SlideShare a Scribd company logo
STRAYER CIS 349 Final Exam Guide Set 1 NEW
Check this A+ tutorial guideline at
http://www.assignmentcloud.com/cis-349-stayer/cis-
349-final-exam-guide-set-1-new
For more classes visit
http://www.assignmentcloud.com
1) ___________ are the components, including people, information,
and conditions, that support business objectives.
2) The first step in the implementation of separation of
duties is to use access controls to prevent unauthorized data
access. The ultimate goal is to define access control where each
user has the permissions to carry out assigned tasks and
nothing else. This is known as the principle of:
3) What is meant by business drivers?
4) Which law defines national standards for all consumer
reports, including background checks?
5) ___________ is the process of providing additional
credentials that match the user ID or username.
6) What is meant by availability?
7) Which of the following is the definition of authorization?
8) An organization wants to determine how well it adheres
to its security policy and determine if any “holes” exist. What
type of analysis or assessment does it perform?
9) Which of the following is not a step to ensuring only
authorized users can see confidential data in the LAN Domain?
10) Which of the following is not typically a LAN Domain
component?
11) Which control is used in the LAN Domain to protect the
confidentiality of data?
12) The following are LAN Domain controls except:
13) Here is a common flow a penetration tester follows to
develop attacks: This step collects as much information about
the target environment as possible. At this stage, the attacker is
collecting both technical and nontechnical information. Both
types of information can help the attacker determine how the
organization operates, where it operates, and which
characteristics the organization and its customers’ value. This
is:
14) A nonintrusive penetration test ____________.
15) One particular type of network security testing
simulates actions an attacker would take to attack your
network. This is known as:
16) You have the least amount of control over who accesses
data in the ______ Domain.
17) What is the primary type of control used to protect data in
the WAN Domain?
18) What is a best practice for compliance in the WAN Domain?
19) The Remote Access Domain server components also
generally reside in the ___________ environment, even though they
still belong to the Remote Access Domain.
20) Which of the following is primarily a corrective control
in the Remote Access Domain?
21) The most common control for protecting data privacy in
untrusted environments is encryption. There are three main
strategies for encrypting data to send to remote users. One
strategy does not require any application intervention or
changes at all. The connection with the remote user handles the
encryption. The most common way to implement system
connection encryption is by setting up a secure virtual private
network (VPN). This is:
22) An important step in securing applications is to remove the
_____________.
23) Security controls in the System/Application Domain
generally fall into salient categories. The need to create backup
copies of data or other strategies to protect the organization
from data or functionality loss.
24) Which of the following is true of a hot site?
25) What name is given to an IIA certification that tests audit
knowledge unique to the public sector?

More Related Content

DOC
Stayer cis 349 final exam guide set 1 new
DOC
Uop cis 349 final exam guide set 1 new
DOC
Uop cis 349 final exam guide set 1 new
DOC
Uop cis 349 final exam guide set 1 new
DOC
Uop cis 349 final exam guide set 2 new
PDF
CIS 349 Final Exam Guide Set 2
DOC
Uop cis 349 final exam guide set 2 new
DOC
Stayer cis 349 final exam guide set 2 new
Stayer cis 349 final exam guide set 1 new
Uop cis 349 final exam guide set 1 new
Uop cis 349 final exam guide set 1 new
Uop cis 349 final exam guide set 1 new
Uop cis 349 final exam guide set 2 new
CIS 349 Final Exam Guide Set 2
Uop cis 349 final exam guide set 2 new
Stayer cis 349 final exam guide set 2 new

What's hot (8)

DOC
Stayer cis 349 final exam guide set 2 new
DOC
Strayer cis 349 final exam guide set 2 new
PDF
Cis 349 final exam guide set 2
PDF
Cis 349 final exam guide set 2
DOC
Cis 349 Education Specialist-snaptutorial.com
DOCX
CIS 349 Education Organization / snaptutorial.com
DOCX
CIS 349 Enhance teaching / snaptutorial.com
DOC
Cis 349 Exceptional Education-snaptutorial.com
Stayer cis 349 final exam guide set 2 new
Strayer cis 349 final exam guide set 2 new
Cis 349 final exam guide set 2
Cis 349 final exam guide set 2
Cis 349 Education Specialist-snaptutorial.com
CIS 349 Education Organization / snaptutorial.com
CIS 349 Enhance teaching / snaptutorial.com
Cis 349 Exceptional Education-snaptutorial.com
Ad

