Sec+ 701 Domain 5 Quiz

Sec+ 701 Domain 5 Quiz

Professional Development

18 Qs

quiz-placeholder

Similar activities

Kuis Manajemen Risiko dalam Keamanan Siber

Kuis Manajemen Risiko dalam Keamanan Siber

Professional Development

20 Qs

TLY1 Working Safely with Display Screen Equipment

TLY1 Working Safely with Display Screen Equipment

Professional Development

21 Qs

IT Townhall

IT Townhall

Professional Development

20 Qs

Cybersecurity Core Functions

Cybersecurity Core Functions

Professional Development

15 Qs

Chapter 10: Incident Detection and Analysis

Chapter 10: Incident Detection and Analysis

Professional Development

20 Qs

Database Concepts Quiz

Database Concepts Quiz

Professional Development

15 Qs

Sec+ 701 Domain 5 Quiz

Sec+ 701 Domain 5 Quiz

Assessment

Quiz

Information Technology (IT)

Professional Development

Easy

Created by

Prem Jadhwani

Used 8+ times

FREE Resource

18 questions

Show all answers

1.

MATCH QUESTION

2 mins • 1 pt

Match the policies/documents with the correct definition.

Playbook

Plan we use to ensure we maintain operational availability.

IRP

Plan we use to respond to someone attacking us.

DRP

Document that an employee signs before touching any IT asset at our company.

AUP

A step-by-step guide that shows us how to respond to specific incidents.

BCP

Plan we use to respond to natural disasters.

2.

MATCH QUESTION

2 mins • 1 pt

Match the following terms.

Separation of Duties

A policy that detects and prevents fraud by splitting up duties in sensitive processes.

Job Rotation

A policy that ensures we train employees across multiple positions - helping us detect fraud.

Change Management

A policy that ensures all employees only get the accesses and permissions they need to do their job.

Least Privilege

A process that we use in our organization to implement modifications to processes and procedures.

NIST

An organization that provides standards for basic security hygiene.

3.

MATCH QUESTION

2 mins • 1 pt

Match the development terms.

Waterfall

Software model that can only go forward.

SDLC

Analysis performed on code while a program is running.

Agile

Process we use to properly create software.

Static

Software model that can go forward and backward.

Dynamic

Analysis performed on code at a stand-still.

4.

MATCH QUESTION

2 mins • 1 pt

Match the following

Fuzzing

A tool we use to inject random input into a program for testing.

Code Repository

A place where we can store different versions of our code.

Version Control System

A process that allows us to integrate and deploy code faster.

CI/CD

A software tool that will track changes and revisions in a software version.

Dead Code

Code in a program that does not execute when the program runs.

5.

MATCH QUESTION

2 mins • 1 pt

Match the following laws.

GDPR

The "Right to be forgotten" law that observes the privacy of a persons right to be removed from the internet.

PCI DSS

Standard that requires a company to handle PII data in a private manner.

ISO 27001

Requires a company to set up an ISMS if they deal with infosec.

ISO 27701

Supporting document that provides security controls to help set up an ISMS.

ISO 27002

Law that requires a company to handle credit card/debit card data in secure way.

6.

MATCH QUESTION

2 mins • 1 pt

Match the following compliance terms.

Due Diligence

Term that tells a company they must adhere to laws int he geographical area in which it operates.

Reputation Damage

The biggest concern of noncompliance.

Fines

A term that defines a length of time in which a government entity has directed we must keep data for.

Data Sovereignty

The most common result of noncompliance.

Data Retention

The requirement for a company to conduct their own research on applicable laws and regulations.

7.

MATCH QUESTION

2 mins • 1 pt

Match the following data governance terms.

Data Owner

Person in a company responsible for creating policies about how we handle data.

Data Controller

Person in company who keeps a complete inventory of all data.

Data Protection Officer

Person in company who directly handles the data and enforces data policy.

Data Custodian

Department in company that maintains the infrastructure that houses any data.

Data Processor

Person in company responsible for making sure our data policies meet regulatory law.

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?