Services
Discover
Homeschooling
Ask a Question
Log in
Sign up
Filters
Done
Question type:
Essay
Multiple Choice
Short Answer
True False
Matching
Topic
Business
Study Set
Management of Information Security
Quiz 7: Security Management Practices
Path 4
Access For Free
Share
All types
Filters
Study Flashcards
Practice Exam
Learn
Question 61
Multiple Choice
Maintaining an acceptable level of secure controls over time indicates that an organization has met the standard of ____.
Question 62
Multiple Choice
One of the critical tasks in the performance measurement process is to assess and ____ what will be measured.
Question 63
Multiple Choice
In security management,____ is the authorization of an IT system to process,store,or transmit information.
Question 64
Multiple Choice
In reporting InfoSec performance measures,the CISO must also consider ____.
Question 65
Multiple Choice
In the NIST performance measures implementation process,the comparison of observed measurements with target values is known as a ____ analysis.
Question 66
Multiple Choice
Performance ____ make it possible to define success in the security program.
Question 67
Multiple Choice
Which of the following is the first phase in the NIST process for performance measures implementation?
Question 68
Multiple Choice
It is seldom advisable to broadcast complex and nuanced metrics-based reports to large groups,unless ____.
Question 69
Multiple Choice
Production-level statistics depend greatly on the number of ____.
Question 70
Multiple Choice
In most cases,simply listing the measurements collected does not adequately convey their ____.
Question 71
Multiple Choice
Which of the following is the last phase in the NIST process for performance measures implementation?
Question 72
Multiple Choice
Designing the performance measures collection process requires thoughtful consideration of the ____ of the metric along with a thorough knowledge of how production services are delivered.
Question 73
Multiple Choice
Organizations pursue accreditation or certification to ____.
Question 74
Multiple Choice
Once developed,information security performance measures must be implemented and integrated into ____ information security management operations.
Question 75
Multiple Choice
Collecting project metrics may be even more challenging.Unless the organization is satisfied with a simple tally of who spent how many hours doing which tasks,it needs some mechanism to link the ____ of each project,in terms of loss control or risk reduction,to the resources consumed.
Question 76
Multiple Choice
NIST recommends the documentation of performance measures in a format to ensure ____ of measures development,tailoring,collection,and reporting activities.
Question 77
Multiple Choice
During Phase 2 of the NIST performance measures development process,the organization will identify and document the information security performance ____ that would guide security control implementation for the information security program of a specific information system.
Question 78
Multiple Choice
In security management,____ is "the comprehensive evaluation of the technical and nontechnical security controls of an IT system to support the process that establishes the extent to which a particular design and implementation meets a set of specified security requirements.
Question 79
Multiple Choice
One of the priorities in building an information security measures program is determining whether these measures will be macro-focus or micro-focus.____ measures examine the performance of the overall security program.