Similar to Stayer cis 349 final exam guide set 1 new (20)

DOC
Cis 349 final exam guide set 1 new
DOC
Uop cis 349 final exam guide set 1 new
DOC
Uop cis 349 final exam guide set 1 new
DOC
Uop cis 349 final exam guide set 1 new
DOC
Uop cis 349 final exam guide set 1 new
DOC
Uop cis 349 final exam guide set 1 new
DOCX
CIS 349 Entire Course NEW
DOC
CIS 349 Imagine Your Future/newtonhelp.com   
DOCX
CIS 349 RANK Lessons in Excellence--cis349rank.com
DOCX
CIS 349 RANK Inspiring Innovation--cis349rank.com
DOCX
CIS 349 RANK Introduction Education--cis349rank.com
DOC
Uop cis 349 final exam guide set 2 new
DOC
Cis 349 final exam guide set 2 new
DOCX
CIS 349 Education Organization / snaptutorial.com
DOCX
CIS 349 Effective Communication/tutorialrank.com
PDF
Cis 349 Inspiring Innovation--tutorialrank.com
DOCX
CIS 349 RANK Education Counseling--cis349rank.com
PDF
Cis 349 Teaching Effectively--tutorialrank.com
DOC
Uop cis 349 final exam guide set 2 new
DOC
Uop cis 349 final exam guide set 2 new
Cis 349 final exam guide set 1 new
Uop cis 349 final exam guide set 1 new
Uop cis 349 final exam guide set 1 new
Uop cis 349 final exam guide set 1 new
Uop cis 349 final exam guide set 1 new
Uop cis 349 final exam guide set 1 new
CIS 349 Entire Course NEW
CIS 349 Imagine Your Future/newtonhelp.com   
CIS 349 RANK Lessons in Excellence--cis349rank.com
CIS 349 RANK Inspiring Innovation--cis349rank.com
CIS 349 RANK Introduction Education--cis349rank.com
Uop cis 349 final exam guide set 2 new
Cis 349 final exam guide set 2 new
CIS 349 Education Organization / snaptutorial.com
CIS 349 Effective Communication/tutorialrank.com
Cis 349 Inspiring Innovation--tutorialrank.com
CIS 349 RANK Education Counseling--cis349rank.com
Cis 349 Teaching Effectively--tutorialrank.com
Uop cis 349 final exam guide set 2 new
Uop cis 349 final exam guide set 2 new
Ad

Recently uploaded (20)

