Question 1

The Security Operations Center (SOC) just purchased a new intrusion prevention system (IPS) that needs to be deployed in-line for best defense. The IT group is concerned about putting the new IPS in-line because it might negatively impact network availability. What would be the BEST approach for the CISO to reassure the IT group?
  • Question 2

    Which of the following is a countermeasure to prevent unauthorized database access from web applications?
  • Question 3

    Which type of physical security control scan a person's external features through a digital video camera before granting access to a restricted area?
  • Question 4

    You have been hired as the Information System Security Officer (ISSO) for a US federal government agency. Your role is to ensure the security posture of the system is maintained. One of your tasks is to develop and maintain the system security plan (SSP) and supporting documentation.
    Which of the following is NOT documented in the SSP?
  • Question 5

    The establishment of a formal risk management framework and system authorization program is essential.
    The LAST step of the system authorization process is: