Home > Cybersecurity > Quizzes > CISSP Certified Information Systems Security Professional
CISSP Certified Information Systems Security Professional
Fast practice, instant feedback. Timer auto-submits when time’s up.
Avg score: 55% Most missed: “Those actions and backup processes determined by an organization to be necessary…”
CISSP Certified Information Systems Security Professional
Time left 00:00
25 Questions

1. A set of best practices for programmers to seek in all application or data base design: Atomicity - Consistency - Isolation - Durability

2. A layer 2 device that used to connect two network segments and regulate traffic.

3. Unauthorized access of information (e.g. Tapping - sniffing - unsecured wireless communication - emanations)

4. Short period of low voltage.

5. The partial or full duplication of data from a source database to one or more destination databases.

6. Attempts to assign real and meaningful numbers to all elements of the risk analysis process.

7. Framework that defines goals for the controls that should be used to properly manage IT - consists of 4 domains: - Plan and Organize - - Acquire and Implement - Deliver and Support - Monitor and Evaluate

8. Just enough access to do the job

9. An exact bit-by-bit copy of the entire physical hard drive or floppy disk - including slack and unallocated space. Only forensic copy quality will hold up in court.

10. Something that happened

11. Server optimized for providing file-based data storage to the network. Unlike a File Server - a NAS unit has no input or output devices - and the OS is dedicated for providing storage services.

12. Recovery alternative - a building only with sufficient power - and HVAC

13. A BCP testing type - a test that answers the question: Can the organization replicate the business process?

14. Control type- that is communication based - typically written or oral

15. Sphere of influence

16. Segmented memory addressing - encapsulation of objects - time multiplexing of shared resources - naming distinctions - and virtual mapping.

17. A running key using a random key that is never used again

18. Controls for logging and alerting

19. A template for the designing the architecture

20. A set of laws that the organization agrees to be bound by

21. A collection of data or information that has a name

22. A passive network attack involving monitoring of traffic.

23. Executive responsibilities of goal setting - delegation - and verification - based upon the mission.

24. A programming device use in development to circumvent controls

25. Potential danger to information or systems