Home > CompTIA Security+ Certification > Quizzes > CISSP Certified Information Systems Security Professional
CISSP Certified Information Systems Security Professional
Fast practice, instant feedback. Timer auto-submits when time’s up.
Avg score: 55% Most missed: “Those actions and backup processes determined by an organization to be necessary…”
CISSP Certified Information Systems Security Professional
Time left 00:00
25 Questions

1. Part of a transaction control for a database which informs the database of the last recorded transaction

2. A BCP testing type - a test that answers the question: Can the organization replicate the business process?

3. A design methodology which addresses risk early and often

4. Statistical probabilities of a collision are more likely than one thinks

5. Recording activities at the keyboard level

6. The asynchronous duplication of the production database on separate media to ensure data availability - currency and accuracy. File shadowing can be used as a disaster recovery solution if performed remotely.

7. The risk that remains after management implements internal controls - or some other response to risk - (Threats x Vulnerability x Asset Value) x Controls Gap = Residual Risk

8. A measurement of data. It is the smallest unit of data. A bit is either the "1" or "0" component of the binary code.

9. Act of scrambling the cleartext message by using a key.

10. A value an organization places on an IDS based on past performance and analysis to help determine its ability to effectively identify an attack

11. A type of attack involving attempted insertion - deletion or altering of data.

12. Those who initiate the attack

13. Employment education done once per position or at significant change of function

14. The process of logging changes or updates to a database since the last full backup. Journals can be used to recover previous versions of a file before updates were made - or to facilitate disaster recovery.

15. A backup type which creates a complete copy

16. A plan used by an organization or business unit to respond to a specific systems failure or disruption of operations. A contingency plan may use any number of resources (e.e workaround procedures - alternate work area - etc.)

17. One method of testing a specific component of a plan. Typically - a team member makes a detailed presentation of the component to other team members (and possibly non-members) for their critique and evaluation.

18. The process of identifying - accessing - reducing risk to an acceptable level - and implementing the right countermeasure to maintain that level of risk

19. Implementation of measures to deter specific threats to the continuity of business operations - and/or respond to any occurrence of such threats in a timely and appropriate manner.

20. High level - pertaining to planning

21. To move from location to location - keeping the same function

22. Reconnaissance technique - involving automated - brute force identification of potentially vulnerable modems.

23. A passive network attack involving monitoring of traffic.

24. Electronically forwarding backup data to an offsite server or storage facility. Vaulting eliminates the need for tape shipment and therefore significantly shortens the time required to move the data offsite.

25. More than one processor sharing same memory - also know as parallel systems