PDF
Business Ethics Teaching Materials for college
PPTX
Pharmacology of Heart Failure /Pharmacotherapy of CHF
PDF
Anesthesia in Laparoscopic Surgery in India
PDF
TR - Agricultural Crops Production NC III.pdf
PPTX
Introduction_to_Human_Anatomy_and_Physiology_for_B.Pharm.pptx
PDF
STATICS OF THE RIGID BODIES Hibbelers.pdf
PDF
O7-L3 Supply Chain Operations - ICLT Program
PDF
Module 4: Burden of Disease Tutorial Slides S2 2025
PPTX
The Healthy Child – Unit II | Child Health Nursing I | B.Sc Nursing 5th Semester
PPTX
PPH.pptx obstetrics and gynecology in nursing
PDF
102 student loan defaulters named and shamed – Is someone you know on the list?
PPTX
Week 4 Term 3 Study Techniques revisited.pptx
PDF
Insiders guide to clinical Medicine.pdf
PDF
RMMM.pdf make it easy to upload and study
PDF
Physiotherapy_for_Respiratory_and_Cardiac_Problems WEBBER.pdf
PDF
Chapter 2 Heredity, Prenatal Development, and Birth.pdf
PPTX
Microbial diseases, their pathogenesis and prophylaxis
PDF
Supply Chain Operations Speaking Notes -ICLT Program
PDF
Pre independence Education in Inndia.pdf
PPTX
Institutional Correction lecture only . . .
Business Ethics Teaching Materials for college
Pharmacology of Heart Failure /Pharmacotherapy of CHF
Anesthesia in Laparoscopic Surgery in India
TR - Agricultural Crops Production NC III.pdf
Introduction_to_Human_Anatomy_and_Physiology_for_B.Pharm.pptx
STATICS OF THE RIGID BODIES Hibbelers.pdf
O7-L3 Supply Chain Operations - ICLT Program
Module 4: Burden of Disease Tutorial Slides S2 2025
The Healthy Child – Unit II | Child Health Nursing I | B.Sc Nursing 5th Semester
PPH.pptx obstetrics and gynecology in nursing
102 student loan defaulters named and shamed – Is someone you know on the list?
Week 4 Term 3 Study Techniques revisited.pptx
Insiders guide to clinical Medicine.pdf
RMMM.pdf make it easy to upload and study
Physiotherapy_for_Respiratory_and_Cardiac_Problems WEBBER.pdf
Chapter 2 Heredity, Prenatal Development, and Birth.pdf
Microbial diseases, their pathogenesis and prophylaxis
Supply Chain Operations Speaking Notes -ICLT Program
Pre independence Education in Inndia.pdf
Institutional Correction lecture only . . .

Stayer cis 349 final exam guide set 1 new

  • 1. STRAYER CIS 349 Final Exam Guide Set 1 NEW Check this A+ tutorial guideline at http://www.assignmentcloud.com/cis-349-stayer/cis- 349-final-exam-guide-set-1-new For more classes visit http://www.assignmentcloud.com 1) ___________ are the components, including people, information, and conditions, that support business objectives. 2) The first step in the implementation of separation of duties is to use access controls to prevent unauthorized data access. The ultimate goal is to define access control where each user has the permissions to carry out assigned tasks and nothing else. This is known as the principle of: 3) What is meant by business drivers? 4) Which law defines national standards for all consumer reports, including background checks? 5) ___________ is the process of providing additional credentials that match the user ID or username. 6) What is meant by availability?
  • 2. 7) Which of the following is the definition of authorization? 8) An organization wants to determine how well it adheres to its security policy and determine if any “holes” exist. What type of analysis or assessment does it perform? 9) Which of the following is not a step to ensuring only authorized users can see confidential data in the LAN Domain? 10) Which of the following is not typically a LAN Domain component? 11) Which control is used in the LAN Domain to protect the confidentiality of data? 12) The following are LAN Domain controls except: 13) Here is a common flow a penetration tester follows to develop attacks: This step collects as much information about the target environment as possible. At this stage, the attacker is collecting both technical and nontechnical information. Both types of information can help the attacker determine how the organization operates, where it operates, and which characteristics the organization and its customers’ value. This is: 14) A nonintrusive penetration test ____________. 15) One particular type of network security testing simulates actions an attacker would take to attack your
  • 3. network. This is known as: 16) You have the least amount of control over who accesses data in the ______ Domain. 17) What is the primary type of control used to protect data in the WAN Domain? 18) What is a best practice for compliance in the WAN Domain? 19) The Remote Access Domain server components also generally reside in the ___________ environment, even though they still belong to the Remote Access Domain. 20) Which of the following is primarily a corrective control in the Remote Access Domain? 21) The most common control for protecting data privacy in untrusted environments is encryption. There are three main strategies for encrypting data to send to remote users. One strategy does not require any application intervention or changes at all. The connection with the remote user handles the encryption. The most common way to implement system connection encryption is by setting up a secure virtual private network (VPN). This is: 22) An important step in securing applications is to remove the _____________. 23) Security controls in the System/Application Domain
  • 4. generally fall into salient categories. The need to create backup copies of data or other strategies to protect the organization from data or functionality loss. 24) Which of the following is true of a hot site? 25) What name is given to an IIA certification that tests audit knowledge unique to the public sector?