in Depth - (answer)Using multiple layers of security to defend your
assets.


Controls - (answer)are the ways we protect assets. Three different types:
physical, logical, administrative


Physical Controls - (answer)environment; physical items that protect assets
think locks, doors, guards, and, fences or environmental factors (time)


Logical Controls - (answer)Sometimes called technical controls, these protect
the systems, networks, and environments that process, transmit, and store our
data


Administrative Controls - (answer)based on laws, rules, policies, and
procedures, guidelines, and other items that are "paper" in nature. They are
the policies that organizations create for governance. For example, acceptable
use and email use policies.


Preparation - (answer)phase of incident response consists of all of the
activities that we can perform, in advance of the incident itself, in order to
better enable us to handle it.


Incident Response Process - (answer)1. Preparation
2. Detection and Analysis (Identification)

, 4


3. Containment
4. Eradication
5. Recovery
6. Post-incident activity: document/Lessons learned


Detection & Analysis - (answer)where the action begins to happen in our
incident response process. In this phase, we will detect the occurrence of an
issue and decide whether or not it is actually an incident, so that we can
respond appropriately to it.


Containment - (answer)involves taking steps to ensure that the situation does
not cause any more damage than it already has, or to at least lessen any
ongoing harm.


Eradication - (answer)attempt to remove the effects of the issue from our
environment.


Recovery - (answer)restoring devices or data to pre-incident state (rebuilding
systems, reloading applications, backup media, etc.)


Post-incident activity - (answer)determine specifically what happened, why it
happened, and what we can do to keep it from happening again.
(postmortem).


Identity - (answer)who or what we claim to be. Simply an assertion.


Authentication - (answer)the act of providing who or what we claim to be.
More technically, the set of methods used to establish whether a claim is true

Written for

Institution
WGU C836 FUNDAMENTALS OF INFORMATION SECURITY OA
Course
WGU C836 FUNDAMENTALS OF INFORMATION SECURITY OA

Document information

Uploaded on
January 6, 2025
Number of pages
36
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$21.49
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
CourseNinja Chamberlain College Of Nursing
Follow You need to be logged in order to follow users or courses
Sold
7465
Member since
2 year
Number of followers
7
Documents
2462
Last sold
5 days ago

5.0

1011 reviews

5
993
4
8
3
5
2
1
1
4

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions